I help organizations build stronger, audit-ready security programs. I’m a GRC specialist with over 4 years of experience implementing ISO 27001:2022, aligning securit NIST CSF, and delivering PCI DSS and SAMA compliance. As an Associate CISSP and ISO 27001 Lead Implementer, I conduct risk assessments, internal audits, and gap analyses; develop policies and standards; manage access governance and vulnerability remediation; and support SOC incident handling. I’ve led enterprise certifications, supported C2M2 and SOC CMMI maturity assessments, and delivered cloud security work across AWS and GCP.... Read more