Experienced and driven Governance, Risk, Compliance (GRC) Analyst, and IT Auditor with expertise in executing risk management and compliance frameworks. Proficient in conducting ITGC Audit, in-depth risk assessments, formulating control testing, strategies, and ensuring strict adherence to regulatory mandates. Fostering seamless cross-functional collaboration and leveraging cutting-edge GRC tools and technologies to elevate organizational security posture, and IT Audit processes.
Performed Identity and Access Management (IAM) processes to ensure users and organization’s resources aligns with applicable laws, standards, and compliance requirements for granting of access and permissions
Risk Management Framework (RMF)
NIST 800 Series guidelines
FISMA /FedRAMP
Third Party Risk Management
Governance Risk Compliance (GRC)
ITGC & Application testing
NIST CSF, ISO 27001, PCI, SOC II, SOX
Risk Assessment, Risk Management & Vulnerability Assessment/Vulnerability Management Identity Access Management IAM
COBIT & COSO
IRM ServiceNow, RSA Archer
Incident Response, Handling
Cloud Deployment, Migration Security
JIRA Administration
SEIM tools: Splunk, LogRhythm
Solar Winds, Gigamon
Nessus, Qualys, Veracode & Rapid 7