Projects & Policies

A concise summary of my hands-on projects & policies in GRC, including ISO/IEC 27001 implementations, GDPR compliance, and risk assessments.

ISO/IEC 27001:2022
GDPR Work
ISO/IEC 42001: AI Management System (AIMS) Documentation Set
ISO/IEC 27701:2019 PII Controller/Processor Determination

Experience Overview

Skills

Core Competencies
  • Governance, Risk, and Compliance (GRC)

  • Risk assessments and risk registers

  • Compliance documentation and control design

  • Regulatory analysis (GDPR, ISO 27001, PCI DSS)

  • Policy and procedure development

  • Third-party / vendor risk assessment

  • Data protection and privacy governance

Technical & Compliance Skills
  • GDPR compliance (DPIA, RoPA, DSAR, breach response)

  • ISO/IEC 27001:2022 controls and documentation

  • PCI DSS compliance documentation

  • Risk treatment plans and mitigation tracking

  • Compliance checklists and frameworks

  • Evidence collection and audit preparation

Tools & Working Methods

  • Compliance documentation (Word / PDF)

  • Risk registers and tracking (Excel / Sheets)

  • Structured compliance templates

  • Framework-aligned documentation (NIST, ISO)

Core Services

Focused on governance, risk, and compliance frameworks including ISO 27001 and GDPR.

Close-up of hands reviewing GDPR compliance checklists with a pen and notepad.
Close-up of hands reviewing GDPR compliance checklists with a pen and notepad.
Risk Assessments

Conducting thorough risk evaluations aligned with NIST standards to identify vulnerabilities.

Cloud Infrastructure Risk Assessment

Remote Work Risk Assessment

Vendor / Third-Party Risk Assessment

Physical Security Risk Assessment

Compliance Docs

Gallery

Snapshots of my compliance and risk management projects.

Photo of a GDPR compliance checklist displayed on a laptop screen.
Photo of a GDPR compliance checklist displayed on a laptop screen.
Visual of a NIST framework implementation plan with key milestones.
Visual of a NIST framework implementation plan with key milestones.
Image of compliance documentation folders neatly organized on a desk.
Image of compliance documentation folders neatly organized on a desk.

© 2026 Martin Searle.All Rights Reserved. Certain graphics on this website were created using AI tools. References to the NIST Cybersecurity Framework (CSF) are provided for informational purposes only and do not imply endorsement by NIST or the U.S. Government.

© 2025. All rights reserved.