Sharaden Cole

Sharaden Cole

Cybersecurity & GRC Engineer

Available for: mentoringconsultingopen-sourcefreelancecollaboration

About Me

I initially became interested in cybersecurity during my undergraduate studies in Business Information Systems. During that time, I was introduced to the importance of protecting organizational data, managing technology risks, and aligning security practices with business objectives. This early exposure sparked my interest in how organizations build structured security programs that balance operational needs with strong governance and risk management.

During graduate school, I transitioned more deeply into Governance, Risk, and Compliance (GRC). I spent a significant amount of time on self-study, developing a stronger understanding of security frameworks, regulatory requirements, and control implementation. At the same time, I continued building technical skills to better understand how security controls function within real environments, which helped me bridge the gap between policy and technical implementation.

Currently, I focus on GRC engineering practices, where I work on translating security and compliance requirements into practical, implementable controls. My experience involves working with frameworks such as NIST and PCI, supporting governance processes, identifying risks, and helping design security practices that organizations can realistically operationalize. I've adopted a GRC engineering mindset that emphasizes building scalable, efficient compliance processes rather than treating compliance as a purely documentation-driven activity.

I'm passionate about the evolving role of GRC within cybersecurity. I enjoy exploring how governance, automation, and security architecture can work together to create stronger, more resilient security programs. My long-term goal is to continue developing as a GRC professional who can bridge the gap between business leadership, compliance requirements, and technical security teams.

Get in Touch

Feel free to reach me via Email: Colesharaden@outlook.com

Specializations

Audit & AssuranceCloud SecurityCompliance AutomationIdentity & Access ManagementPrivacyRisk ManagementSecurity ArchitectureSecurity GovernanceThird-Party Risk

Languages & Tools

BashGoPowerShellPythonTerraform

Frameworks

FedRAMPHIPAAHITRUSTISO 27001NIST 800-53NIST 800-171NIST CSFNIST RMFPCI-DSSSOC 2

Projects

AWS Encryption-at-Rest Compliance Validation Lab

This lab automates encryption-at-rest validation for AWS S3 and EBS, assesses KMS usage, and produces audit-ready JSON and CSV evidence mapped to SOC 2 CC6.1 and NIST SP 800-53 SC-28.

AWS Security Architecture Review (SAR) Lab

This repository demonstrates a mock Security Architecture Review (SAR) for an AWS-hosted web application. The lab practices GRC Engineering concepts including risk identification, quantification, continuous monitoring, and automated remediation.

Step-by-Step Security Implementation Guide

This repository provides a comprehensive, step-by-step implementation of AWS account governance and security best practices using native AWS services. It includes CloudFormation templates, configuration examples, and documentation for setting up an enterprise-ready AWS environment with strong compliance, monitoring, and cost control foundations.

Gap Analysis of Vendor Privacy and Security Policy

Performed a comprehensive vendor policy gap analysis to assess compliance risks against regulatory standards. Focus on Vendor Risk & Policy Compliance.

Interested in working with Sharaden Cole?