Details
Skills
Risk Management, Compliance Management, Cybersecurity Governance, Third-Party Risk Assessment, Vendor Risk Management, Incident Response, Vulnerability Assessment, Penetration Testing, Red Teaming, Threat Modeling, Data Protection, Secure Coding Practices, Network Security, Identity and Access Management (IAM), Privilege Escalation, Antivirus Evasion, Buffer Overflow Exploits, SQL Injection, XSS, LFI, Security Hardening, Encryption, Security Monitoring, Audit Support, Business Continuity Planning, Disaster Recovery Planning, Policy Development, Technical Documentation, Linux Administration, Windows Server Administration, Network Configuration, Active Directory, Microsoft Intune, Mobile Device Management (MDM), Microsoft Admin Center, Microsoft 365, Office 365, SAP Support, ServiceNow, Microsoft Purview, OWASP ZAP, Burp Suite, Metasploit, Nexpose, Nmap, Netcat, Wireshark, Enum4Linux, LinPEAS, Hydra, Nikto, SQLmap, PowerShell Empire, Untangle Firewall, SonarQube, TCP/IP, DNS, DHCP, VPN, VLAN, SNMP, DevSecOps, Docker, Jenkins, CI/CD Concepts, SAST, SCA Tools, GitHub, GitHub Actions, Python, Bash, PowerShell, C, C++, PHP, Shell Scripting, JavaScript, SQL, HTML, CSS, Microsoft Word, Microsoft Excel, Microsoft PowerPoint, Google Docs, Google Sheets
About
Cybersecurity Risk & Compliance Specialist | OSCP Certified | Toronto, ON
Cybersecurity professional with experience in risk management, compliance frameworks (NIST, ISO 27001, PCI-DSS), and third-party/vendor security assessments. Skilled in creating and enforcing cybersecurity policies, coordinating audit readiness, and supporting data protection efforts across cloud and enterprise environments. Proven ability to evaluate risks, remediate vulnerabilities, and drive compliance alignment using tools such as ServiceNow, Microsoft Purview, and OWASP ZAP. Strong communicator with a background in cross-functional collaboration, incident response, and secure system implementation. OSCP certified and passionate about building secure, audit-ready environments aligned with organizational and regulatory goals.