At ROVUST, I lead enterprise GRC program operations aligned with COBIT 2019, NIST CSF, ISO 27001/27002, and COSO ERM. I maintain the enterprise risk register and facilitate quarterly Risk & Control Self-Assessments with business units.
At Mastercard, I planned and executed IT audits covering ITGC and ITAC, including SOX testing and cybersecurity controls. Earlier, at JP Morgan, I assessed internal controls over financial reporting and tracked remediation through retesting.

