Victoria G.
Information Security Expert, ISO 27001 Auditor, SOC 2, HIPAA, GDPR.
I help companies of all sizes and across all industries get audit-ready and certified: ISO 27001, SOC 2, HIPAA, GDPR, PCI, FedRAMP, CMMC, and more. Most of my clients come to me at the same point: they need a certification to close a deal, onboard an enterprise customer, or satisfy an investor, and they don't know where to start. I take them from zero to certified, handling the implementation end to end: policies, controls, risk assessments, evidence collection, and audit coordination. What I actually do: 🔧Build and implement your ISMS or compliance program from scratch. 🔍Run gap analyses against your target framework. 📄 Write the policies and procedures that auditors actually want to see. ✅Prepare your team for the audit so there are no surprises. 💻Work inside Vanta, Drata, Thoropass, StrikeGraph, TrustCloud or whichever you're using. I also handle HIPAA and GDPR compliance for healthtech and companies processing EU data, and third-party risk management programs for companies that need to assess their own vendors. If you're not sure what framework you need or where you stand, I'm happy to jump on a quick call and point you in the right direction, no strings attached.