Strategic Governance, Risk, and Compliance (GRC) professional with over a decade of experience bridging the gap between technical security requirements and business enablement. I specialize in building, scaling, and maturing enterprise-grade security postures for global organizations. Most recently, I led the GRC function for a rapidly growing tech company, architecting a zero-to-certified strategy that successfully achieved ISO 27001 and SOC 2 Type 2 certifications within the first year. My core competencies include: - Framework Implementation & Auditing: Deep expertise defending and maintaining continuous compliance across ISO 27001, ISO 9001, SOC 2 Type 2, and GDPR. - Enterprise Risk Management (ERM): Designing and operationalizing risk programs, conducting operational assessments, and establishing risk treatment protocols. - Third-Party Risk (TPRM): Establishing robust vendor assessment programs to mitigate supply chain risks. - Business Continuity: Directing BCP/DR strategies and facilitating disaster recovery simulations for global institutions. I am passionate about turning compliance from a box-checking exercise into a strategic revenue enabler that builds client trust and supports enterprise expansion.
Member Since
March 10, 2026
Last Active
3 months ago