Compliance Consultant · CISA

Compliance execution for teams under deadline.

I help SaaS, security, and advisory teams stay ahead of audits, clean up control drift, and keep compliance work moving when deadlines are fixed and bandwidth is tight.

Current

Compliance Specialist, 11:11 Systems

Certification

CISA

Frameworks

SOC 2, ISO 27001, PCI-DSS

Best fit

Audit prep, remediation, overflow support

Who I help

Support for teams that need the work done cleanly and on time.

The buyers are different, but the operating pressure is usually the same.

Companies

Audit prep, control execution, documentation, and follow-through when internal owners are stretched.

Security partners

vCISO, MSSP, and remediation support for evidence coordination, control follow-up, and client delivery.

Audit and compliance firms

Extra delivery capacity during busy cycles without adding full-time headcount.

What I do

Focused support instead of a long menu of overlapping services.

Four offers cover the work that tends to slow audits, drag operations, or overload internal teams.

Audit Readiness & Audit Support

Evidence organization, request tracking, owner follow-up, and auditor coordination.

Compliance Program Operations

Workflow cleanup, recurring operating cadence, and support that reduces control drift.

Policy & Control Design

Documentation cleanup, control language, and practical alignment between policy and operations.

Overflow Support for Firms

Contract-based delivery support for firms handling audit pressure, remediation work, and client updates.

Why clients bring me in

The pressure points are usually obvious.

The work itself is manageable. The drag around it is what creates risk.

Deadlines are fixed

Audit dates do not move just because the work got messy or internal ownership is split.

Evidence is scattered

Requests, screenshots, exports, and approvals spread across tools slow down the entire engagement.

Internal owners are overloaded

Compliance work usually lands on people who already have full-time jobs to protect.

Selected proof

Relevant experience, framed around the work buyers actually need.

The environments change. The pattern does not: fixed deadlines, cross-functional follow-through, and execution that needs to hold up under scrutiny.

Supported audit readiness across SOC 2, ISO 27001, and PCI-DSS environments.
Coordinated audits, evidence collection, and auditor communication.
Built workflows spanning security, IT, legal, operations, and product.
Supported fast-moving SaaS and infrastructure environments.

Operational advantage

I use an internal workflow system to keep controls, evidence, and delivery work organized.

Kasbah supports active engagements by reducing admin drag and keeping open work visible while deadlines are moving.

Cleaner evidence handling
Better visibility into open work
Less admin drag during active engagements

Need help before an audit, during cleanup, or when delivery capacity is tight?

Best fit for audit prep, documentation cleanup, remediation follow-through, and overflow support.

Book a call