Eylan Torres

CEO

Yorba Linda, California, United States7 yrs 6 mos experience
Most Likely To SwitchAI Enabled

Key Highlights

  • Achieved four years of zero findings in audits.
  • Integrated AI to enhance customer trust initiatives.
  • Led critical GRC initiatives with greater autonomy.
Stackforce AI infers this person is a seasoned GRC specialist in the SaaS industry.

Contact

Skills

Core Skills

Governance, Risk Management, And Compliance (grc)Security ComplianceRisk ManagementData PrivacyGovernanceIt Sox ComplianceTechnology Risk ConsultingIt AuditIt Risk ManagementCompliance

Other Skills

TeamworkMetrics ReportingSOC 2AWSRisk AssessmentArtificial Intelligence Management System (AIMS)Customer TrustCybersecurityIT SOXMentoringSOC 1SOC 3Customer ServiceMicrosoft OfficeISO 42001

About

Former aspiring musician, proud USC Trojan Alumnus, and now seasoned GRC specialist with 8+ years driving IT, security, governance, risk, compliance, vendor risk, AI risk, data privacy, customer trust, and third-party audits. As Certinia's Security Compliance Manager, I've led stakeholders through rigorous audits, achieving four straight years with zero findings—proving business-aligned security delivers real results. My approach: a virtuous cycle of partnering with stakeholders to understand goals → manage real risks → build enabling security strategies → continuously improve the program. I translate technical complexity into clear business risk language that drives smart decisions and sustainable outcomes. The journey's still young—plenty of milestones, bumps, and growth ahead. I'm proud to share the wins, lessons, and real talk along the way. Fight On! Passionate about smart GRC, scaling secure ops, or emerging risks like AI governance? Let's connect—Trojan network or otherwise.

Experience

Certinia

Security Compliance Manager

Aug 2021Present · 4 yrs 7 mos · Yorba Linda, California, United States · Remote

  • As Security Compliance Manager at Certinia, I initially reported to the CISO, but after a team restructuring, I absorbed many of his GRC responsibilities, stepping up to lead critical initiatives with greater autonomy. I oversee SOC 1/2/3 and FedRAMP audits, achieving three consecutive years of clean reports by collaborating with stakeholders by leading with empathy and solid communication. I am building SOC 2 compliance for AWS-based systems from the ground up and spearheading gradual ISO 27001:2022 readiness, defining the ISMS, designing remediation plans, and revamping risk assessments. For global customer trust initiatives, I integrated AI to cut questionnaire response times by 50%, boosting sales enablement. I manage vendor risk, update governance policies, conduct BIAs, and deliver executive reports on metrics that matter, sharpening my strategic leadership while aligning security with business goals through chairing the IS Champions committee.
TeamworkMetrics ReportingGovernance, Risk Management, and Compliance (GRC)Security Compliance

Tri pointe group

Data Security & Compliance Analyst

Jan 2021Aug 2021 · 7 mos · Irvine, California, United States · Hybrid

  • As the sole Data Security and Compliance Analyst at TriPointe Homes, I reported directly to the CIO, thriving in an autonomous role as the key SME for a public company’s IT SOX compliance, cybersecurity, and data privacy initiatives. I collaborated with the newly created risk management committee to implement comprehensive risk assessment and advised on control remediation. I led project management for internal and external audits, streamlining evidence collection. I redesigned user access reviews (AuditBoard), managed CCPA data privacy tooling, and strengthened security posture by assessing NIST CSF gaps.
TeamworkCybersecurityData PrivacyIT SOX Compliance

Rsm us llp

2 roles

Senior Associate, Technology Risk Consulting

Promoted

Aug 2020Nov 2020 · 3 mos · On-site

  • As a Senior Associate serving on the Technology Risk Consulting team at RSM, I grew into a confident leader, supervising teams on IT SOX, SOC 1/2/3, FFIEC ITGC, and IT risk assessment engagements. Managing six-plus projects at once, I sharpened my skills in planning, budgeting, and delivering high-quality reports while ensuring staff workpapers met rigorous standards. Serving as the primary client contact, I led walkthroughs, advised on process improvements, and communicated control deficiencies with clarity. Monitoring project profitability honed my business acumen, while evaluating controls against frameworks like PCI-DSS and NIST deepened my compliance expertise, shaping me into a versatile consultant.
TeamworkMentoringTechnology Risk ConsultingIT Audit

Associate, Technology Risk Consulting

Jun 2018Jul 2020 · 2 yrs 1 mo · On-site

  • As a Technology Risk Consulting Associate at RSM, I honed my IT risk management skills by testing controls for IT SOX, SOC 1-3, and FFIEC ITGC engagements. Leading client walkthroughs sharpened my ability to grasp complex IT processes, while documenting findings and escalating issues built my analytical precision. Training over seven new hires and interns enhanced my leadership and communication skills, and creating Excel templates and SOC2 COSO mappings boosted project efficiency. This role taught me to navigate high-stakes environments, laying a strong foundation for my growth in technology risk consulting.
TeamworkMentoringTechnology Risk ConsultingIT Risk Management

Los angeles department of building and safety

Student Professional Worker

Dec 2017Mar 2018 · 3 mos · Los Angeles Metropolitan Area

  • ● Answered phone calls at the technology support desk to support internal employees and external customers.
  • ● Provided first line assistance to troubleshoot any issues and resolve immediate technology issues.
  • ● Supported on premise employees with in-person technical assistance to meet operational needs.
Customer Service

Rsm us llp

IT Risk Advisory Intern

Jun 2017Aug 2017 · 2 mos · Los Angeles Metropolitan Area

  • ● Learned fundamentals of IT audit team engagements including SOC 1, SOC 2, and FFIEC ITGC consulting engagements.
  • ● Gained insight on the IT risk advisory practice and knowledge of risk, controls, and compliance.
TeamworkMicrosoft Office

Education

University of Southern California

Bachelor of Science - BS — Accounting

Jan 2014Jan 2018

Stackforce found 100+ more professionals with Governance, Risk Management, And Compliance (grc) & Security Compliance

Explore similar profiles based on matching skills and experience