Jasmine Demir

Governance, Risk & Compliance
Translating cyber risk into clear, practical and defensible business decisions. Combining cybersecurity and behavioural insight to support safer, smarter digital environments.

SELECTED WORK

Research, analysis, and writing exploring cybersecurity, governance, and the human factors shaping digital risk.

Case Studies

THIRD-PARTY RISK · GRCThird-Party Risk AssessmentVendor Security Case Study · 2026A simulated third-party risk assessment examining the security and operational risks associated with onboarding a SaaS provider. The assessment covers vendor due diligence, control-gap analysis, likelihood-impact risk scoring, risk treatment and conditional approval.Focus: Third-Party Risk · Vendor Due Diligence · Control Analysis

ISO/IEC 27001 · ACCESS CONTROLAccess Control Readiness AssessmentISO/IEC 27001:2022 Case Study · 2026A simulated ISO/IEC 27001:2022 readiness assessment focused on identity and access management. Seven selected Annex A controls were evaluated for implementation, operating evidence and control gaps, with remediation recommendations developed to strengthen certification readiness.Focus: ISO/IEC 27001 · Access Control · IAM · Gap Analysis

Featured Research

Cyber Security Challenges for Women: Gender-specific Cybercrime and SolutionsMSc Cyber Security Dissertation · 2025A mixed-methods investigation into gender-specific cybercrime, its psychological and social effects on women, and gaps in reporting, platform accountability and cybersecurity policy. The research highlights the need for more inclusive and adaptive approaches to digital safety.Focus: Cybercrime · Online Safety · Policy & Governance · Human Factors
Method: Mixed-Methods Research

Insights & Writing

Selected writing on cybersecurity, governance and the human side of technology.

What Taking Security Management and Governance Taught MeAn exploration of how governance, leadership and risk management connect technical security with business goals, organizational culture and accountability.Category: Governance · Risk Management
Source: University of London Student Blog · 2025

Cybersecurity 101: How to Protect Yourself OnlineA practical guide to improving everyday online safety through stronger account security, phishing awareness, safer browsing and better protection of personal information.Category: Cybersecurity Awareness · Digital Safety
Source: University of London Student Blog · 2025

Building Confidence as a Woman Breaking into a Technological WorldA reflective piece on overcoming imposter syndrome and building confidence as a woman entering technology through resilience, community, mentorship and continuous learning.Category: Women in Technology · Career Development
Source: University of London Student Blog · 2024

About

I’m a cybersecurity professional focused on Governance, Risk and Compliance, with a particular interest in privacy, responsible security and the human impact of technology. I’m drawn to work that turns complex cyber risk into clear, practical decisions that protect both organizations and the people who rely on them.My academic background in psychology and cybersecurity shapes that approach. Psychology developed my understanding of behaviour and decision-making, while cybersecurity gave me the technical and governance perspective to understand how those behaviours intersect with systems, policy and risk.That combination is what led me to GRC. A field where technical security, business judgement and human behaviour all meet. My research has also explored gender-specific cybercrime and the ways women can be disproportionately affected by certain forms of digital harm, reinforcing my interest in privacy and safer digital environments for everyone.Outside of cybersecurity, I enjoy horseback riding, gaming, reading, yoga and travelling, usually with at least one book coming with me.

Contact

Interested in connecting about GRC, cybersecurity, research or professional opportunities? Reach me through LinkedIn or email.

CREDENTIALS

Education, certifications and technical development
supporting my work in cybersecurity and GRC.

Education

MASTER OF SCIENCE
Cybersecurity
University of London
2023–2026 · Distinction
Advanced study in cybersecurity, security management, governance, risk and the human dimensions of digital security.

BACHELOR’S DEGREE
Psychology
York University
2019–2022
Academic foundation in human behaviour, cognition, decision-making and research methods.

Certifications

INFORMATION SECURITY
ISO/IEC 27001:2022 Foundations
Advisera Expert Solutions Ltd
Issued May 2026
Foundations in information security management systems, ISO/IEC 27001 requirements and risk-based security governance.

TECHNICAL FOUNDATIONS
Google IT Support Specialization
Google
Issued July 2025
Technical foundations across IT support, networking, operating systems, systems administration and security.

Technical Development

TRYHACKME LEARNING PATH
Pre Security
Foundational networking, web, operating system and cybersecurity concepts.

TRYHACKME LEARNING PATH
Cyber Security 101
Practical development across core cybersecurity concepts, and defensive security fundamentals.