Global IT Security Engineer
UGI
Global IT Security Engineer
Location:
Denver, PA, US, 17517
Workplace Environment: Onsite
Company: UGI Utilities, Inc
Requisition Number: 29740
At UGI Utilities, Inc. we believe in providing a superior range of energy products and services to our customers in a safe, affordable manner. As our energy needs evolve, UGI will be there providing safe and reliable service that brings warmth and comfort to our 750,000 customers in 45 counties in Pennsylvania and 1 county in Maryland.
We strive to reflect the communities we serve by attracting and retaining top talent, while maintaining a diverse workforce that embraces our culture of safety, service, and integrity. As an employee of UGI Utilities, you can expect a competitive total compensation plan and comprehensive benefits. Employees work in a collaborative environment, have upward mobility opportunities, and the ability to enjoy a true work life balance.
To learn more about UGI's workplace culture, sustainability efforts, and commitment to inclusivity, we invite you to visit ourUGI Corporate sustainability page ( .
Apply to UGI Utilities today to share in our mission and support countless neighbors, friends, and families in providing best-in-class products and services!
Job Summary
The Global Cyber Security Engineer will lead the identification, assessment, and remediation of external attack surface and cloud security risks across the organization. This individual will work under the direction of the Global Manager – Cyber Security Threat Intelligence & Protection to drive the external and cloud exposure management program, conduct external penetration testing activities, manage attack surface management (ASM) tooling, and ensure cloud environments maintain a strong security posture. The role also provides secondary support for network security, OT/ICS security, and identity and authentication functions in collaboration with other team members.
Key Characteristics:
Strong understanding of security and infrastructure architectures and technologies.
Experience in developing, implementing, advancing, and supporting security tools and procedures.
Demonstrated ability to troubleshoot with limited information.
Duties and Responsibilities
Own and drive the external exposure management program: manage attack surface management (ASM) tooling, continuously identify and prioritize externally exposed assets and vulnerabilities, develop remediation strategies, and track remediation through to closure with relevant IT and business stakeholders.
Plan and coordinate external penetration testing with tooling and 3rd party engagements, including scoping, vendor management, results analysis, and remediation follow-up. Develop and maintain internal red team/pen test capabilities and tooling to assess the organization’s external attack surface on an ongoing basis.
Assess and improve cloud security posture across various cloud environments. Identify misconfigurations, excessive exposure, and policy violations; partner with cloud and infrastructure teams to drive remediation.
Contribute to cloud security architecture standards and guardrails.
Interpret various federal, state, and industry frameworks for security, including but not limited to PCI DSS, SOX, ISO/IEC 27001, OWASP Top Ten, CIS Critical Security Controls, NIST, and advises management of any changes. Participate in security audits and assessments.
Manage and optimize vulnerability management tooling (e.g., InsightVM); analyze scan results, develop and maintain reporting and dashboards, and coordinate with IT teams on prioritization and remediation tracking. Interpret relevant security frameworks (PCI DSS, NIST, CIS Controls) and advise on compliance implications.
Provide secondary support for network security and OT/ICS security functions, including firewall rule review, network segmentation assessments, and OT-specific security architecture considerations. Serve as backup for identity and authentication platforms (e.g., RSA) as needed.
Contribute to security governance activities including policy documentation, security audits, and compliance assessments. Support ongoing risk assessment processes and communicate findings to both technical and non-technical stakeholders.
Develop and maintain comprehensive documentation related to security policies, procedures, and configurations.
Collaborate effectively with other IT teams, business units, and vendors. Communicate security risks and recommendations to both technical and non-technical audiences.
Stay up to date on the latest security threats, vulnerabilities, and technologies. Research and evaluate new security solutions to improve our security posture.
Mentor junior security team members and provide technical guidance.
Knowledge, Skills and Abilities
Advanced analytical and problem-solving skills.
Strong interpersonal skills.
Strong working knowledge of networking, routing, protocols, ports and services.
Experience with attack surface management (ASM) platforms, vulnerability management tools (e.g., InsightVM/Nexpose), external pen testing tools and frameworks (e.g., Metasploit, Burp Suite, NMAP, Wireshark), and cloud security posture management (CSPM) tools.
Hands-on experience with penetration testing and/or red team concepts and methodologies (e.g., PTES, MITRE ATT&CK). Familiarity with automated pentesting platforms is a big plus.
Working knowledge of Linux and Microsoft Windows operating systems, Active Directory, and server / endpoint skills and experience.
Demonstrated experience in conducting security assessments.
Familiarity with OT/ICS security concepts and environments, including network segmentation, industrial protocols, asset visibility, and OT-specific threat considerations (e.g., Purdue model, IEC 62443).
Understanding of identity and authentication platforms and their security implications, including MFA, token-based authentication, and privileged access management (e.g., RSA, PAM solutions).
Strong working knowledge of various cloud computing environments, including cloud-native security services, IAM, and common cloud misconfigurations and exposure patterns.
Experience with scripting languages (e.g., PowerShell, Python, Bash) is a plus. Familiarity with SDLC security testing concepts and application security (OWASP, SAST/DAST) is a plus.
Excellent oral and written communication skills.
Ability to follow established processes and guidelines for Change Management, Release Management, Problem and Incident management.
Collaborator with strong organizational skills, a positive attitude and customer service orientation.
Innovative thinker who can see the big picture while remaining attentive to the details.
Experience with MS productivity tools (Word, Excel, PowerPoint, Visio).
Education and Experience
Bachelor's degree in Computer Science, Information Security, or a related field, preferred.
A minimum four years of experience in Information Security. Previous general IT systems and networking background strongly preferred.
Relevant security certifications (e.g., CISSP, CISM, CEH, CompTIA Security+) are highly desirable.
Working Conditions:
Normal office environment
May require travel
May require on-call responsibilities
Must be in driving distance to the Pennsylvania offices (Valley Forge, Denver and Wyomissing)
Must have a conducive work from home environment to be productive
UGI Utilities, Inc is an Equal Opportunity Employer. The Company does not discriminate on the basis of race, color, sex, national origin, disability, age, gender identity, sexual orientation, veteran status, or any other legally protected class in its practices.
Successful applicants shall be required to pass a pre-employment drug screen as a condition of employment, and if hired, shall be subject to substance abuse testing in accordance with UGI policies.
As a federal contractor that engages in safety-sensitive work, UGI cannot permit employees in certain positions to use medical marijuana, even if prescribed by an authorized physician. Similarly, applicants for such positions who are actively using medical marijuana may be denied hire on that basis.
Nearest Major Market:Lancaster Job Segment: Cloud, Cyber Security, Network Security, Sustainability, Behavioral Health, Technology, Security, Energy, Healthcare
- ...concert staging to setting the global standard for extraordinary... ...cutting-edge technology, precision engineering, and creative design. TAIT’s... ...for a hands-on Senior Security Engineer (SSE) to help mature... ...controls, partnering closely with IT and operational teams,...SuggestedLocal areaRemote workShift work
- ...Senior Analyst will report directly to the Global Cybersecurity Risk Manager. This role... ...monitoring and reporting. Collaborate with IT stakeholders to monitor UGI Utilities,... ...Qualifications: ~ Bachelor’s degree in Information Security, Risk Management, Computer Science, or...SuggestedFor contractors
- ...Job Description Job Description Clair Global is seeking a Event Network Engineer to join the Clair Data Services division. The Event Network... ...networking protocols (audio, video, lighting, special effects, security, food/beverage sales, etc.) to deliver exceptional...SuggestedOdd jobTemporary workRemote workWorldwideNight shift
- ...Job Description Job Description Our Client is a pioneering global leader in radio frequency technology, serving a diverse range of... ...Summary We are seeking a highly motivated Program Launch Engineer. The Program Launch Engineer coordinates the work of cross-functional...SuggestedWork experience placementFlexible hours
- ...Description Spotts, Stevens and McCoy (SSM) is seeking a Senior Civil Engineer to join our Civil Engineering Division. This position offers... ...Lancaster, West Chester and Lehigh Valley. We serve local and global clients from large, regional and national companies in the...SuggestedFull timeH1bWork at officeLocal areaRemote workWork visaFlexible hours
- ...Industrial Engineer At Bell & Evans, we've built our reputation on doing things the right way — from quality and food safety to how we continuously improve the way we work. We're looking for an Industrial Engineer who thrives at the intersection of data, people, and...
- ...Current Product Quality Engineer Innovation. Sustainability. Productivity. This is how we are Breaking New Ground in our mission to... ...noble work of farmers and builders everywhere. With a growing global population and increased demands on resources, our products are...Work at officeRemote work3 days per week
$114.9k - $165.1k
...Project Engineer Since 1869, we've connected people through food they love. We're proud to be stewards of amazing brands that people trust. Our portfolio includes the iconic Campbell's brand, as well as Cape Cod, Chunky, Goldfish, Kettle Brand, Lance, Late July, Pacific...Full timeTemporary workWork at officeImmediate start- ...Job Description M.H. Eby, Inc .- a leading manufacturer of aluminum trailers and truck bodies is looking for a Manufacturing Engineer – Aluminum Fabrication Specialist to work in our fast-growing company. Are you a hands-on problem-solver with a passion for precision...Temporary work
- ...your voice will matter, and you'll work alongside incredible people who care about your success. Role Summary: Reporting to the Engineering Manager, the Senior Relay Engineer is a key member of the Relay & Power Systems team. The person in this role is responsible for...Work experience placementWork at officeLocal areaShift work
- ...Job Description Relay Setting Engineer Johnson Service Group (JSG) is actively searching for a Relay Setting Engineer for our client's operation near Reading, PA. This is a contract position with competitive pay. This is a fantastic opportunity to work on a state...Contract work
- ...Alignment with safety, environmental, and quality system requirements Requirements: Qualifications BS – Chemistry, Metallurgical Engineering, Materials Science or similar technical discipline, or equivalent experience Proficiency in MS Office applications (Excel,...Internship
$110.5k - $156k
...currently recruiting for a: Lead Automation Engineer What we do At Kenvue, we realize... ...is our talent. Who We Are Our global team is ~ 22,000 brilliant people with a... ...functionally with Engineering, Operations, Quality, IT, and Leadership to drive successful...Temporary workFor contractors- ...while building our clean energy future. Your Opportunity Our US work group has an opportunity for a Senior Transmission Line Engineer; this individual will sit in any of Stantec’s US offices. Project requirements will include detailed engineering and support of...Full timeFor contractorsWork at office
$33 - $38 per hour
The responsibilities of this job include, but are not limited to, the following: Obtaining quality x-rays using correct position and radiation exposure; Implementing safety procedures for patients, self, and staff to avoid unnecessary exposure to radiation; ...Work at officeImmediate startFlexible hours- ...Job Description Job Description About Us Larson Design Group (LDG) is an award-winning, employee-owned Architecture, Engineering, and Consulting Firm. Guided by our core values, we’re expanding our team, opening new offices, and adding new offerings to provide responsive...Work experience placementWork at officeLocal areaFlexible hours
- ...Environmental Health & Safety Engineer We are seeking a proactive Environmental Health & Safety engineer to join our team at Reading... ...accident prevention, and safety training will help us maintain a secure and efficient working environment. You will work closely with...Local area
- ...Senior Engineer About Us At Larson Design Group (LDG), we're more than an award-winning Architecture, Engineering, and Consulting firm; we're a team of passionate professionals united by a bold purpose: creatively shaping our world. From designing innovative solutions...Work experience placementWork at officeLocal areaFlexible hours
- ...Job Description Job Description About Us Larson Design Group (LDG) is an award-winning, employee-owned Architecture, Engineering, and Consulting Firm. Guided by our core values, we’re expanding our team, opening new offices, and adding new offerings to provide responsive...Work experience placementLocal areaFlexible hours
- ...The Quality Assurance Engineer II manages and supports daily activities for all quality aspects related to circuit card assembly, cables... .... * Ability to obtain/maintain a Department of Defense security clearance. * Ability to pass vision acuity exam per J-STD-001...Contract workWork at officeShift workDay shift
- ...Job Description Job Description About Us Larson Design Group (LDG) is an award-winning, employee-owned Architecture, Engineering, and Consulting Firm. Guided by our core values, we’re expanding our team, opening new offices, and adding new offerings to provide responsive...For contractorsWork at officeLocal areaFlexible hours
- ...Job Description Job Description CIVIL ENGINEER / PROJECT MANAGER: Kraft Municipal Group, Inc. has a full-time job opening in our Shillington, PA office for a senior level Civil Engineer and Project Manager. This is an on-site, non-remote position. We are seeking...Full timeFor contractorsWork at officeRemote work
$60k - $90k
Shift: Monday through Friday, 8:00AM - 5:00PM Are you ready to work making the world a safer, healthier place? Join our mission to continuously move science forward; to innovate and advance all aspects of our business to improve the health and safety of our communities...Full timeLocal areaImmediate startMonday to FridayFlexible hoursShift workNight shift- ...About Us Larson Design Group (LDG) is an award-winning, employee-owned Architecture, Engineering, and Consulting Firm. Guided by our core values, we’re expanding our team, opening new offices, and adding new offerings to provide responsive, innovative solutions to clients...Work experience placementLocal areaFlexible hours
- ...Process Engineer - Onsite in Akron, PA Direct Hire - Full time We are seeking a Process Engineer to support and improve manufacturing operations through process optimization, continuous improvement initiatives, and equipment evaluation. This role will focus on...Full time
- ...Job Description Job Description About Us Larson Design Group (LDG) is an award-winning, employee-owned Architecture, Engineering, and Consulting Firm. Guided by our core values, we’re expanding our team, opening new offices, and adding new offerings to provide responsive...Work experience placementInternshipWork at officeLocal areaFlexible hours
- ...Job Description Job Description About Us Larson Design Group (LDG) is an award-winning, employee-owned Architecture, Engineering, and Consulting Firm. Guided by our core values, we’re expanding our team, opening new offices, and adding new offerings to provide responsive...Work experience placementLocal areaFlexible hours
- ...Job Description Job Description The roll of Senior Civil Engineer/Division Manager is to find, win, plan, organize and execute engineering projects and services profitably and with the excellence expected by the client. They must acquire, develop, and organize talent...For contractors
- ...the W-WW team and lift and guide the next level of leaders within the team. Our Client is a full service, multi-discipline engineering, environmental, information technology, and management consulting firm with strength in W-WW. They primarily serve the mid-...Flexible hours
- ...and vendors, this position may be the right role for you. Requirements: Bachelor’s degree in Construction Management, Mechanical Engineering, or a related field is not required, but preferred in lieu of trade experience. 5+ years of prior Project Manager experience...For contractorsFor subcontractor
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Global IT Security Engineer. Be the first to apply!



