Fernanda Santoro
Fernanda Santoro is a seasoned Information Security and GRC (Governance, Risk & Compliance) professional with over 15 years of experience in IT, including a decade dedicated to cybersecurity, compliance, and risk management. She specializes in ISO 27001, SOC2, GDPR, LGPD, and NIST CSF, helping organizations strengthen their security posture and achieve regulatory compliance.
As an IT GRC Analyst with Teknion,  Fernanda is responsible for developing and enhancing Governance, conducting security risk assessments and evaluating and benchmarking cybersecurity capabilities against NIST and ISO frameworks. Previously, at Petrobras, Brazil's largest oil and gas company, Fernanda spearheaded LGPD adoption, contributed to risk assessment initiatives, and developed security policies to safeguard sensitive data. Fernanda holds multiple certifications, including ISO 27001 Internal Auditor, Data Protection Officer (EXIN), and Business Continuity Management Foundation (EXIN), and is currently pursuing CRISC (ISACA).
With a strong background in security frameworks, compliance programs, and risk mitigation strategies, Fernanda brings valuable insights into building resilient security infrastructures and navigating the evolving regulatory landscape.