Summary
Overview
Work History
Education
Skills
Certification
Timeline
Generic

Stan Christopher Conley

College Park

Summary

Compliance and Risk Analyst with hands-on experience delivering ISO 27001 and SOC 2 audit readiness, vendor risk assessments, and policy frameworks that strengthen governance programs. Holds CompTIA Security+ and ISO 27001 Lead Implementer certifications; CISM and CISSP exams scheduled in 2025. Skilled in transforming regulatory requirements into practical controls that improve audit outcomes, reduce vendor risk, and support async-first environments.

Overview

1
1
year of professional experience
1
1
Certification

Work History

Compliance & Policy Analysts

Nonprofit Client via Catchafire.org (Remote)
Washington
01.2025 - 02.2025
  • Delivered ISO 27001–aligned risk assessments and internal controls that improved nonprofit audit readiness by 20% within 60 days.
  • Authored and implemented data classification, backup, and access control policies, reducing data handling risk exposure by 15%.
  • Conducted 10+ vendor risk assessments using SIG Lite; delivered remediation roadmaps that closed compliance gaps within 30 days.
  • Built a centralized policy library and compliance checklist system, streamlining reporting for 5+ executive stakeholders.

GRC Analyst

CrowdStrike (Remote)
Austin
06.2024 - 11.2024
  • Simulated SOC 2 and ISO 27001 audit readiness by building audit checklists, nonconformity logs, and access control matrices modeled on enterprise practices.
  • Designed mock audit plans and dashboards that improved reporting accuracy by 25% and built familiarity with enterprise GRC tools.
  • Produced risk registers and compliance reports leveraged to train analysts on third-party risk management best practices, directly supporting governance maturity initiatives.

Education

Associate of Science - Emergency Management

Montgomery College
Rockville, MD
09.2023 - 09/2025

Skills

  • UDAAP / TCPA / Marketing Compliance
  • Policy Review & Content Risk Evaluation
  • Regulatory Research & Guidance
  • Compliance Project Management
  • Vendor & Third-Party Risk Management
  • Async Communication & Review Workflows
  • ISO 27001 / SOC 2 / Security Frameworks
  • SIG Lite / Risk Registers / Gap Matrices
  • GRC Tools: Notion, Excel, Vanta, Figma

Certification

  • CompTIA Security+
  • ISO/IEC 27001 Lead Implementer
  • CISM - Exam Scheduled (November 2025)
  • CISSP - Exam Scheduled (December 2025)
  • FEMA: IS-100, IS-700, IS-230, IS-800, IS-42

Timeline

Compliance & Policy Analysts

Nonprofit Client via Catchafire.org (Remote)
01.2025 - 02.2025

GRC Analyst

CrowdStrike (Remote)
06.2024 - 11.2024

Associate of Science - Emergency Management

Montgomery College
09.2023 - 09/2025
Stan Christopher Conley