Governance, Risk, and Compliance (GRC) professional with experience strengthening IT controls, managing technology risk, and supporting organizations through complex audit and compliance requirements. Brings hands-on expertise across IT audits, risk assessments, control testing, third-party risk management, remediation tracking, and audit readiness, with working knowledge of frameworks including ISO 27001, NIST, SOC 1 & 2, PCI DSS, HIPAA, SOX, and GDPR. Proven ability to identify control gaps, organize audit evidence, improve compliance processes, and translate regulatory requirements into practical actions for technical and business teams. Known for partnering effectively across IT, security, business stakeholders, and external auditors to improve control effectiveness, strengthen governance, and maintain sustainable audit readiness.