Sharaden Cole
Cybersecurity & GRC Engineer
About Me
I initially became interested in cybersecurity during my undergraduate studies in Business Information Systems. During that time, I was introduced to the importance of protecting organizational data, managing technology risks, and aligning security practices with business objectives. This early exposure sparked my interest in how organizations build structured security programs that balance operational needs with strong governance and risk management.
During graduate school, I transitioned more deeply into Governance, Risk, and Compliance (GRC). I spent a significant amount of time on self-study, developing a stronger understanding of security frameworks, regulatory requirements, and control implementation. At the same time, I continued building technical skills to better understand how security controls function within real environments, which helped me bridge the gap between policy and technical implementation.
Currently, I focus on GRC engineering practices, where I work on translating security and compliance requirements into practical, implementable controls. My experience involves working with frameworks such as NIST and PCI, supporting governance processes, identifying risks, and helping design security practices that organizations can realistically operationalize. I've adopted a GRC engineering mindset that emphasizes building scalable, efficient compliance processes rather than treating compliance as a purely documentation-driven activity.
I'm passionate about the evolving role of GRC within cybersecurity. I enjoy exploring how governance, automation, and security architecture can work together to create stronger, more resilient security programs. My long-term goal is to continue developing as a GRC professional who can bridge the gap between business leadership, compliance requirements, and technical security teams.
Get in Touch
Feel free to reach me via Email: Colesharaden@outlook.com
Specializations
Languages & Tools
Frameworks
Projects
This lab automates encryption-at-rest validation for AWS S3 and EBS, assesses KMS usage, and produces audit-ready JSON and CSV evidence mapped to SOC 2 CC6.1 and NIST SP 800-53 SC-28.
This repository demonstrates a mock Security Architecture Review (SAR) for an AWS-hosted web application. The lab practices GRC Engineering concepts including risk identification, quantification, continuous monitoring, and automated remediation.
This repository provides a comprehensive, step-by-step implementation of AWS account governance and security best practices using native AWS services. It includes CloudFormation templates, configuration examples, and documentation for setting up an enterprise-ready AWS environment with strong compliance, monitoring, and cost control foundations.
Performed a comprehensive vendor policy gap analysis to assess compliance risks against regulatory standards. Focus on Vendor Risk & Policy Compliance.
Interested in working with Sharaden Cole?