Details
Skills
Core Skillsets:
Audit & Assurance:End-to-end audit delivery and control effectiveness evaluation. Evidence gathering, validation, and structured documentation. Identifying non-conformities and providing actionable remediation support. Conducting operational stakeholder interviews.
GRC & Frameworks:Implementation and auditing for ISO 27001, NIST, and SOC 2. Québec Law-25 compliance and data protection standards.Risk management, enterprise security posture enhancement, and certification preparation.
Technical Capabilities:AI Prompt Engineering for synthesizing raw audit data and drafting reports. Vulnerability management and basic incident response.IT infrastructure and security controls evaluation.
Soft Skills & Leadership:Client-facing communication and cross-functional collaboration. Maintaining professional independence and objectivity during assurance activities. Structured, methodical approach to managing multiple technical engagements and priorities. Multilingual communication (English, Marathi, and Hindi).
About
I am a CISA-certified GRC Professional and Information Security Auditor with a Graduate Certificate in Cybersecurity from McGill University. With over 15 years of operational leadership experience and a specialized focus on IT governance, I excel at evaluating control effectiveness, gathering traceable evidence, and strengthening enterprise security postures against ISO 27001 and NIST frameworks. I embrace a forward-thinking approach by leveraging AI tools (ChatGPT, Claude) to synthesize raw audit data and draft clear, structured assurance reports. Based in Montreal, I am a detail-oriented, objective auditor who is also eligible for the Quebec Government Wage Subsidy (PPD).