Job Description

  • Contractor
  • Anywhere

Quarry Consulting has a remote contract for a TRA Expert.

To be considered these are the skills and experience required.

· 7+ years TRA experience
·  Ability to write/develop/refine organizational policies & procedures around Governance, Risk & compliance
– IT Security industry best practices and relevant standards and regulations (e.g., NIST Cybersecurity Framework, ISO/IEC 27001/2, COBIT, SOC 2, Information Security Forum, PCI-DSS, Cloud Security Alliance, SANS, CIS Benchmarks, etc.)
· Experience with Azure & M365 & Microsoft Purview
·  Conducting a Threat Risk Assessment (TRA) on a new third-party SaaS application that will handle sensitive customer data.
· ISO 27001 or the NIST Cybersecurity Framework expertise
·  Developing new IT security standard for secure configuration of Azure virtual machines
· Program Management is a definite Asset

Quarry Consulting would like to thank all candidates but only those with the above expertise will be contacted.

Thank you!

bmckenna@quarryconsulting.ca