

Program manager with a background in privacy compliance, data protection, and regulatory work. I’ve spent 5+ years helping organizations across different industries get a handle on GDPR, HIPAA, CCPA, and related requirements. I have helped with building out the processes, documentation, and training that make compliance stick day-to-day. I continuously drive to deliver measurable improvements in compliance and operational efficiency.
• Monitored project progress to ensure timely delivery and flagged issues for the team to stay on schedule.
• Facilitated stakeholder communication, which reduced unexpected delays and built trust across all teams.
• Coordinated cross-functional privacy initiatives end to end, from scoping and planning through final delivery.
• Led project kickoffs and planning sessions, setting timelines and clarifying ownership to ensure the responsibilities were clear.
• Maintained project documentation in ServiceNow and other tools to keep work visible and auditable.
• Conducted meetings with internal team members, consultants, and contractors to ensure alignment on project priorities and continuation of work forward.
• Developed compliance frameworks covering NIST 800-171, ISO 27001, HIPAA, and GLBA for a large research university environment.
• Improved privacy and security compliance infrastructure across a heavily regulated institution with complex data governance requirements.
• Created and delivered training materials that helped non-technical staff understand security policies and procedures that were required in day-to-day job roles.
• Oversaw incident response case handling workflows to ensure the university responded in a timely manner.
• Delivered structured project plans and dashboards that gave leadership visibility into where things stood across multiple workstreams.
• Coordinated across multiple departments and teams to ensure that projects kept progressing and teams met their deliverables.
• Supported compliance across both internal systems and guest-facing applications, covering HIPAA, China PIPL, GDPR, and various U.S. state privacy laws.
• Created privacy and operational documentation for customer-facing and internal procedures.
• Conducted third-party and internal privacy assessments, identified risks and coordinated remediation efforts with the appropriate stakeholders.
• Improved training and awareness materials to enhance organization-wide understanding of privacy regulations and company compliance.
• Managed end-to-end privacy incident response, triaging issues, and delivering reports that improved program visibility and reduced resolution time.
• Partnered with engineering teams to translate regulatory requirements into technical controls, ensuring privacy-by-design across new features and data flows.
• Supported global privacy programs for both public and private sector clients across industries with different regulatory requirements.
• Managed multiple projects simultaneously and kept them progressing by managing timelines, deliverables, and coordination across teams with competing priorities.
• Conducted PIAs, DPIAs, and DSARs for clients in regulated industries including healthcare, financial services, and government.
• Built out OneTrust environments for clients, setting up dashboards, intake workflows, and assessment templates based on their specific program’s requirements.
• Translated and communicated complex privacy concepts clearly for clients’ teams to be able to utilize the information for their own future guidance.
• Assisted and championed clients by preparing them for regulatory reviews and guided them through vendor risk processes to identify and address company gaps.
• Established compliance policies that addressed service delivery requirements and helped the organization maintain strong relationships with stakeholders.
• Complied and organized data-driven reports for government agencies, giving them clear visibility into how funds were being used and what outcomes programs were achieving.
• Trained staff and volunteers on compliance protocols to ensure consistent user experience across all of the organization’s programs.
• Prepared and delivered structured reporting and risk summaries that improved cross-functional coordination among teams.
• Tracked program performance metrics and used them to inform stakeholders about how to improve operations going forward.
• Managed day-to-day program operations while supporting a mix of legal, technical, and community-facing stakeholders with varying needs.
ServiceNow
OneTrust
Microsoft 365
Atlassian
Trello
Slack
GSuite
Microsoft Copilot
Hiking
Reading
Trying new things
Learning new languages