I come in as a fractional GRC leader — embedded enough to understand the business, experienced enough to build what is missing, and structured enough to hand it to the internal team to run.
15+
Years in enterprise cybersecurity
CISSP
HITRUST Certified Practitioner
Ex-
Deloitte, Take-Two & MultiPlan
NYC
Serving clients nationally
About
Senior GRC Leadership Without the Full-Time Overhead
I work with CISOs, CIOs, CTOs and General Counsel at mid-market healthcare and technology companies — especially when an audit is looming, a deal is stalling, or a new regulation just landed on legal’s desk with no clear owner.
My background spans Deloitte, Take-Two Interactive, and MultiPlan — where I built GRC programs from scratch, led HITRUST certifications, implemented vendor oversight at scale, and turned security from a bottleneck into a business enabler.
- HIPAA
- HITRUST
- SOC 2 Type I & II
- ISO 27001
- PCI DSS
- Vendor Risk Management
- GRC Program Build
- Regulatory Readiness