I'm a Cybersecurity GRC and privacy specialist leading risk management, risk assessments, security policies, internal controls, and regulatory compliance for diverse clients. I support ISO 27001 and SOC 2 implementation, GDPR and Israeli privacy requirements, third-party risk management, and AI-use risk management.
In my current cybersecurity and information-security role, I build end-to-end security procedures, map data repositories, define governance processes, conduct gap analyses, and lead employee security-awareness training and cyber-incident exercises. I work directly with senior leadership and stakeholders to reduce organizational cyber risk.
Previously, I advised organizations in an information-security audit department and worked as a certified public accountant across internal and external audit, SOX and ISOX testing, corporate risk surveys, financial reporting, and ITGC support. My background also includes budget management and control at Tel Aviv University.
