Skip to content
Merged
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
72 changes: 72 additions & 0 deletions engineers/shahidsha1612.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,72 @@
---
name: "shaid hussain"
github: "shahidsha1612"
specializations:
- "Audit & Assurance"
- "Compliance Automation"
- "Risk Management"
- "Security Governance"
- "AI Governance"
- "Cloud Governance"
title: "Information security Engineer"
company: "ADL consulting LTD"
location: "Leicester"
linkedin: "https://www.linkedin.com/in/shaid-hussain-651b06134/"
blog: "https://github.com/shahidsha1612/"
frameworks:
- "GDPR"
- "HIPAA"
- "ISO 27001"
- "ISO 27017"
- "ISO 42001"
- "NIST 800-53"
- "SOC 2"
languages:
- "JavaScript"
- "Python"
- "SQL"
- "Terraform"
- "React"
- "MongoDB"
- "html"
- "CSS"
- "tailwind"
- "xml"
- "Json"
certifications:
- "Certified GRC Engineer, Auditor Specialty (CGE-AUD"
- "ISO/IEC 42001 AI Management Systems Masterclass"
- "ISO 9001:2015 Quality Management Systems"
- "PECB - ISO/IEC 27001 Lead Auditor"
available_for:
- "mentoring"
- "speaking"
- "consulting"
- "open-source"
- "hiring"
- "freelance"
- "collaboration"
---

## About Me

I work as an Information Security and GRC consultant at ADL Consulting, running ISO 27001 and 42001 programmes for SMEs, research organisations and defence supply chain clients. Scoping through to certification: risk assessment, SoA, control implementation, internal audit and CAPA.

I came into governance after nearly five years writing production code, which shapes how I work. I test whether a control is technically viable before it reaches the Statement of Applicability, and I would rather ship something an engineering team will actually adopt than a policy that looks good in an audit and gets ignored in practice.

Happy to talk audits, supplier assurance, or where AI governance is heading.

## Experience Highlights

- ISO/IEC 27001:2022 ISMS delivery across seven concurrent clients
- PECB certified ISO/IEC 27001 Lead Auditor
- Led a full internal audit programme across eight departments
- Mapped 85 SoA controls to 76 live risk entries with a traceable evidence chain
- Reviewed 110 NIST SP 800-171 controls and built the CMMC readiness roadmap
- Own supplier due diligence and third party risk across the portfolio
- Helped build a supplier risk platform, shaping the security model and writing the code
- Nearly five years as a software engineer before moving into governance

## Get in Touch

DM me on Linkedin