At Capitol Bridge LLC, I managed the RMF lifecycle for CMS systems and maintained authorization packages in support of FISMA and NIST SP 800-53 compliance.
I updated SSPs and POA&Ms in CFACTS, and supported CSRAP assessments through evidence collection and audit preparation. I also reviewed controls and coordinated remediation of identified gaps.
At Prescient Assurance, I delivered compliance consulting across SOC 2 Type II, ISO 27001, HIPAA, PCI DSS, and NIST SP 800-53 environments. I conducted gap assessments and third-party risk assessments, and supported audit readiness.
Earlier, I coordinated HITRUST certification efforts at Relias LLC and built HIPAA-compliant security program documentation at Tuerk House Health. My work has included risk assessments, vulnerability management, and POA&M tracking.

