Portfolio

Hanalei R.

Cybersecurity & AI Governance Specialist

Bridging technology, risk, and responsible innovation. Where policy meets practice and security meets strategy.

View my work

Curiosity-driven.
Risk-informed.

I am a cybersecurity and AI governance professional with a background spanning risk assessment, compliance frameworks, and the responsible deployment of emerging technology. My work sits at the intersection of policy, security, and innovation.

I bring a creative technologist's mindset to governance challenges, translating complex regulatory requirements into actionable frameworks and practical tools. I believe that strong AI governance is not a barrier to innovation; it is the foundation that makes it sustainable.

Currently building expertise across NIST AI RMF, EU AI Act, ISO 27001, and vendor risk assessment, with a focus on developing portfolio artifacts that demonstrate hands-on competency.

Outside of work I participate in bug bounty programs, write for various tech publications, and am a proud regular at Hacker Summer Camp. At heart, I am a creative technologist who finds joy at the edge of where art and technology meet.

6+
Frameworks studied & applied
3
Portfolio artifacts in development
Curiosity for responsible AI

Skills & Frameworks

AI / ML Fundamentals

LLM Architecture Model Risk AI Safety Bias & Fairness AI Lifecycle

Security Frameworks

NIST CSF NIST AI RMF ISO 27001 SOC 2 Zero Trust

Policy & Compliance

EU AI Act OECD AI Stanford HAI Risk Classification Governance Design

Vendor Risk Assessment

Third-Party Risk Due Diligence Risk Scoring Intake Templates

Cybersecurity Operations

Threat Modeling Incident Response Security Controls Risk Analysis

Data Privacy

GDPR Principles Data Classification Privacy by Design IAPP Frameworks

Featured Projects

Risk Framework

AI Tool Intake & Risk Assessment Template

A structured intake and risk assessment template combining NIST AI RMF with vendor risk best practices. Designed to help organizations evaluate AI tools before deployment, covering risk classification, data handling, and governance accountability.

View project
Policy Analysis

EU AI Act Compliance Mapping

A comparative analysis mapping EU AI Act requirements to existing NIST and ISO controls, identifying gaps and proposing practical compliance pathways for organizations in the early stages of AI governance maturity.

View project
Security Research

AI Model Risk Taxonomy

A structured taxonomy of AI-specific risks, including data poisoning, model inversion, hallucination, and misuse, mapped against security controls and governance accountability touchpoints across the AI development lifecycle.

View project

Let's work together.

Open to roles in AI governance, cybersecurity risk, and policy. Always happy to connect with others working at the intersection of technology and responsible innovation.

Connect on LinkedIn