A security operator who moves comfortably between regulation language, architecture detail, and delivery reality.
I build security programs that translate complex regulations, multi-cloud risk, and product realities into operating models teams can execute every day.
My work spans governance, risk, and compliance, cloud security architecture, access control design, technical control validation, and audit-ready documentation across global markets.
I enjoy operating at the seam between engineering, compliance, and leadership, where security needs to be measurable, practical, and aligned with business motion.
How I Work
Translate regulation into buildable technical requirements.
Make cloud controls measurable and auditable.
Partner with engineering early, not after release risk appears.
Treat security communication as part of the control design.