Services

Video meeting . 15 mins

Discovery Call

A GRC and Internal Audit walk through
FREE
Video meeting . 15 mins

Interview Guidance

How to crack IT audit and GRC interviews
FREE
Video meeting . 15 mins
FREE

About me

Cybersecurity & GRC Professional with 1.5+ years of deep domain expertise in ISO 27001 implementation, internal audits, risk assessments, and information security policy development, built on a strong foundation of 8+ years in strategic B2B/B2C sales and operations. I bring a hybrid blend of business acumen and InfoSec capabilities, uniquely positioning me to align cybersecurity controls with enterprise objectives—delivering not just compliance, but resilience and trust at scale. 🎯 Core Competencies: Governance, Risk & Compliance (GRC): Designed and executed internal audits, mapped controls to ISO 27001:2022, RBI, and CICRA frameworks, and led evidence-based compliance validation. Risk Management & Gap Analysis: Conducted organizational risk assessments, threat modeling, residual risk rating, and risk treatment planning. ISO 27001 Readiness: Hands-on involvement in policy drafting, control mapping (Annex A), SoA creation, and audit readiness for certification. Cybersecurity Awareness: Spearheaded employee training programs covering phishing, cloud hygiene, and Zero Trust principles. Business Continuity & Resilience: Supported BCP/DR planning by aligning IT controls with business risk appetite and critical service SLAs. Third-Party Risk & Vendor Governance: Evaluated vendor risks, contract SLAs, and access control baselines to ensure secure supply chains. 📜 Certifications: ISO 27001 Internal Auditor – Certified in managing internal audit programs and ISO Annex A controls. Cisco,IIIT