Dedicated, friendly, empathetic, and results-oriented information security professional with over 10 years of experience. Possesses in-depth knowledge in risk management and information security compliance, including gap analysis, security awareness programs, and user management. Capable of working under pressure while being creative and punctual. A team player with a keen eye for details, always innovative, analytical, and open to learning new things with a collaborative mindset. Excellent at multitasking and translating complex technical information into plain language.Proficient in administering and maintaining secure enterprise environments, ensuring compliance with PCI-DSS, NIST CSF, ISO 27001 attestations, and SOC reports.Managed technical and non-technical cyber security programs and processes in areas such as security risk & governance, GRC including third party risk, controls assurance, risk analytics & KPIs, vendor management, application security, data protection, vulnerability management, risk management and threat management. Proactive with the ability to research and analyze a wide range of issues affecting information security, network security, systems security, cyber security, compliance, security architecture, and security policies as required. In-depth technical knowledge of Microsoft Windows, and Windows Server as well as experience with Mac OS, Virtual Machines, and Linux-based Servers. Well experienced in Active Directory and Microsoft 365 & Intune management with experience in scripting languages (Shell Scripting, VBA) & command-line tools.