PORTFOLIO

Selected Projects

A snapshot of the work I've done across GRC, risk assessments, security operations, and privacy-focused initiatives.

GRC • Nonprofit

Critical Function & BIA Assessment for Global NGO

CyberPeace Institute – 2025

Performed a lightweight BIA-style assessment to identify critical functions, operational dependencies, and high-impact processes for a resource-constrained nonprofit environment.

  • Mapped critical services, data flows, and operational workflows.
  • Developed asset inventories and critical-function matrices.
  • Provided prioritized recommendations to improve resilience and visibility.
Security Operations

SIEM Alert Triage & Incident Documentation Playbook

Cybriant SOC – 2024–2025

Structured an approach to triaging SIEM alerts, documenting incidents, and feeding learnings back into incident response and compliance workflows.

  • Standardized alert investigation steps and data points.
  • Documented incident reporting templates and remediation tracking.
  • Aligned process with regulatory and customer audit expectations.
Policy • Framework Alignment

Policy & Control Documentation for SMB Clients

Cybriant TAM Internship – 2023–2024

Supported SMB clients by documenting security posture, control coverage, and alignment to key standards.

  • Produced tailored security reports and improvement roadmaps.
  • Mapped client security controls to frameworks and regulatory expectations.
  • Collaborated with technical teams to translate findings into action.