
Sidra Rehman
IT and Cybersecurity Consultant , Information Security Auditor , GRC Expert
Skills

See my services


Portfolio
Work experience
Information Security and GRC Consultant
Upwork • Freelance
Feb 2020 - Present • 6 yrs 6 mos
As an Information Security & GRC Consultant, I help organizations strengthen their cybersecurity posture by delivering governance, risk, and compliance (GRC) solutions aligned with international standards and industry best practices. Key responsibilities include: • Developing Information Security Policies, Procedures, and ISMS documentation • Conducting ISO 27001, ISO 42001, ISO 9001, SOC 2, and NIST gap assessments • Performing cybersecurity risk assessments and risk management • Creating audit-ready compliance documentation • Supporting ISMS implementation and certification readiness • Developing security awareness, incident response, and business continuity documentation • Advising clients on cybersecurity governance, compliance, and regulatory requirements