Enthusiastic beginner in IT audit and cyber GRC, eager to support advancements in the field. Passionate about learning and driving improvements, with a commitment to applying knowledge gained over 14 years of experience in research.
Enthusiastic beginner in IT audit and cyber GRC, eager to support advancements in the field. Passionate about learning and driving improvements, with a commitment to applying knowledge gained over 14 years of experience in research.
GPA: 3.5
I love reading, playing soccer and interacting with nature
Standards & Frameworks: ISO 27001/ 2, CIS Critical Security Controls, NIST-CSF, NIST 800-53, PCI DSS, COBIT 5, SOC 2 & 3, IT Audit Framework, ISO 27701, 27017.
Audit Practices: Stakeholder management, Audit scoping, Engagement planning, Risk assessment, Control testing, CAAT, Audit Fieldwork execution, Evidence gathering, Audit findings and reporting, Remediation and follow up.
Security Techniques: Information Security Policies and Procedures, Vulnerability Management, Security Compliance Assessment, Security Audit, Systems Patching, Antivirus, Access Management, Endpoint Protection, Continuous Monitoring, Disaster Recovery, Data Loss Prevention.
Tools & Techniques: ServiceNow, Archer GRC, ISMS Online, Alteryx, Antivirus, Asana, Visio, SQL, Microsoft Project, Microsoft Teams, Microsoft Office, Microsoft Excel, SharePoint, NMAP, WireShark
Methodologies: Agile Scrum, Kanban, Waterfall-Agile Hybrid, SDLC, and Waterfall