I am an Information Security and AI Governance Consultant with over 20 years of experience in Governance, Risk, and Compliance (GRC), IT audit, and training.
I am a certified Lead Auditor for ISO/IEC 27001:2022 and ISO/IEC 42001:2023, with hands-on experience in helping organizations design, implement, and assess Information Security and AI Management Systems.
I have worked with startups and enterprises to support ISO 27001 readiness, risk assessments, security questionnaires, and compliance programs aligned with global standards and regulations.
My expertise includes risk management (ISO 31000, COSO ERM), IT governance (COBIT, ISO 38500), and regulatory alignment across privacy and security frameworks.
In addition to consulting, I deliver corporate training on ISO standards, GRC, and AI governance, helping professionals and organizations apply concepts in a practical, business-focused way.