I've assessed cyber and technology risks at Red Violet, documenting inherent and residual risk, mitigation strategies, treatment plans, and executive-ready risk summaries. I also supported SOX-aligned ITGC and application control testing and escalated unresolved risks to management.
Previously, I supported IAM processes for more than 800 users at Barton Associates, conducting access reviews and identifying access and configuration risks. My work spans risk registers, GRC documentation, Active Directory, Salesforce, NIST CSF, CIS Controls, and incident-response support.

