Secure enterprise architecture design covering segmentation, layered defense, IAM, logging, and zero trust principles.
-
Updated
Nov 29, 2025
Secure enterprise architecture design covering segmentation, layered defense, IAM, logging, and zero trust principles.
AI governance control layer demo with decision tracing, policy enforcement, and audit visibility for agentic systems.
Enterprise STRIDE threat modeling assessment with DFD analysis, trust boundaries, attack surface evaluation, and mitigation mapping.
Synthetic NIST CSF 2.0 programme assessment using Current/Target Profiles, organisational Tier assessment, evidence-backed gaps and improvement roadmap.
Synthetic ISO/IEC 27001:2022 internal audit and control-assurance project covering risk-based scope, evidence, testing, findings, remediation and retest.
Cyber risk governance framework covering control assessment, risk evaluation, remediation tracking, and compliance alignment.
Governance-focused incident response framework aligned with NIST 800-61, operational resilience, executive reporting, and cyber risk management principles.
AI assessment framework focused on evaluating risk, governance, and behavior in real-world AI systems.
Cross-framework security assurance project linking risks, controls, evidence, findings and remediation across ISO 27001, NIST CSF 2.0, UK GDPR and operational resilience.
Professional cybersecurity consulting portfolio featuring governance, architecture, incident response, and risk management case studies.
Risk-based vulnerability management framework covering prioritization, remediation workflows, ownership, and reporting.
Enterprise ISO 27001 governance and policy framework aligned with risk management and audit readiness practices.
LeanIX — independent third-party profile of a public API surface, by API Evangelist. LeanIX (now SAP LeanIX) is an enterprise architecture and SaaS management platform providing IT portfolio management, application portfolio rationalization, SaaS discovery, and technology risk management.
Synthetic UK GDPR security-control assurance project focused on Article 32, evidence-backed testing, supporting process reviews and remediation.
Applied cybersecurity and technology risk portfolio focused on cloud infrastructure, observability, secure operations and digital exposure analysis
Simulated IT Audit exercise demonstrating user-access control testing, Excel-based exception analysis, risk assessment, findings documentation and evidence traceability.
Synthetic UK operational resilience and EEA DORA / third-party ICT risk project covering services, tolerances, dependencies, scenario testing and remediation.
Synthetic Continuous Controls Monitoring project for Procure-to-Pay audit analytics, focused on traceable findings, control evidence, materiality, run manifests and data quality.
Java enterprise technology-governance showcase for lifecycle, standards, waivers, risk, architecture alignment and target-state decisions. Proprietary source-available licence.
Audit management platform for structured vendor/audit workflows, role-based dashboards, corrective actions, evidence handling, and technology-risk process tracking.
To associate your repository with the technology-risk topic, visit your repo's landing page and select "manage topics."