Risk // Assurance // Identity // Governance

GRC &
Cyber
Security
Portfolio

Simulated and academic work demonstrating methodology, analysis, documentation, controls thinking, and decision-making across governance, risk, compliance, audit, identity, and technical security.

Portfolio disclosure: Artifacts are simulated or academic unless otherwise noted. They are presented to demonstrate professional reasoning and work-product structure, not to represent client engagements.

Four recruiter-friendly case studies organized by professional capability—not course or assignment name.

AvailableFlagship // Risk Management
01

Enterprise Risk Register

A structured view of enterprise cyber, operational, vendor, fourth-party, AI/SaaS, and compliance risk—translated into decision-ready treatment planning.

Skills demonstrated

  • Probability-impact scoring
  • Risk response planning
  • Vendor risk
  • AI/SaaS governance
  • Audit-ready documentation
View Case Study
AvailableAudit & Assurance
02

Cybersecurity Audit & Assessment Playbook

A source-backed audit-readiness set connecting enterprise scope and evidence strategy to 13 prioritized cybersecurity risks and recommended next steps.

Skills demonstrated

  • Audit readiness
  • Evidence planning
  • Control assessment
  • Stakeholder reporting
View Case Study
AvailableIdentity & Access
03

Access Governance Assessment

An 18-finding access-control crosswalk focused on least privilege, remote and privileged access, evidence quality, and remediation planning.

Skills demonstrated

  • IAM
  • Least privilege
  • Access review
  • Privileged access
  • Remediation planning
View Case Study
AvailableCompliance // Academic
04

HIPAA Compliance & Security Posture Assessment

A safeguard-oriented assessment translating ePHI protection expectations into evidence needs, governance mappings, and risk-focused security posture actions.

Skills demonstrated

  • HIPAA safeguards
  • Evidence mapping
  • Access governance
  • Third-party oversight
View Case Study

Follow the signal.

Start with the capability closest to the role, then follow the linked case study or supporting simulation.