
Denise Moreno
@denisemoreno
GRC and IT risk professional at Sekit AI, co-designed a 432-control framework mapped to 16 cybersecurity standards.
What I'm looking for
At Sekit AI, I co-designed Sekit CSF, a 432-control framework mapped to 16 standards, and designed the platform’s GRC methodology for gap analysis, risk treatment, and evidence management.
At Deloitte, I owned Cenovus Energy’s PCI DSS Attestation of Compliance through three consecutive external audits with no failures. Earlier, at PDVSA, I worked on security architecture for IT and OT networks and managed technology risk, business impact analysis, and contingency planning.
Experience
Work history, roles, and key accomplishments
Co-Founder
Sekit AI
Mar 2026 - Present (6 months)
Co-designed a GRC platform for cybersecurity consultants, including a 432-control framework mapped to 16 standards and a methodology for gap analysis, risk management, and GDPR compliance.
Provided GRC and cybersecurity consulting for clients in multiple countries, including owning a PCI DSS Attestation of Compliance, leading NIST CSF 2.0 assessments, and managing third-party risk.
Security Operations & Threat Intelligence Engineer
Red Piranha
Feb 2018 - Feb 2021 (3 years)
Performed SOC monitoring, threat hunting, and threat intelligence reporting, and designed controls for ISO 27001 and ISO 15408 compliance.
Preventive Security Management Analyst
PDVSA
Sep 2007 - Oct 2018 (11 years 1 month)
Managed security architecture for administrative and OT networks across 50+ sites, conducted technology risk management and business impact analysis, and served as an internal ISO 27001 auditor.
Security Evaluation, Response & Contingency Analyst
PDVSA
Nov 2006 - Sep 2007 (10 months)
Conducted security evaluations, risk analysis, and contingency planning to support operational continuity.
Network Analyst
PDVSA
Feb 2004 - Oct 2006 (2 years 8 months)
Designed and administered Cisco LANs and served as telecommunications technical lead for a CCTV rollout to over 200 sites.
Education
Degrees, certifications, and relevant coursework
CertiProf
Cybersecurity Awareness Professional Certificate (CAPC), Cybersecurity Awareness
2024 - 2024
Cybersecurity Awareness Professional Certificate (CAPC) from CertiProf in 2024.
Universidad de Santiago de Chile
ISO/IEC 27017 Lead Auditor - Cloud Auditor, Cloud Security
2023 - 2023
ISO/IEC 27017 Lead Auditor - Cloud Auditor certification from Universidad de Santiago de Chile (USACH) in 2023.
Udemy
Risk Management for Cybersecurity and IT Managers, Cybersecurity Management
2022 - 2022
Courses in Risk Management for Cybersecurity and IT Managers and ISO 27001 Cybersecurity Manager from Udemy in 2022.
Universidad Internacional de La Rioja
Master's Degree, Information Security
2019 - 2020
Master's Degree in Information Security (Máster Universitario) from UNIR, Spain, completed between 2019 and 2020.
FONDONORMA
ISO 27001 ISMS Implementation, Information Security Management
2007 - 2007
ISO 27001 ISMS Implementation and Business Continuity Plan Design and Management training from FONDONORMA in 2007.
EC-Council
Ethical Hacking and Countermeasures, Ethical Hacking
2007 - 2007
Ethical Hacking and Countermeasures course from EC-Council in 2007.
Universidad Yacambú
Engineering Degree, Electronic and Computer Engineering
1997 - 2004
Electronic and Computer Engineering degree from Universidad Yacambú, Venezuela, completed between 1997 and 2004.
Availability
Location
Authorized to work in
Salary expectations
Social media
Job categories
Skills
Interested in hiring Denise?
You can contact Denise and 90k+ other talented remote workers on Himalayas.
Message DeniseGet matched with your dream remote job
Sign up now and join over 250,000+ remote workers who receive personalized job alerts, curated job matches, and more for free!
