
Entry-level cybersecurity professional with practical experience in Governance, Risk, and Compliance (GRC) initiatives and SOC 2 audits. Proven skills in device compliance, vendor risk assessment, and conducting security awareness training. Demonstrated ability to support enterprise security operations effectively.
Security Tools: Metasploit, Nmap, and Wireshark
Operating systems: Windows, macOS, Kali Linux
Collaborative Cybersecurity Training with Governance, Risk, and Compliance (GRC) team (2024-2025)
• Supported ISO and SOC 2 audit preparation by gathering evidence, reviewing documentation, and validating security controls.
• Assisted with vendor SOC 2 report reviews to support third-party risk management.
• Edited and improved security workflows and forms in Confluence for the GRC team.
• Collected data for business impact analysis (BIA) across departments.
• Led the rollout of a company-wide security awareness training program.