Ashley User
@ashleyuser17
IT Compliance Specialist and IT Audit Consultant driving audit-ready governance and risk mitigation.
What I'm looking for
I’m an IT compliance professional with 10+ years of experience in regulated molecular diagnostics environments, focused on security governance, audit readiness, and operational compliance. I lead governance and risk activities that help teams stay aligned to CAP, CLIA, and FDA expectations.
I specialize in corrective and preventive actions (CAPA), user acceptance testing (UAT), and producing audit-ready documentation. I’m trusted for risk analysis, SOP development, and building audit evidence that stands up to rigorous regulator and third-party review.
Most recently, I’ve planned and executed HIPAA/ISO 27001 IT audits using NIST SP 800-30—building risk registers and control matrices, running sampling-based control testing in AWS/Azure, and issuing executive-ready reports with prioritized POA&Ms, residual-risk tiers, and measurable KRIs. I’m also actively expanding my expertise in AI governance using the NIST AI RMF.
Experience
Work history, roles, and key accomplishments
IT Audit Consultant
Axis Security Solutions
Jan 2025 - Present (1 year 6 months)
Performed IT compliance and audit engagements for small businesses, assessing governance structures, control environments, and alignment to NIST, ISO 27001, HIPAA, and PCI DSS. Developed risk registers/control matrices, executed sampling-based control testing, and authored executive-ready audit reports with prioritized POA&Ms.
Directed compliance under a regulated Quality Management System (QMS), aligning operations with CAP/CLIA standards and external audit requirements. Led CAPA investigations, established SOP-anchored preventive controls, oversaw training, and validated LIMS upgrades through UAT while maintaining a control/evidence matrix and risk register.
Translated regulatory controls into enforceable processes for the InVision First platform by defining test and acceptance criteria and strengthening documentation traceability. Improved PHI chain-of-custody through LIMS governance and built a requirements-to-evidence traceability matrix to support efficient auditor walkthroughs and RFI closures.
Executed compliance-driven testing under CAP/CLIA and produced inspection-ready validation packages. Ran LIMS UAT, authored validation summaries for external audit submissions, and performed record sampling/spot-audit checks on deviations, CAPA closures, and training attestations.
Sr. QA Analyst
Interpace Biopharma Solutions
Jan 2013 - Jan 2021 (8 years)
Conducted root-cause investigations and documented risk treatments aligned to audit methodology. Coordinated instrument validations and LIMS (LabMatrix) UAT to validate data integrity/security and created defensible audit evidence (FDA/CAP) while maintaining audit checklists and an evidence index to support walkthroughs and management responses.
Education
Degrees, certifications, and relevant coursework
ISACA
CISA (in progress), Information Systems Audit
CISA certification is in progress.
CompTIA
CompTIA Security+, Cybersecurity
Earned the CompTIA Security+ certification in cybersecurity.
Google Cybersecurity Certificate, Cybersecurity
Completed the Google Cybersecurity Certificate focused on core cybersecurity concepts and practices.
North Carolina State University
Bachelor of Science, Biological Sciences
Earned a Bachelor of Science in Biological Sciences from North Carolina State University.
Tech stack
Software and tools used professionally
Availability
Location
Authorized to work in
Job categories
Skills
Interested in hiring Ashley?
You can contact Ashley and 90k+ other talented remote workers on Himalayas.
Message AshleyGet matched with your dream remote job
Sign up now and join over 250,000+ remote workers who receive personalized job alerts, curated job matches, and more for free!
