01 / Understand
The starting point
Sensitive systems, risk analysis, security governance and continuity.
02 / Frame
The challenge to resolve
Numerous security topics had no clear treatment order or simple link between risk, control and expected evidence.
03 / Implement
My contribution
Ran focused interviews, formalized risks, grouped controls and prepared a concise summary for the decision committee.
04 / Verify
The documented outcome
Prioritized controls, clarified responsibilities and indicators ready for operational follow-up.
- Risk / control matrix
- Access review
- Treatment milestones
- Monitoring indicators
05 / Scope of the story
What this page documents
Reworded professional experience. Sensitive architecture and operational details are not published. No organizational endorsement is implied.
This page describes my role and documented outcomes. It does not establish a commercial relationship between the named organization and Murillo Consulting.