Job Description
Quarry Consulting has a remote contract for a TRA Expert.
To be considered these are the skills and experience required.
· 7+ years TRA experience
· Ability to write/develop/refine organizational policies & procedures around Governance, Risk & compliance
– IT Security industry best practices and relevant standards and regulations (e.g., NIST Cybersecurity Framework, ISO/IEC 27001/2, COBIT, SOC 2, Information Security Forum, PCI-DSS, Cloud Security Alliance, SANS, CIS Benchmarks, etc.)
· Experience with Azure & M365 & Microsoft Purview
· Conducting a Threat Risk Assessment (TRA) on a new third-party SaaS application that will handle sensitive customer data.
· ISO 27001 or the NIST Cybersecurity Framework expertise
· Developing new IT security standard for secure configuration of Azure virtual machines
· Program Management is a definite Asset
Quarry Consulting would like to thank all candidates but only those with the above expertise will be contacted.
Thank you!
bmckenna@quarryconsulting.ca