Skip to main content

How I Support Security Teams

Governance, risk, compliance, and communication skills applied through practical work.

ISO 27001NIST CSFCIS ControlsCIS RAMPCI DSSGDPR

Competency areas

Skills are grouped by real-world cybersecurity work, not by percentages or arbitrary ratings.

Governance

Building policies, standards, control expectations, and documentation that support accountable security programs.

Security policy developmentPolicy reviewGovernance framework alignmentControl assessmentDocumentation standards

Risk Management

Connecting cybersecurity risk to business impact, ownership, likelihood, and practical treatment options.

Risk assessmentRisk register developmentRisk treatment planningBusiness risk analysisThird-party risk

Compliance

Interpreting framework expectations and preparing audit-friendly evidence and gap analysis outputs.

ISO 27001 alignmentNIST CSF mappingCIS ControlsCompliance gap analysisInternal audit support

Documentation

Producing clear, structured materials that help technical and non-technical stakeholders act confidently.

Technical writingExecutive summariesProceduresReportsTraining materials

Security Operations Support

Supporting operational readiness through planning, review, prioritization, and governance workflows.

Incident response planningVulnerability reviewBusiness continuity planningSecurity awarenessVendor assessments

Professional Skills

Bringing structure, communication, collaboration, and judgment to cybersecurity engagements.

Stakeholder communicationAnalytical thinkingPresentationProblem solvingContinuous learning

Frameworks applied in projects

Frameworks are presented as working references for governance, control alignment, risk analysis, and compliance readiness.

ISO 27001NIST CSFCIS ControlsCIS RAMPCI DSSGDPRHIPAABusiness Continuity

Where these skills are demonstrated

View Projects

Governance

Governance Policy Development

A structured policy development engagement aligning security expectations with business objectives and recognized frameworks.

ISO 27001NIST CSFCIS Controls
View case study

Internal Audit

Internal Cybersecurity Audit

An internal assessment that reviewed security controls, documented gaps, and produced a prioritized remediation roadmap.

NIST CSFCIS ControlsISO 27001
View case study

Risk Management

Enterprise Risk Assessment

A risk assessment project documenting assets, threats, likelihood, impact, and treatment options for management review.

CIS RAMNIST CSFISO 27001
View case study