Neviar Rawlinson

Neviar Rawlinson

IT Governance Manager

ClearCaptions

Remote

About Me

I got into GRC because I saw how often organizations had policies, frameworks, and audit requirements documented, but not always operationalized in a way that teams could consistently follow. I became interested in the space where governance meets real systems, workflows, evidence, and accountability.

My current work focuses on IT governance, change management, RCA, audit readiness, compliance documentation, and building governance processes that are practical, measurable, and enforceable. I have hands-on experience creating SOPs, readiness checklists, governance dashboards, control documentation, and Jira-based workflows that support stronger decision-making and traceability.

I am especially passionate about GRC Engineering, governance systems, and helping organizations move beyond static documentation into repeatable processes that generate evidence by design. I also enjoy helping career changers break into GRC by making complex frameworks, audit concepts, and compliance responsibilities easier to understand and apply.

Experience Highlights

  • Built and operationalized a Jira-based change management governance process
  • Led CAB readiness reviews and enforced change approval criteria
  • Created SOPs, governance standards, RCA templates, and audit-ready documentation
  • Developed governance dashboards, reporting formats, and executive summaries
  • Supported ITGC, audit evidence collection, access review follow-ups, and compliance documentation
  • Created practical GRC portfolio projects focused on change management, risk, RCA, and governance systems
  • Founded GRC-focused learning resources to help career changers build confidence and practical skills
  • Focused on bridging traditional GRC with automation, workflow design, and evidence engineering

Get in Touch

DM me on LinkedIn: https://www.linkedin.com/in/neviarr/ You can also follow my work on GitHub: https://github.com/neviarrawlinson

Specializations

Audit & AssuranceCompliance AutomationRisk ManagementSecurity GovernanceThird-Party RiskAI GovernanceCloud Governance

Languages & Tools

BashGoJavaScriptOSCALPowerShellPythonSQLTerraform

Frameworks

CMMCCOBITFedRAMPHIPAAISO 27001NIST 800-53NIST AI RMFNIST CSFNIST RMFPCI-DSSSOC 2

Projects

Enterprise GRC Library

Developed a GitHub-based library of GRC templates, control mappings, glossaries, risk registers, and training resources for career changers and practitioners.

Enterprise Risk Acceptance Model

A practical, enterprise-ready unified risk acceptance framework designed for complex organizations. This model balances operational agility with structured governance, enabling organizations to simplify exception management while maintaining executive visibility and accountability.

Governance Systems Skills Library

Practical Claude-compatible skill packs for Governance Systems Engineering, change governance, RCA analysis, audit evidence, risk documentation, vendor risk, AI governance intake, and executive GRC reporting.