AWS


Information Security & GRC Analyst with hands-on experience managing DORA-aligned ICT risk management projects, EU regulatory readiness frameworks, and ISO/IEC 27001 ISMS implementations. Experienced in drafting ICT risk policies, executing control mapping projects, and preparing regulator-facing documentation with a structured, evidence-based approach to governance and third-party risk. Proven track record of architecting cloud security controls and deploying automated compliance solutions for Tier-1 FinTechs.
Skilled in cloud audits, risk assessments, and AI-driven automation using Gemini agents & n8n. Currently growing my AWS/Azure credentials and exploring AI applications in workplace security. Passionate about cybersecurity side projects
• Delivered IT security and compliance consulting services in a hybrid QA, product management, and security analysis role, ensuring security and compliance throughout the SDLC.
(Note: Specific client names, project scopes, and technical environments are protected under strict Non-Disclosure Agreements).
Cloud Security: AWS & Azure (CIS Benchmarks)
Compliance Frameworks: ISO 27001, GDPR, DORA, CRA
IT Audit & Risk Assessment
DevSecOps & Secure Development Lifecycle
Security Automation (Gemini, n8n, GPT-based tools)
Vulnerability Assessment & Cloud Architecture Review
PECB ISO/IEC 27001 Lead Auditor
AWS
Azure
GWS