💻🔒Results-driven GRC Policy Analyst and Cybersecurity Specialist with extensive experience in developing and implementing robust security policies, procedures, and controls to safeguard organizations against cyber threats. Adept at collaborating with cross-functional teams to ensure compliance with key security frameworks including HIPAA, PCI-DSS, TPRM, ISO 27001, SOX, and SOC. Expertise in conducting thorough security assessments, risk analyses, and audits to uncover vulnerabilities and recommend tailored solutions, leveraging NIST Special Publications (800-53, 800-53A, 800-60, 800-30, 800-37, 800-171) and FIPS standards (199, 200).🧑💻🧑💼Technical Expertise: Assessment and Authorization (A&A) | NIST 800 Series | Plan of Actions and Milestone (POAM) | System Security Plan (SSP) | System Assessment Report (SAR) | Risk Analysis | Risk Assessment | Risk Control & Mitigation Security Life Cycle | Threat Reports | Contingency Planning | Data Security | Developing security plans | Implementing security programs | Wireshark | Nmap | Implementing security controls | Nessus Software | TPRM| ISO 27001 | PCI DSS | Risk Management Framework (RMF) | SOX | HIPAA| SSAE | SIEM Monitoring | JIRA | iOS/OS platform security | Mobile/tablet device security | Penetration testing |Ethical hacking |Vulnerability assessment |Network security |Firewall management |Encryption |Access control and authentication | Log management and monitoring⚙️🔧Technical Skills: Microsoft 365 | Office | PowerPoint | Excel | Teams | Outlook | Wireshark | Jiri | Nmap | SharePoint | Ethical Hacking | Syslog | Eramba | Zen map | Google Drive.I also currently serve in the United States Army 🪖as a 25H (Network Communication Specialist)