Cybersecurity & GRC Analyst with Security+ and ISO/IEC 27001 Lead Implementer certifications, and over 1,000 hours of scenario-based executive-level training aligned to ISACA’s CISM standard. Proven experience leading governance, compliance, and operational risk audits in fast-paced retail environments. Hands-on with ISO 27001, NIST CSF, and policy-control mapping. Ready for remote GRC roles in the financial or tech sectors.
CERTIFICATIONS
• CompTIA Security+
• ISO/IEC 27001:2022 Lead Implementer
• FEMA IS-100.c: Introduction to the Incident Command System (ICS-100)
• FEMA IS-230.d: Fundamentals of Emergency Management
• FEMA IS-800.d: National Response Framework, An Introduction
• FEMA IS-42: Social Media in Emergency Management
• CISM (ISACA) – Expected 07/2025
Governance, Risk, and Compliance Analyst (Independent Projects), 01/24 - Present, Mapped ISO 27001 Annex A controls to NIST CSF core functions, Simulated risk assessments, gap analyses, and remediation timelines for mock clients, Created control evaluation documentation and policy alignment templates, Built Acceptable Use to Control-to-Metric tracking systems for compliance workflows.