Technical Security Risk & Governance Analyst
Jobs via Dice
Job Title: Technical Security Risk & Governance Analyst
Location: Harrisburg, PA Position Summary: The Technical Security Risk & Governance Analyst supports the state's cybersecurity program by performing risk assessments, control testing, and governance activities across enterprise systems, applications, networks, and cloud services. This role partners with IT, business owners, and audit teams to ensure security controls are designed,implemented, and operating effectively in alignment with state policy, NIST CSF/800-53, and other regulatory frameworks (e.g., CJIS, IRS Pub 1075, HIPAA, PCI DSS). The Analyst develops pragmatic recommendations, tracks remediation, and produces metrics for leadership and regulatory reporting. Risk Assessment & Control Assurance:
Location: Harrisburg, PA Position Summary: The Technical Security Risk & Governance Analyst supports the state's cybersecurity program by performing risk assessments, control testing, and governance activities across enterprise systems, applications, networks, and cloud services. This role partners with IT, business owners, and audit teams to ensure security controls are designed,implemented, and operating effectively in alignment with state policy, NIST CSF/800-53, and other regulatory frameworks (e.g., CJIS, IRS Pub 1075, HIPAA, PCI DSS). The Analyst develops pragmatic recommendations, tracks remediation, and produces metrics for leadership and regulatory reporting. Risk Assessment & Control Assurance:
- Conduct technical security risk assessments for on-prem, cloud (IaaS/PaaS/SaaS), and hybrid solutions; document risks, likely hood/impact, and recommended mitigations.
- Perform control design/operating-effectiveness testing against NIST CSF/800-53, CIS Controls, ISO/IEC 27001, and agency security standards.
- Support Authority to Operate (ATO) processes ,security attestations, and continuous monitoring.
- Facilitate threat modeling and security architecture reviews; advise on secure patterns (network segmentation, IAM, least privilege, encryption, logging).
- Maintain security policies, standards, procedures, and control libraries; align updates with legislative or regulatory changes.
- Map agency controls to relevant mandates (e.g. ,CJIS, IRS 1075, HIPAA, FERPA, PCI DSS, state statutes/policies) and track compliance gaps.
- Coordinate internal/external audits; lead evidence collection, responses, and remediation plans.
- Administer or contribute to GRC tooling for issues, exceptions, and risk registers.
- Establish governance for vulnerability management (SLAs, exception management, risk acceptance); monitor patching and remediation progress.
- Perform vendor/security reviews (SaaS, MSPs, cloud providers), evaluate SOC 2/ISO certifications, and negotiate security clauses with procurement/legal.
- Review data protection, encryption, and privacy risks in new procurements and major system changes.
- Develop and maintain dashboards and performance indicators (risk posture, control maturity, vulnerability closure rates); brief leadership on trends and priorities.
- Produce clear, actionable reports for technical teams and non-technical stakeholders.
- Promote security awareness and targeted training(e.g., secure configuration, privacy by design, third-party onboarding).
- Provide risk-informed guidance during incident response (root cause, control gaps, corrective actions).
- Review change requests for security impacts; ensure appropriate testing, logging, and rollback plans.
- Bachelor's degree in Information Security, Computer Science, Information Systems, or related field; OR equivalent experience.
- 1-3 years in information security, risk management, audit, or related technical role.
Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Technical Security Risk & Governance Analyst in Harrisburg, PA vacancy
$40k
...programs across national security, defense, and public... ...improving essential government systems and services,... ...scale. The Junior CIC Analyst supports 24x7 Command... ...service requests and low-risk changes. Perform... ...resets, and clearing technical blockers to restore services...SuggestedContract workRemote workShift workNight shift- ...Position Title: Analyst IV Location: New Cumberland, PA Category: Funded Schedule... ...Clearance required: Secret Division: Security Cooperation Who is ACT1 Federal?... ...Requirements A minimum of seven (7) years of technical or operations experience is required....SuggestedTemporary workLocal areaRemote workFlexible hoursShift work
- ...Position Title: Analyst I Location: New Cumberland, PA Category: Funded... ...Clearance required: Secret Division: Security Cooperation Who is ACT1 Federal?ACT... ...Requirements A minimum of two (2) years of technical or operations experience is required....SuggestedTemporary workLocal areaRemote workFlexible hoursShift work
- ...Do As a Compliance Analyst, you will play an important... ...supporting Teradata's security compliance programs... ...supporting audits, risk assessments, or evidence... ...across technical and non-technical teams... ...general awareness of AI governance principles and emerging...SuggestedPermanent employmentRemote workFlexible hours
$60k
...mission-critical programs across national security, defense, and public service delivery.... ...sustaining, operating, and improving essential government systems and services, with proven... ...~ Ability to coordinate across multiple technical teams. ~ Bachelor's degree in Information...SuggestedContract workRemote work- ...Program Manager, Third Party Risk Management JOB DESCRIPTION... ...the Third‑Party Vendor Risk Analyst supports the execution of the... ..., including Information Security, IT, Compliance, Finance, and... ...program standards, internal governance expectations, and applicable...Contract workWork at officeLocal areaRemote work
$40k
...critical programs across national security, defense, and public service... ..., and improving essential government systems and services, with... ...to proceed. The Business Analyst supports the contract team by... ...updating and maintaining artifacts, technical diagrams, and system...Contract workRemote work- ...Technical Services Analyst II Join 2J Supply, proudly part of Rheem, a global leader in Heating, Ventilation and Air Conditioning (HVAC) innovation... ...installation and service, identifying and communicating risks, requirements, and issues, or escalating to appropriate...Full timeFor contractorsWork at officeRemote workWork from home
- ...Technical Business Analyst Location: Hybrid – Middletown, PA Duration: Long term Job description: The Technical Business Analyst will support... ...• Experience with ADO, process modeling, and testing • Government/public sector or financial systems experience preferred...
$77.38k - $117.5k
...Enterprise Information Security Office Worksite... ...Vulnerability Management Analyst position with the Office... ...growing valuable technical skills. in this vital... ...landscape and help reduce risk to the Commonwealth and... ...or equivalent Federal Government job title, as...Permanent employmentFull timePart timeWork experience placementWork at officeLocal areaRemote workWork from homeMonday to FridayFlexible hours2 days per week$40k
...mission‑critical programs across national security, defense, and public service delivery.... ...sustaining, operating, and improving essential government systems and services, with proven... ...authorization to proceed. The Patching Analyst position provides enterprise-level patch...Contract workRemote work- ...FocusKPI is looking for a Marketing Operations Analyst to join one of our clients, a high-tech... ...strategy. This includes driving data governance and consistency across systems, enabling... ...as GDPR and CCPA. This is a hands-on technical role, ideal for someone who thrives in...Full time
$30 per hour
...as information technology, technical/systems consulting, technical... ...will be work in the Oracle Government, Defense & Intelligence... ...Sales Teams. The Information Security Compliance Analyst is expected to work with the... ...expertise in projects of risk, information security and environment...Hourly payTemporary workInternshipFlexible hours$153.75k - $211.41k
...capital modeling. Supervises Pricing Analyst, actuarial assistant(s), and/or... ...use. May supervise the activities of technical staff as needed and serve as mentor to and... ...we're on a mission to help people feel secure and make life better when bad things happen...TraineeshipWork at officeRemote workFlexible hoursNight shift- ...include ensuring guidance provided through various pricing and underwriting tools align with pricing review, developing loss picks and technical premium for individual large accounts, pricing closeouts as requested, monitoring and improve usage of loss rating tool. You will...Work experience placementWork at office2 days per week
$69.7k - $117k
...Position Overview The PMO Analyst provides critical analytical and coordination support... ...data across workstreams to enable effective governance and data-driven decisions within a large... .... This role translates cost, schedule, risk, and milestone information into dashboards...Contract workWork at office$84.63k - $112.84k
...connected ecosystem. We enable secure, high‑performance... ...AI workloads for enterprises, governments, and communities. At Lumen,... ...Senior Corporate Development Analyst will support all aspects of merger... ...makers assess the strengths and risks in a given M&A opportunity...Full timeTemporary workWork at officeRemote workRelocation$152k - $228k
...Insurance business unit. This position will lead a team of 5-7 analysts, and develop strategies to enhance the pricing accuracy,... ...excellent communication and influencing skills, as well as strong technical skills and actuarial acumen, with a track record for building...Temporary workWork at officeRemote work3 days per week$92.5k - $120k
...support you at each stage of your personal and professional journey. To support the continued growth of our Risk Advisory for State & Local Government practice, an opportunity has been created for a Senior Associate to join our nationally distributed team performing...Work experience placementWork at officeLocal areaRemote work- ...Job Title: QA Analyst -SAP BRIM Location: Middletown, PA... ...Description : SDLC & Quality Governance Follow PTC's SDLC... ...feedback, and translate functional/technical specifications into test... ...Reporting ssess and document risk factors for defects, provide...Work at officeRemote work
- ...cybersecurity activities and manage risk. CPMG offers flexible,... ...operational technology, electronic security surveillance, and support... ...The Business Intelligence Analyst supports enterprise web and application... ..., project managers, and technical leads to clarify requirements...Contract workFor contractorsFlexible hours
$113.2k - $169.8k
...profitability or ad hoc analyses. Effectively communicate to secure internal and external approval for proposed changes. Create... ...analytical tools utilizing knowledge of advanced actuarial methods and technical skills and providing actuarial thought leadership. Develop...Temporary workWork at officeRemote work3 days per week$47k - $55k
...for a 26-county region in central PA, seeking a Housing Program Analyst for our full-time hybrid position balanced between work-from-... ...with service providers, provide customer support, training and technical assistance, make accurate data entry into housing systems, handle...Full timeTemporary workFor contractorsWork experience placementWork at officeRemote workWork from homeFlexible hours$76.21k - $125.76k
...insurance. We are an industry-leading specialty insurer, with job opportunities in much of the contiguous United States. Senior Risk Management Consultant This position supports our workers' compensation line of business, Eastern Alliance. Based on candidate qualifications...Work at officeRemote workLong distance- ...Risk Analyst Members Achieve More isn't just a tagline for us, it's part of everything we do! We're looking for passionate individuals to join our team to help us maintain that focus every day. Want to work somewhere that's remained strong for 90 years, that encourages...Remote workMonday to Friday
$30 per hour
...Description Social Services Analyst (Title IV-E Compliance & Reimbursement... ...will directly contribute to securing federal and state funding... ..., foster care programs, government funding, compliance, or reimbursement... ...documentation. Provide technical assistance and guidance to...Hourly payDaily paidMonday to FridayFlexible hours$126.8k - $244k
...rising customer expectations, and evolving risks reshape how banks operate and compete.... ...workforce capabilities. As a Senior BCM Analyst at EY, you will be an expert on key... ...role in responding to emerging issues with technical experts across the EY network. You will work...Summer holidayLocal areaFlexible hours- ...delivering B2B professional and technical support services both the Federal Government and private industry. Our work focuses... ...our clients needs a Entry Level Analyst for a permanent position... ...performance gaps, assess operational risks, and recommend improvements that...Permanent employmentFull timeWork at officeWorldwide
$79.1k - $158.2k
...diverse group of highly motivated professionals that leverages its technical accounting and finance expertise to enable Oracle stakeholders... ...customers that will maximize Oracle’s revenue while mitigating risk. The team focuses on meeting the highest standard of compliance...Temporary workRemote workFlexible hours$24.62 - $50.43 per hour
...Description We are hiring a SR Configuration Analyst. This Intermediate position will require... ...processes, to deliver functional and technical solutions on moderately complex customer... ...and be able to pass Public Trust security clearance Responsibilities Responsibilities...Hourly payContract workTemporary workWork at officeLocal areaFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Technical Security Risk & Governance Analyst. Be the first to apply!
Related searches
- IT assistant Harrisburg, PA
- desktop support analyst Harrisburg, PA
- technical analyst Harrisburg, PA
- customer support technician Harrisburg, PA
- tech assistant Harrisburg, PA
- technical support assistant Harrisburg, PA
- customer support analyst Harrisburg, PA
- remote (work from home) technical support representative Harrisburg, PA
- help desk assistant Harrisburg, PA
- support technician Harrisburg, PA



