Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

GRC Security Analyst II

Aqua

Essential Utilities, Inc. delivers safe, clean, reliable services that improve quality of life for individuals, families, and entire communities. Operating as the Aqua (water and wastewater services) and the Peoples and Delta (natural gas) brands, Essential serves approximately 5.5million people across 10 states. We are committed to sustainable growth, operational excellence, a superior customer experience, and premier employer status – including a competitive and comprehensive benefits package as well as a commitment to career growth opportunities. We are advocates for the communities we serve and are dedicated stewards of natural lands, protecting more than 7,600 acres of forests and other habitats throughout our footprint. Our company is one of the most significant publicly traded water, wastewater service and natural gas providers in the U.S. The primary responsibilities of the GRC Security Analyst II (Governance & Risk) are to ensure the security and integrity of the organization's information systems, with a specific focus on risk & vulnerability management as well as security compliance. The Security Analyst will frequently engage with both technical teams and business process owners to analyze risk, communicate risk posture, and develop effective remediation strategies. Essential Duties Manage execution of both enterprise-wide and focused risk, threat, and vulnerability assessments, including but not limited to Security Awareness, Vulnerability, Configuration, and Third-Party Assessments. Analyze and prioritize risk, vulnerability, and compliance findings to define remediation priorities using all available data sources; partner with technology and business stakeholders to socialize and implement remediation plans. Define and manage qualitative and quantitative metrics and reporting to measure the success of vulnerability, third‑party, security awareness, configuration, and asset management remediations. Lead ongoing vulnerability management processes, working with IT and business stakeholders to prepare vulnerability remediation plans, track progress, and reduce overall vulnerability exposures. Participate in development, implementation and operation of control/compliance frameworks and security best practices based on ISO 27001/27002, NIST (800-30, Cyber Security Framework/CSF), COBIT, Critical Security Controls, CIS Configuration Benchmarks. Monitor compliance with security configuration standards for servers, endpoints, software, and networking platforms based on CIS Benchmarks. Work closely with IT, development, and operations teams to integrate security practices into the software development lifecycle (SDLC) and IT operations. Lead or assist with vendor and third‑party risk assessments. Create and maintain documentation of security solutions, services, configurations, and processes. Work closely with engineers focused on intrusion detection, incident response and security operations to manage risk related to existing and emerging threats. Collaborate with other security engineers to analyze, process, integrate, communicate, and respond to threat intelligence. Participate in or lead development, improvements and updates to continually improve security controls, policies, guidelines, processes, and procedures. Develop and deliver security awareness training programs for employees to enhance their understanding of security best practices and ensure that security and risk management are integrated into the corporate culture. Lead development and operation of the security awareness program to ensure ongoing integration into the corporate culture. Implement and maintain controls for compliance and privacy; liaise with internal and external audit teams as needed. Provide escalation support for the Information Technology Help Desk as required. Work off‑hour maintenance windows and participate in rotating on‑call shift periodically. Work alone or function effectively as part of a team. Perform all other duties as assigned by management. Minimum Qualifications Bachelor's degree in Information Technology, Computer Science, Cyber Security, Security and Risk Analysis, or Information Assurance. 3–5 years of Governance & Risk experience. Current certification of at least one of: CISSP, GIAC (GSEC, GSNA), CRISC, CISA, CISM, CCSP, SSCP, CAP, CSSLP, CSX Practitioner (or intent to obtain within 12 months). Knowledge, Skills, & Abilities Experience with assessment tools such as Qualys PolicyCompliance, CIS‑CAT, and other vulnerability management platforms across multiple modules (Vulnerability Management, Policy Compliance, Continuous Monitoring, Web Application Scanning, Asset Management). Experience leading security awareness program development, including phishing assessment campaigns; creation of innovative campaigns using provider and custom‑developed tools/training adaptable across a diverse employee population; aligning the program with enterprise risks and measuring impact. Experience with GRC platforms, RSA Archer knowledge is a strong positive. Strong written and verbal communication skills for working directly with technical teams and business stakeholders. Excellent organizational skills, ability to multi‑task, prioritize workload and delegate responsibilities. Strong analytical skills for assessing and prioritizing security risks. Ability to promote a security‑conscious culture within the organization. Ability to adapt to evolving threats, technologies, and organizational needs. Ability to understand and integrate security into project and application lifecycles for enterprise IT systems. General knowledge of security‑related technologies: Active Directory, database platforms, web server platforms, middleware, PKI, cloud computing (Office365, Azure). Experience using statistical, quantitative, and qualitative analysis techniques. Proactive approach to staying informed on latest security threats, vulnerabilities, and industry best practices. Essential Utilities, Inc. is an Equal Opportunity/Affirmative Action employer. Equal employment opportunity is provided to all employees and applicants without regard to race, color, religion, sex, national origin, age, pregnancy (including childbirth and related medical conditions), disability, veteran status, genetic information, sexual orientation, gender identity or expression, or any other characteristic protected by applicable law. #J-18808-Ljbffr

Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the GRC Security Analyst II in Bryn Mawr, PA vacancy
  •  ...Aqua seeks a GRC Security Analyst II to ensure the security and integrity of information systems. Responsibilities include risk assessments, developing remediation plans, and ensuring compliance with best practices. The ideal candidate will have a Bachelor’s degree in... 
    Suggested

    Aqua

    Bryn Mawr, PA
    4 days ago
  •  ...Aqua America, Inc. is hiring a GRC Security Analyst II responsible for managing risk assessments, developing security awareness programs, and ensuring compliance with security standards. The role requires a bachelor's degree in Information Technology or a related field... 
    Suggested

    Aqua America

    Bryn Mawr, PA
    4 days ago
  •  ...Aqua, Inc. seeks a GRC Security Analyst II in Bryn Mawr, Pennsylvania. This pivotal role involves ensuring the security and integrity of information systems while focusing on risk management and security compliance. The analyst will engage with both technical teams and... 
    Suggested

    Aqua

    Bryn Mawr, PA
    4 days ago
  •  ...other scanning tools. Web application scanning and web application firewalls. Containers. CIS benchmarks, STIGs, or other security hardening standards. Additional Desirable Skills Or Experience SAML, Kerberos, OAuth, OIDC, LDAP. Powershell and... 
    Suggested

    The Dignify Solutions, LLC

    Conshohocken, PA
    2 days ago
  •  ...Security Governance Analyst As a Security Governance Analyst, you will play a pivotal role in advancing the firm's cybersecurity efforts. This...  ...experience presenting to executive audiences. Power-user of Business Intelligence and/or Cybersecurity GRC tools a plus... 
    Suggested

    Susquehenna International Group

    Bala Cynwyd, PA
    2 days ago
  •  ...Broad Overview We are looking for a detail-oriented IT security (cybersecurity) analyst to be responsible for desktop, mobile and network cybersecurity, troubleshooting incidents and implementing security policies and procedures. This individual will join an existing... 
    For contractors
    Work at office
    Immediate start
    Work from home
    3 days per week

    SERB Pharmaceuticals

    Conshohocken, PA
    6 hours ago
  •  ...SERB Pharmaceuticals is seeking a detail-oriented IT security analyst to manage desktop, mobile, and network cybersecurity. The role involves collaborating on IT security and ensuring compliance with policies. The position is based in Conshohocken, PA, and follows a hybrid... 
    Work at office
    Remote work

    SERB Pharmaceuticals

    Conshohocken, PA
    5 days ago
  •  ...Conshohocken, PA Hybrid schedule: 3 days in office, 2 days remote Broad Overview We are looking for a detail-oriented IT security (cybersecurity) analyst to be responsible for desktop, mobile and network cybersecurity, troubleshooting incidents and implementing security... 
    Work at office
    Immediate start
    Remote work

    Thyroxine SERB

    Conshohocken, PA
    1 day ago
  • Aqua America, Inc. is seeking a Finance & Rates Analyst II in Bryn Mawr, PA. Your role will involve preparing and supporting financial filings, collaborating on rate cases, and building financial models. The ideal candidate will have a BA/BS degree in Finance or Accounting... 
    Work at office

    Aqua America, Inc.

    Bryn Mawr, PA
    2 days ago
  •  ...Job Title: Financial Analyst II Location: Chesterbrook PA (Web Cam Interview) Duration: Long Term (W2) H1 Transfer/ GC/ Citizen Job Description: Client Support: Ensure every call is answered professionally and promptly and that the highest... 
    Work at office

    Hudson Data

    Wayne, PA
    4 days ago
  • $61.5k - $112k

     ...courses, and seminars taken during the program As an Actuarial Analyst II on the Life Financial Projections team in the Life Chief...  ...successful future. We focus on identifying a clear path to financial security, with products including annuities, life insurance, group... 
    Full time
    Work experience placement
    Summer internship
    Work at office
    Relocation package
    Shift work
    3 days per week

    Lincoln Financial

    Radnor, PA
    23 hours ago
  •  ...voice, data, and managed network solutions, supporting customers across markets and geographies. We are excited to be adding a Security Analyst to our growing Information Technology team. In this role, you will support BCM One’s security operations by monitoring and... 
    Work at office
    Relocation
    2 days per week
    1 day per week

    BCM One

    Blue Bell, PA
    4 days ago
  •  ...BCM One, Inc. in Blue Bell, PA is seeking a Security Analyst to join its Information Technology team. This hybrid role involves monitoring security events, responding to incidents, and supporting compliance with SOC 2 and ISO 27001. The ideal candidate will have a Bachelor... 

    BCM One

    Blue Bell, PA
    6 hours ago
  •  ...Security Analyst (CIP) TYPE: Contract LOCATION: King of Prussia, PA ONSITE/REMOTE/HYBRID: Hybrid, expected on-site Thursdays START DATE: July 2026 We are seeking a Security Analyst to support Critical Infrastructure Protection (CIP) compliance efforts and ensure... 
    Contract work
    Remote work

    RX2 Solutions

    King of Prussia, PA
    4 days ago
  •  ...Job Title: Junior Security Analyst Location: Philadelphia, PA Job Type: Long-Term Contract Work Setting: Onsite Project Overview We are supporting a large-scale airport technology environment that requires entry-level cybersecurity professionals... 
    Long term contract
    Internship

    Navitas Healthcare LLC

    Philadelphia, PA
    1 day ago
  •  ...The Adversarial AI Offensive Security Analyst, Senior Specialst is a senior individual contributor role on the Offensive Security & Fraud Testing (OSFT) team. The mission of this role is to harness AI and automation as force multipliers for red teaming and penetration... 

    Vanguard Group, Inc.

    Malvern, PA
    2 days ago
  • $76.4k - $138.6k

     ...systems is central to doing business, and everyone in EY Information Security has a critical role to play. Join a global team of almost 950...  ...value. The opportunity As an Offensive Security Analyst on the Attack Surface Management team, you will play a key role... 
    Summer holiday
    Local area
    Flexible hours

    EY

    Philadelphia, PA
    17 days ago
  •  ...Join Our Team as an IT Security Analyst I! Are you a proactive and detail-oriented individual with a passion for cybersecurity? Do you thrive on protecting digital assets and ensuring compliance? We're looking for an IT Security Analyst I to join our dedicated team... 

    CMI Media Group

    Philadelphia, PA
    3 days ago
  •  ...Security Analyst Sonsoft, Inc. is a USA based corporation duly organized under the laws of the Commonwealth of Georgia. Sonsoft Inc. is growing at a steady pace specializing in the fields of Software Development, Software Consultancy and Information Technology Enabled... 
    Permanent employment
    Full time
    H1b

    SonSoft Inc.

    Philadelphia, PA
    3 days ago
  •  ...We are looking for a Data Security Analyst to join our Information Security Architecture team in Philadelphia, PA or Overland Park, KS (Hybrid). This is an exciting opportunity to work on cutting-edge data protection and security initiatives leveraging Microsoft Purview... 
    Full time
    Work experience placement
    Work at office
    2 days per week

    Clarivate Analytics US LLC

    Philadelphia, PA
    2 days ago
  •  ...Sabai Global is seeking a Security Analyst to join their Information Technology team. In this role, you will monitor and respond to security events, collaborate with IT and Engineering teams, and support compliance initiatives such as SOC 2 and ISO 27001. This hybrid... 
    Work at office
    2 days per week
    1 day per week

    Sabai Global

    Blue Bell, PA
    6 hours ago
  •  ...Security Administration Analyst Location: Philadelphia Start: ASAP Interview Process: Video & Onsite Length 6+ Months to Start Open To Conversion Yes The Security Administration Analyst is a key contributor in the Information Security Division. This individual will... 
    Local area
    Immediate start

    Marchon Partners

    Philadelphia, PA
    1 day ago
  •  ...Actuarial Analyst II Bring your drive for excellence, team orientation and customer commitment to Independence; help us renew and reimagine our business and shape the future of health care. Our organization is looking to diversify, grow, innovate and serve, and we... 
    Work experience placement
    Interim role

    Independence Blue Cross

    Philadelphia, PA
    4 days ago
  •  ...Job Title: Information Security Analyst Location: Philadelphia, PA Job Type: Long-Term Contract Work Setting: Onsite Project Overview We are supporting a large-scale airport technology environment that requires skilled cybersecurity professionals... 
    Long term contract

    Navitas Healthcare LLC

    Philadelphia, PA
    1 day ago
  •  ...Job Description: About the Role: The Network Security Engineer will design, implement, and manage secure network infrastructure to ensure uninterrupted business operations. Responsibilities: Configure and maintain firewalls, VPNs, and IDS/IPS systems... 

    Vurke

    Philadelphia, PA
    4 days ago
  • $21.36 per hour

    Patrol Officer II Position Title: Patrol Officer II Posting Number: 20260088S Position Type: Staff Location: Villanova, PA Recruitment...  ...oriented techniques and tactics. Assists in providing a safe and secure environment for University community members to work, live, and... 
    16 hours
    Full time
    Flexible hours
    Shift work

    VILLANOVA UNIVERSITY

    Villanova, PA
    6 days ago
  • $92k - $114k

     ...Information Security Data Protection Manager Aegon's Global Technology Services - Security (GTS-security) delivers certain information security programs across all Aegon business units. Specifically GTS-security establishes and maintains the information security policy... 
    Contract work
    For contractors
    Work experience placement
    Work at office
    Local area
    Remote work
    Work visa
    Relocation package
    3 days per week

    Transamerica

    Philadelphia, PA
    1 day ago
  • $85k - $100k

     ...The IT Security Analyst is responsible for global cybersecurity operations, risk management, and compliance, ensuring the protection and integrity of enterprise systems and data. Key Responsibilities - Lead and manage global IT cybersecurity strategy and operations... 
    Permanent employment

    Nigel Frank International

    Conshohocken, PA
    6 days ago
  • A prominent university is seeking a Patrol Officer II to maintain safety and enforce regulations on campus. The role includes responding to emergencies, conducting patrols, and preparing incident reports. Ideal candidates will have a high school diploma and at least one... 
    Full time

    VILLANOVA UNIVERSITY

    Villanova, PA
    6 days ago
  • 1 . Summary of Position: The Financial Analyst II - Plant Operations, Cost Accounting role is responsible for supporting cost accounting, operational financial analysis, budgeting, forecasting, month-end close, inventory reporting, and plant performance management... 
    Work at office

    Leonardo Helicopters

    Philadelphia, PA
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to GRC Security Analyst II. Be the first to apply!