I will draft cybersecurity policies and incident response plans

United Arab Emirates

I speak English, Sinhala

Assistant Manager Security Cyber Resilience

Certified ISO/IEC 27001:2022 & 27701 Lead Auditor with 9+ years in GRC consulting. I manage engagements end-to-end: client scoping, stakeholder management, delivery, and reporting, not just technical ...
About this Gig

I bring 8+ years of experience assessing and managing enterprise risk, including an 18-month ERM framework build for a banking client using scenario modelling and real-time risk dashboards, and 12+ risk assessments using advanced analytics across the telecom, banking, and manufacturing sectors.


What you get:

  • NIST CSF 2.0 maturity assessment across all six functions (Govern, Identify, Protect, Detect, Respond, Recover)
  • Risk register with likelihood/impact scoring and treatment plans
  • Enterprise risk appetite and KRI framework (for organisations building or refreshing ERM)


I own the engagement end-to-end, from stakeholder interviews through to the final deliverable, so the findings reflect how your organisation actually operates, not a generic checklist.

Document type:

Documentation

Regulatory Documents

Industry:

Cybersecurity

Language:

English

Delivery style preference

Please inform the freelancer of any preferences or concerns regarding the use of AI tools in the completion and/or delivery of your order.

My Portfolio

Related tags