Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Information Security - Risk & Compliance Analyst

Victaulic

Security Risk & Compliance Analyst

The Security Risk & Compliance Analyst supports the organizations global information security program by assisting in the identification, assessment, and management of information security risks and compliance demands across Victaulic's entire organization. This position plays an integral role in ensuring the company meets its obligations under domestic and international regulatory frameworks, including but not limited to, NIST CSF, ISO27001, CMMC and the EU's NIS2 Directive. The analyst will work closely with internal stakeholders, external auditors, and third-party vendors to support a culture of security awareness and continuous compliance improvement.

The ideal candidate for this role will have knowledge of, if not actual experience, in the processes of obtaining and maintaining compliance with security frameworks as well as an understanding of industry standard Information Technology auditing.

Responsibilities

Risk Assessment & Management

  • Assist in conducting information security risk assessments across business units, systems, and processes in accordance with established methodologies.
  • Document risk findings, assign risk ratings, and track remediation activities through the risk register.
  • Support the development and maintenance of risk treatment plans in coordination with system owners and IT teams.
  • Participate in annual and ad hoc enterprise risk reviews, contributing analysis and supporting materials.

Compliance & Framework Management

  • Support compliance activities related to NIST Cybersecurity Framework (CSF), ISO/IEC 27001, CMMC (Cybersecurity Maturity Model Certification), and the EU NIS2 Directive.
  • Conduct gap analyses against applicable frameworks and assist in developing remediation roadmaps.
  • Maintain compliance documentation, including policies, procedures, control evidence, and assessment reports.
  • Monitor regulatory changes and emerging framework updates; summarize implications for the security program.

Third-Party & Audit Management

  • Coordinate and support third-party security audits and assessments, including scheduling, evidence collection, and stakeholder communication.
  • Assist in managing vendor risk assessments for new and existing third-party vendors and suppliers.
  • Track audit findings and corrective action plans, ensuring timely remediation and closure.
  • Serve as a liaison between internal teams and external auditors during certification audits.

Policy, Documentation & Awareness

  • Assist in drafting, reviewing, and updating information security policies, standards, and procedures.
  • Support the delivery of security awareness training and phishing simulation programs.
  • Maintain organized records of all compliance and risk management activities in the Governance, Risk & Compliance platform.

Collaboration & Reporting

  • Collaborate with IT, Legal, Operations, and other business functions to integrate security requirements into business processes.
  • Prepare regular status reports and metrics dashboards for management review.
  • Contribute to the continuous improvement of the information security program by identifying process gaps and recommending enhancements.
Qualifications

Technical Experience

  • Foundational understanding of information security principles, including confidentiality, integrity, and availability (CIA).
  • Basic understanding of risk assessment methodologies and risk management concepts.
  • Familiarity with third-party risk management and audit processes.
  • Strong analytical and problem-solving skills with attention to detail.
  • Capacity to understand legacy and progressive technology and security controls along with respective risk.
  • Working knowledge of technologies such as cloud computing, DevOps, and application security is required.

General Requirements

  • Analytical Thinking – applies structured reasoning to evaluate risk and compliance data objectively
  • Integrity & Accountability – Handles sensitive security information with discretion and professionalism.
  • Communication – Clearly translates security requirements and findings for varied audiences across the organization
  • Continuous Learning – Proactively keeps pace with evolving security frameworks, threats, and regulatory requirements
  • Collaboration – Builds effective working relationships across IT, operations, and business functions globally
  • Detail Orientation – Produces thorough, accurate documentation and maintains meticulous records of compliance activities

Education & Certifications

  • 0 – 2 years' experience in information security, IT audit, risk management, or a related field.
  • Bachelor's degree, cybersecurity certification, or equivalent experience in an information security or related field.
  • A minimum of an entry-level certification such as the CompTIA Security+ certification
  • Additional Risk & Compliance certification(s), such as CISA, a plus

Work Environment & Physical Requirements

  • This position is primarily office-based with hybrid flexibility. The role may require occasional visits to manufacturing facilities domestically and internationally. Ability to work across global time zones may be required for coordination with European and Asian teams.

Victaulic is an Equal Employment Opportunity (EOE/M/F/Vets/Disabled) employer and welcomes all qualified applicants. Applicants will receive fair and impartial consideration without regard to race, gender, color, religion, national origin, age, disability, veteran status, sexual orientation, genetic data, or other legally protected status. (Background checks may be required as part of our pre-employment process).

Vacancy posted 20 hours ago
Similar jobs that could be interesting for youBased on the Information Security - Risk & Compliance Analyst in Easton, PA vacancy
  •  ...GRC Analyst HYDAC is a family-owned and operated business with...  ...development of our Information Security Management System, and its rollout...  .... Creation of threat and risk analyses. Coordinate updates...  ...activities to evidence our compliance with IT controls. Consult... 
    Suggested
    Temporary work
    Work at office
    Local area
    Worldwide
    Relocation

    Hydac International GmbH

    Freemansburg, PA
    2 days ago
  •  ...Job Description: The Regulatory & Compliance Specialist ensures that Bakerly products...  ...&D. Ensuring compliance of nutrition information and regulatory statements used in product...  ...local levels. Identifying regulatory risks affecting, labeling, ingredients, claims... 
    Suggested
    Full time
    Temporary work
    Work at office
    Local area
    Flexible hours

    Bakerly

    Easton, PA
    27 days ago
  • $92.22k - $115.27k

     ...Position Summary We are seeking a Risk and Reliability Statistical Specialist to...  ...optimize sampling strategies, and ensure compliance within a regulated environment. Key...  ...national origin, age, pregnancy, genetic information, disability, status as a protected veteran... 
    Suggested
    Work at office
    Remote work

    B. BRAUN MEDICAL (US) INC

    Bethlehem, PA
    1 day ago
  •  ...Trade Compliance Analyst/Specialist (contract) NO C2C Global Pharmaceutical Manufacturing company is seeking an experienced Trade Compliance contractor for a 3+-month engagement to support active workstreams across import/export operations, foreign trade zone... 
    Suggested
    Contract work
    For contractors

    Masis Professional Group

    Bethlehem, PA
    13 hours ago
  •  ...brands - QVC®, HSN®, Ballard Designs®, Frontgate®, Garnet Hill® and Grandin Road. Your Opportunity, Your Team The Vendor Compliance Specialist supports QVC and serves as a key liaison between QVC, its vendor base, merchandising teams, and the Fulfillment Center... 
    Suggested
    Local area
    Relocation package

    QVC Group, Inc

    Bethlehem, PA
    1 day ago
  •  ...Trade Compliance Coordinator (contractor) Global Pharmaceutical Manufacturing Company is seeking a Trade Compliance Assistant to the Director of Supply Chain for a 3+ month contract to support active workstreams across i mport/export operations, classification,... 
    Contract work
    For contractors
    Work experience placement

    Masis Professional Group

    Bethlehem, PA
    13 hours ago
  • Description Business Analyst, Easton, PA GENERAL SUMMARY: The primary role of the Business Analyst (BA) is to ensure that...  ...DUTIES & RESPONSIBILITIES: Provide a bridge role between Information Technology and the business. Acts as a business relationship manager... 
    Full time

    Crayola

    Easton, PA
    4 days ago
  •  ...Description POSITION: Product Configuration Analyst LOCATION : Supply Chain-World Headquarters REPORTS TO : Product...  ...knowledge for part code and BOM development and shares this information with key stakeholders to enable effective execution globally... 
    Work experience placement

    Victaulic

    Easton, PA
    13 hours ago
  •  ...understand our consumers better. SR SAP Analyst PP/MM/WM, Full Time, Hybrid, Easton...  ...and processes to remain in compliance for maintenance, security continuous monitoring and recovery...  ...federal employment laws. For further information, please review the Know Your Rights... 
    Full time
    Work at office

    Crayola

    Forks, PA
    2 days ago
  • $24 - $26 per hour

     ...Allied Personnel Services is seeking candidates for a Sales Support Analyst opening! This temp to hire opening offers full time hours, Mon-Fri. Pay is $24.00-26.00/hr based on experience. In this role you will, provide sales related support to the sales team: serve... 
    Full time
    Temporary work

    Allied Personnel Services

    Easton, PA
    4 days ago
  •  ...Job Description Job Description Quality Assurance Compliance Support Specialist If you are attracted to a career opportunity...  ...proficient level and effectively communicate moderately complex information in a concise and understandable way. Organizational... 

    Biospectra Inc

    Bangor, PA
    7 days ago
  • $55k - $65k

     ...attentive and observant person who can uncover valuable insights from data and support informed decision-making, then you could be the next full-time Inventory Control Data Analyst (Travel Required) at Johnstone Supply ! With a friendly, fun, and team-oriented environment... 
    Full time
    For contractors

    Johnstone Supply

    Easton, PA
    5 days ago
  •  ...model capabilities in coding, reasoning, tool use, and multimodality. Role Overview : Turing is seeking detail-oriented AI Analysts based in the United States to support a Google Wallet evaluation project. This is a Generalist role and do not require candidates... 
    Full time
    Contract work
    Remote work

    Turing

    Bethlehem, PA
    13 hours ago
  •  ...Title 31 Analyst I Job Overview: The Wind Creek Hospitality Title...  ...I focuses on ensuring compliance with applicable laws, regulations...  ...transactional records prior to the information being reported, making...  ...diligence procedures, the annual risk assessment, and AML Program... 
    Odd job
    Night shift

    Wind Creek Hospitality

    Freemansburg, PA
    3 days ago
  •  ...Job Title Obtains information from various law enforcement, financial, and tax databases and compiles that data into written reports that assess case potential or corroborates allegations of possible criminal activity. Correlates collected information by manipulating... 
    Local area

    Internal Revenue Service

    Freemansburg, PA
    1 day ago
  • $68.97k - $113.31k

     ...Job Purpose The Business Analyst partners with business and technology stakeholders to identify, analyze, and document business...  ...autonomy in day-to-day responsibilities. ~ Serves as a resource and informal mentor to colleagues with less experience. ~ Represents a... 
    Full time
    Visa sponsorship
    Work visa
    Flexible hours

    Guardian Life Insurance Company

    Freemansburg, PA
    13 hours ago
  • $68.97k - $113.31k

     ...Process Improvement Analyst III This is a hybrid position, which requires three days per week attendance in one of our primary office...  ..., and oversight of underwriting protocols that monitor compliance with state and federal regulatory requirements and align with... 
    Work at office
    Remote work
    Work from home
    Home office
    Visa sponsorship
    Work visa
    3 days per week

    Guardian Life Insurance

    Freemansburg, PA
    21 hours ago
  • $70k - $115k

     ...The Business Data Analyst I role has a national salary range of $70,000 - $115,000. For roles within California the range is $70,304 - $115,000 and Washington is $80,169 - $115,000. DHL Supply Chain offers multiple benefits including Medical, Dental, Vision, Prescription... 

    DPDHL

    Bethlehem, PA
    3 days ago
  • $55k

     ...be the right fit for you! Under HCS, the Business Systems Analyst position in Bethlehem, PA supports Miller-Keystone Blood Center...  ...results ~ Familiarity with AI is a plus Additional information: Technical certifications or hands-on system... 
    Full time
    Remote work
    Relocation
    Monday to Friday
    Flexible hours

    HCSC

    Freemansburg, PA
    13 hours ago
  •  ...Financial Business Analyst HYDAC is a family-owned and operated business with a vibrant and rewarding working environment for our employees across the country. Our goal is to provide quality products, components and services that meet our customer expectations while... 
    Temporary work
    Work at office
    Local area

    Hydac International GmbH

    Freemansburg, PA
    2 days ago
  •  ...Marketing Intelligence Analyst Software Guidance & Assistance, Inc. (SGA) is searching for a Marketing Intelligence Analyst for...  ...production for marketing campaigns, ensuring accuracy, timeliness, and compliance across channels Execute audience segmentation using defined... 
    Contract work

    SGA

    Freemansburg, PA
    1 day ago
  •  ...Marketing Intelligence Analyst Position Summary: As a Marketing Intelligence Analyst...  ...segmentation logic, filters, exclusions, and compliance rules. Perform data QA to verify...  ...exploratory analysis to uncover insights that inform targeting strategies and optimization... 
    2 days per week
    3 days per week

    Perennial Resources International

    Freemansburg, PA
    5 days ago
  • $55k - $70k

     ...Job Description Job Description Job Title: Inventory Data Analyst-Travel Required FLSA Status: Exempt Reports to: Salary Range: Regional Operations Manager $55,000 - $70,000 Position Summary: At Johnstone Supply, we’re always looking to strengthen... 
    Full time
    Work experience placement
    Work at office
    Local area
    Monday to Friday

    Wallace Supply LLC

    Easton, PA
    2 days ago
  • $75k - $90k

     ...Braun Medical, visit Position Summary: The OEM Sales Analyst is responsible for owning the lead intake process and...  .../or external clients and customers to negotiate and interpret information on projects and unit operations. May consult with senior management... 
    Seasonal work

    B. BRAUN MEDICAL (US) INC

    Bethlehem, PA
    a month ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Information Security - Risk & Compliance Analyst. Be the first to apply!