At KLDiscovery, I support GRC, cybersecurity risk, TPRM, and RMF activities across federal and commercial environments. I manage A&A documentation, including SSPs, SAPs, SARs, POA&Ms, and Continuous Monitoring plans.
I lead third-party cybersecurity risk assessments and reassessments, reviewing vendor security, privacy, resilience, and assurance evidence. I work with Legal, Procurement, IT, Privacy, and Risk stakeholders on vendor suitability, contractual security, and remediation.
At Freddie Mac, I executed enterprise risk, compliance, and third-party control assessments. I developed reporting on control maturity, residual risk, remediation, and SLA adherence.
Earlier, at Guidehouse, I supported federal FISMA and FedRAMP compliance and conducted third-party assessments for more than 300 vendors. I also reduced complaint resolution time by 25% through process redesign and automated tracking.

