I have profound knowledge and experience in implementing GRC (Governance, Risk and Compliance) / IRM (Integrated Risk Management) tools such as ServiceNow, Archer, and HiScout. I am competent in independently executing implementations, working collaboratively within a team, or providing oversight and leadership to implementation teams.
Proper implementation documentation links every configured element back to its originating requirement. This ensures that design decisions remain traceable and auditable — even years after go-live — and that any subsequent review or system recovery can proceed without relying on institutional memory. I strongly advocate for this practice throughout every implementation engagement.
I have actively participated in implementations across various domains, including:
- IT Risk Management
- Information Security Management System
- Enterprise Risk Management
- Internal Control System
- Business Continuity Management
- Operational Loss Events (Asset Management)
- Risk Bearing Capacity