Cybersecurity Governance, Risk, and Compliance leader experience coordinating vendor onboarding, conducting security assessments, reviewing SOC reports, penetration testing artifacts, and security questionnaires, while partnering with business stakeholders and vendors to ensure compliance with organizational and regulatory requirements. Manage vendor lifecycle activities, track assessment progress, support contract renewals, validate vendor documentation, and improve operational efficiency through standardized governance processes. Expertise includes Third-Party Risk Management (TPRM), Vendor Risk Management (VRM), PCI DSS, SOC 2, NIST, ISO 27001, HIPAA, HITRUST, CMMC, and enterprise security governance.