Experienced GRC professional with a robust background in implementing and managing policies and procedures to ensure compliance with relevant laws and regulations, and to identify and mitigate risks. A proven track record of success in leading GRC initiatives across diverse industries, including finance, healthcare, and technology. Skilled in the application of industry-based information security and control frameworks such as ISO 27001, PCI-DSS, Cloud Security Alliance (CSA), NIST RMF 800-53, ISO 27001 & 2, SOC 2, and FedRamp.