Conducted a full cybersecurity risk assessment for NexaSoft's AWS EKS-hosted Employee Self-Service HR Portal, processing sensitive employee PII including payroll, health records, and government-issued ID. Identified three Critical and five High risks across Azure AD SSO, cloud IAM configuration, and insider privilege controls, aligned to ISO 27001. Delivered a prioritised 90-day remediation roadmap using native AWS and Azure tooling, reducing all Critical risks before go-live and supporting the client's ongoing ISO 27001 certification obligations under Australia's Privacy Act 1988.