At Karthik Consulting, I created and operationalized a Risk Management Program aligned with NIST SP 800-53 and NIST CSF. I assess cyber risk and security controls across federal information systems and communicate posture and remediation progress through executive dashboards.
I analyze Tenable vulnerability scan results, produce weekly Known Exploited Vulnerabilities reports, and manage Plans of Action and Milestones in CSAM. This work achieved a 95% on-time remediation closure rate.
At Guidehouse LLP, I led risk and OMB A-123A internal control assessments across 10+ federal systems, engaging 100+ stakeholders. I also tested 150+ IT General Controls and reviewed SOC 1 and SOC 2 reports to identify control deficiencies and track remediation.
At Sikich, I conducted ITGC audits and assessed federal security controls using NIST SP 800-53. I recommended control improvements that reduced audit findings by 15%, and drafted security and contingency plans supporting federal compliance.

