Welcome to Zalovo GRC. The mug shot to the right (or below depending on your screen) is me, Konstantine. I’m an IT audit, internal controls, and compliance professional with 20+ years experience across government, financial services, healthcare, and cloud services environments.
I’m a member of ISACA, Certified Information Systems Auditor (CISA), and trusted advisor to organizations on strengthening IT controls and advancing security and compliance programs. I’ve also dabbled as a contributing author to ePractice Aids for Reporting on Controls of Service Organizations (Thomson Reuters).

This site was created as a platform for me to write long form thoughts on IT governance, risk, and compliance (GRC). The focus will initially be on System and Organization Controls (SOC) examinations and internal controls, which is where the vast majority of my experience lies. I’ll also add my two cents on industry news and trends as I get more comfortable.