GRC & AI Governance Analyst based in Sheffield, UK. CompTIA Security+ certified, with hands-on experience in ISO 27001-aligned risk assessments, third-party risk management, and audit-evidence programmes. One of a small group with training in both ISO 27001 and ISO 42001 (AI Management Systems) — that intersection is where I focus my work.
- 🔐 Information security risk assessments & risk registers
- 🤖 AI governance & ISO 42001 frameworks
- 🏢 Third-party / supplier risk management
- 🛡️ IAM security modelling & threat modelling
- 📊 Vulnerability triage · SIEM detection logic · audit-evidence collection
👉 Enterprise Security & IAM Assessment Toolkit — practical tools for IAM analysis, vuln triage, and SIEM anomaly detection, with full framework documentation (NIST · ISO 27001 · ISO 42001 · STRIDE)
CompTIA Security+ · Microsoft Azure Fundamentals (AZ-900) · ISO 27001 (trained) · ISO 42001 (trained) · MSc Sheffield Hallam University