Conduct Threat Risk Assessments (TRA) for software, systems, and solutions. Assess threats and vulnerabilities, applying RCMP HTRA methodology.
Responsibilities
Conducts Threat Risk Assessments (TRA) and other relevant assessments for software, systems and solutions. Assesses internal and external threats and vulnerabilities of information systems and resources and the likelihood of these threats and resulting impacts. Where possible, reduce risks through system or organizational design. Ensures the incorporation of IT security and contingency measures in the development of systems. Applies the RCMP Harmonized Threat Risk Assessment (HTRA) or equivalent risk assessment methodology. Advises on the identification, analysis, and resolution of specific security factors, risks, vulnerabilities; protection of personal privacy issues; and appropriate industry and international security standards.
Requirements
5+ years experience conducting Threat Risk Assessments (TRA) and assessing internal and external threats and vulnerabilities. Experience applying the RCMP Harmonized Threat Risk Assessment (HTRA) or equivalent methodology.
Information Security Analyst strengthening GRC, risk management, and cybersecurity controls for EllisDon’s construction services. Supporting audits, vendor compliance, security awareness, and control remediation.
Cyber Security Co - op analyzing threats, data, and intelligence for RBC, Canada’s largest bank. Supporting detection, threat hunting, reporting, and security knowledge management.
Own AI governance and security strategy at the Alberta Energy Regulator, defining decision rights and the AI Register. Partner with security and data governance teams to ensure safe, secure AI use across a multi - vendor estate.
Analyste en sécurité des produits chez Alithya, intégrant la sécurité de l’information aux projets technologiques. Évaluation des risques, recommandations et suivi des mesures de sécurité.
Intermediate SOC Analyst monitoring and responding to security incidents for Long View, a North American IT provider. Managing SIEM tools, cloud environments, escalations, and 24x7 operations.
Azure AD Security Analyst leading identity and access management for Intact, a Canadian insurer. Integrating Azure AD, supporting IAM architecture, automation, privileged access, and major incidents.