GRC & Cybersecurity Support Volunteer
CyberPeace Institute Jul 2025 – Present- Support global NGOs with BIA-style assessments to identify critical functions and operational dependencies.
- Develop asset inventories for devices, accounts, cloud services, and sensitive data repositories.
- Conduct early-stage risk assessments for threats, vulnerabilities, and operational impacts in resource-constrained environments.
- Create process maps and documentation for workflows, data flows, and system interactions.
- Deliver security awareness training on phishing, MFA, data handling, and cyber hygiene.
- Provide backup and data protection recommendations including cloud backup strategies and retention planning.
- Map NGO use of IaaS, PaaS, and SaaS to increase asset visibility and clarify security responsibilities.
- Develop lightweight GRC documentation such as critical-function matrices and asset lists for nonprofits.