Andrew
Information Security Consultant and Accounting Contractor
Compétences
Voir mes services


Expérience professionnelle
Bookkeeping & Financial Operations Support (Contract / Self-Employed)
Contract
Dec 2024 - Present • 1 yr 5 mos
Provided basic bookkeeping and financial organization support for small businesses and independent clients. • Categorized transactions and maintained accurate financial records using tools like QuickBooks Online and spreadsheets • Performed bank and credit card reconciliations to ensure accuracy and identify discrepancies • Cleaned up disorganized books, correcting miscategorized transactions and duplicate entries • Assisted with monthly financial reporting, including profit & loss summaries and expense tracking • Organized receipts, invoices, and supporting documentation for tax readiness • Communicated directly with clients to clarify transactions and maintain clean records • Supported budgeting and cash flow tracking for small business owners
Information Security Consultant
GRC Security Solutions
Dec 2022 - Present • 3 yrs 5 mos
Information Security Consultant (Business Founcer & Private Contractor) • Provided practical cybersecurity and compliance support to small financial and retail businesses. • Conducted risk assessments using the NIST Cybersecurity Framework (NIST CSF), identifying threats, vulnerabilities, and business impact • Developed Written Information Security Programs (WISP) aligned with IRS and FTC Safeguards Rule requirements • Produced risk reports with likelihood/impact analysis and clear, prioritized remediation steps • Created security policies, procedures, and incident response plans to strengthen client security posture • Performed asset inventories, system reviews, and client interviews to identify gaps and risks • Advised business owners on implementing realistic security controls and compliance measures (NIST CSF, PCI DSS) • Configured secure systems and networks, including remote work environments • Delivered end-user training and documentation to improve security awareness and practices