Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

GRC Security Analyst II

Aqua America

Essential Utilities, Inc. Job Title: GRC Security Analyst II (Governance & Risk) Responsibilities Manage execution of both enterprise-wide and focused risk, threat, and vulnerability assessments, including but not limited to Security Awareness, Vulnerability, Configuration, and Third-Party Assessments. Analyze and prioritize risk, vulnerability, and compliance findings to define remediation priorities considering all available data sources; partnering with technology and business stakeholders to socialize and implement remediation plans. Define and manage qualitative and quantitative metrics and reporting to measure the success of vulnerability, third party, security awareness, security awareness, configuration, and asset management remediations. Ability to lead ongoing vulnerability management processes, including working with IT and business stakeholders to prepare vulnerability remediation plans, track progress, and reduce overall vulnerability exposures. Participate in development, implementation and operation of control/compliance frameworks and security best practices based on ISO 27001/27002, NIST (800‑30, Cyber Security Framework/CSF), COBIT, Critical Security Controls, CIS Configuration Benchmarks. Monitor compliance with security configuration standards for servers, endpoints, software, and networking platforms based on CIS Benchmarks. Work closely with IT, development, and operations teams to ensure the integration of security practices into the software development lifecycle (SDLC) and IT operations. Lead or assist with vendor and 3rd party risk assessments. Create/maintain documentation of security solutions, services, configurations, and processes. Work closely with engineers focused on intrusion detection, incident response and security operations to manage risk related to existing and emerging threats. Collaborate with other security engineers to analyze, process, integrate, communicate, and respond to threat intelligence. Ability to participate in or lead development, improvements and updates to continually improve security controls, policies, guidelines, processes and procedures. Develop and deliver security awareness training programs for employees to enhance their understanding of security best practice to ensure that security and risk management continue to be integrated into the corporate culture. Lead development and operation of the security awareness program to ensure that security and risk management continue to be integrated into the corporate culture. Implement and maintain controls for compliance and privacy. Act as liaison to internal and external audit teams as needed. Provide escalation support for the Information Technology Help Desk as required. Ability to work off hours maintenance windows and participate in rotating on call shift periodically. Ability to work alone or function effectively as part of a team. All other duties as assigned by management. Qualifications Bachelors in Information Technology, Computer Science, Cyber Security, Security and Risk Analysis, Information Assurance. 3‑5 years of previous Governance & Risk experience. Candidates must have a minimum of one of the following certifications or will be required to obtain within the first 12 months: CISSP, GIAC (GSEC, GSNA), CRISC, CISA, CISM, CCSP, SSCP, CAP, CSSLP, CSX Practitioner. Experience working with assessment tools such as Qualys Policy Compliance and CIS‑CAT. Experience developing and using Qualys, or other vulnerability management, platforms with experience in multiple modules and/or areas: Vulnerability Management, Policy Compliance, Continuous Monitoring, Policy Compliance, Web Application Scanning and Asset Management. Experience leading security awareness program development including: Leading regular phishing assessment campaigns. Creating innovative security awareness campaigns using solution provider and custom‑developed tools/trainings designed to be flexible and adaptable across a diverse employee population (executives, engineering, marketing and communications, finance, customer service, etc.). Participate in aligning the security awareness program with the enterprise’s greatest risks and measure the impact in risk reduction from security awareness efforts. GRC platform experience, with RSA Archer knowledge a strong positive. Strong written and verbal communication skills are required as this position will be responsible for working directly with technical teams and business stakeholders. Demonstrates strong organizational skills and the ability to multi‑task, prioritize workload and delegate responsibilities. Strong analytical skills for assessing and prioritizing security risks. Ability to promote a security‑conscious culture within the organization. Ability to adapt to evolving threats, technologies, and organizational needs. Ability to understand and integrate security into project and application lifecycles for enterprise IT systems. Minimum of 3 to 5 years experience in Information Technology focusing on information security auditing, risk analysis, and vulnerability management. General knowledge of the following technologies from a security perspective: Active Directory, database platforms, web server platforms, Middleware, PKI, cloud computing, Office 365 and Azure. Experience using statistical, quantitative, and qualitative analysis techniques. Proactive approach to staying informed on the latest security threats, vulnerabilities, and industry best practices. Essential Utilities, Inc., is an Equal Opportunity/Affirmative Action employer. Equal employment opportunity is provided to all employees and applicants for employment without regard to the following legally protected characteristics: race, color, religion, sex, national origin, age, pregnancy (including childbirth and related medical conditions, including medical conditions related to lactation), physical or mental disability, covered‑veteran status, genetic information (including testing and characteristics), sexual orientation, gender identity or expression or any other characteristic protected by applicable local, state or federal law. Essential Utilities is committed to providing reasonable accommodation to individuals with disabilities. If you have a condition that may prevent you from applying for a job online or need to request an accommodation during the interview process, please call View phone number on click.appcast.io). #J-18808-Ljbffr Aqua America

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the GRC Security Analyst II in Bryn Mawr, PA vacancy
  • Aqua seeks a GRC Security Analyst II to ensure the security and integrity of information systems. Responsibilities include risk assessments, developing remediation plans, and ensuring compliance with best practices. The ideal candidate will have a Bachelor’s degree in Information... 
    Suggested

    Aqua

    Bryn Mawr, PA
    4 days ago
  • Aqua America, Inc. is hiring a GRC Security Analyst II responsible for managing risk assessments, developing security awareness programs, and ensuring compliance with security standards. The role requires a bachelor's degree in Information Technology or a related field,... 
    Suggested

    Aqua America

    Bryn Mawr, PA
    1 day ago
  • Aqua, Inc. seeks a GRC Security Analyst II in Bryn Mawr, Pennsylvania. This pivotal role involves ensuring the security and integrity of information systems while focusing on risk management and security compliance. The analyst will engage with both technical teams and... 
    Suggested

    Aqua

    Bryn Mawr, PA
    1 day ago
  •  ...Broad Overview We are looking for a detail-oriented IT security (cybersecurity) analyst to be responsible for desktop, mobile and network cybersecurity, troubleshooting incidents and implementing security policies and procedures. This individual will join an existing... 
    Suggested
    For contractors
    Work at office
    Immediate start
    Work from home
    3 days per week

    SERB Pharmaceuticals

    Conshohocken, PA
    1 day ago
  •  ...other scanning tools. Web application scanning and web application firewalls. Containers. CIS benchmarks, STIGs, or other security hardening standards. Additional Desirable Skills Or Experience SAML, Kerberos, OAuth, OIDC, LDAP. Powershell and... 
    Suggested

    The Dignify Solutions, LLC

    Conshohocken, PA
    3 days ago
  •  ...Sr. Information Security Analyst – Cloud & AI Security One of the nation's largest and most respected providers of hospital and healthcare services, Universal Health Services, Inc. (UHS) has built an impressive record of achievement and performance. Growing steadily... 
    For contractors

    Wellington Regional Medical Center

    Wayne, PA
    5 days ago
  • Aqua America, Inc. is seeking a Finance & Rates Analyst II in Bryn Mawr, PA. Your role will involve preparing and supporting financial filings, collaborating on rate cases, and building financial models. The ideal candidate will have a BA/BS degree in Finance or Accounting... 
    Work at office

    Aqua America, Inc.

    Bryn Mawr, PA
    3 days ago
  • Overview As a Security Governance Analyst, you will play a pivotal role in advancing the firm’s cybersecurity efforts. This role provides a unique...  ...Power-user of Business Intelligence and/or Cybersecurity GRC tools a plus #J-18808-Ljbffr Susquehanna International Group

    Susquehanna International Group

    Bala Cynwyd, PA
    13 hours ago
  • $61.5k - $112k

     ...courses, and seminars taken during the program As an Actuarial Analyst II on the Life Financial Projections team in the Life Chief...  ...successful future. We focus on identifying a clear path to financial security, with products including annuities, life insurance, group... 
    Work experience placement
    Summer internship
    Work at office
    Relocation package
    Shift work
    3 days per week

    Lincoln Financial Services

    Radnor, PA
    2 days ago
  •  ...Job Title: Financial Analyst II Location: Chesterbrook PA (Web Cam Interview) Duration: Long Term (W2) H1 Transfer/ GC/ Citizen Job Description: Client Support: Ensure every call is answered professionally and promptly and that the highest... 
    Work at office

    Hudson Data

    Wayne, PA
    5 days ago
  •  ...Vulnerability Management -or- 1-2 years' experience in Data Analytics in Technology Responsibilities Analyze current security & vulnerability scanning results and prioritize remediation efforts. Continuously improve client's security posture through engaging... 

    Omni Inclusive

    Philadelphia, PA
    5 days ago
  •  ...Security Analyst Sonsoft, Inc. is a USA based corporation duly organized under the laws of the Commonwealth of Georgia. Sonsoft Inc. is growing at a steady pace specializing in the fields of Software Development, Software Consultancy and Information Technology Enabled... 
    Full time

    SonSoft

    Philadelphia, PA
    3 days ago
  •  ...Join Our Team as an IT Security Analyst I! Are you a proactive and detail-oriented individual with a passion for cybersecurity? Do you thrive on protecting digital assets and ensuring compliance? We're looking for an IT Security Analyst I to join our dedicated team... 

    CMI Media Group

    Philadelphia, PA
    4 days ago
  •  ...Our client is currently seeking a Security Analyst Role Responsibilities # Enterprise Incident Leadership Leads response for complex, high-impact cybersecurity incidents across global enterprise environments, including major outages, cloud security events, AI... 

    The Judge Group

    Malvern, PA
    3 days ago
  •  ...Data Security Analyst We are looking for a Data Security Analyst to join our Information Security Architecture team in Philadelphia, PA or Overland Park, KS (Hybrid). This is an exciting opportunity to work on cutting-edge data protection and security initiatives leveraging... 
    Full time
    Work experience placement
    Work at office
    2 days per week

    Clarivate

    Philadelphia, PA
    4 days ago
  •  ...Remote based out of Philadelphia, PA Hours: 8hr Days Summary: Working under limited supervision, the Senior Information Security Analyst is responsible for ensuring that key security operations tasks are completed. Security Operations involves end user security... 
    Remote work

    Penn Medicine

    Philadelphia, PA
    3 days ago
  • JPC Partners is looking for a Security Analyst. The Security Analyst will work with the Critical Infrastructure Protection (CIP) Compliance Department that is responsible for assisting in the development, coordination, monitoring, and communication of all applicable standards... 

    JPC Partners

    Oaks, PA
    2 days ago
  •  ...Job Title: Information Security Analyst Location: Philadelphia, PA Job Type: Long-Term Contract Work Setting: Onsite Project Overview We are supporting a large-scale airport technology environment that requires skilled cybersecurity professionals... 
    Long term contract

    Navitas Healthcare LLC

    Philadelphia, PA
    2 days ago
  •  ...Job Title Responsibilities: Provide vulnerability management and secure configuration baseline management oversight and governance programs. Adjudicate risk-acceptance ("exception") requests and false positive requests, review metrics, shape and govern based... 

    Samprasoft

    Malvern, PA
    4 days ago
  •  ...Job Description: About the Role: The Network Security Engineer will design, implement, and manage secure network infrastructure to ensure uninterrupted business operations. Responsibilities: Configure and maintain firewalls, VPNs, and IDS/IPS systems... 

    Vurke

    Philadelphia, PA
    5 days ago
  •  ...Information Security Analyst Job Classification: Full-time/Exempt Department: Information Technology Reports To: Cybersecurity Director Location: Audubon, PA About Us: At Client, we move with a sense of urgency to deliver innovations that improve the... 
    Full time

    InterSources

    Norristown, PA
    3 days ago
  •  ...Insight Global is seeking an IS Analyst to join the IT department of an AM 200 law firm. The Information Security Analyst plays a key role in protecting the firm's digital assets, client data, and case-related information by implementing and maintaining security controls... 
    Full time
    Work at office
    2 days per week

    Insight Global

    Philadelphia, PA
    3 days ago
  • $21.36 per hour

    Patrol Officer II Position Title: Patrol Officer II Posting Number: 20260088S Position Type: Staff Location: Villanova, PA Recruitment...  ...oriented techniques and tactics. Assists in providing a safe and secure environment for University community members to work, live, and... 
    16 hours
    Full time
    Flexible hours
    Shift work

    VILLANOVA UNIVERSITY

    Villanova, PA
    2 days ago
  • A leading consulting firm is seeking a Security Analyst in Oaks, Pennsylvania, to support the Critical Infrastructure Protection Compliance Department. The role involves ensuring compliance with CIP standards through audits, documentation, and collaboration with stakeholders... 

    JPC Partners

    Oaks, PA
    2 days ago
  •  ...Services Department: Office of Billing Compliance Location: Philadelphia, PA Hours: M-F, 8 hr days, hybrid Summary The Compliance Analyst (CA) II is responsible for the performance of annual reviews of the professional fee billing for the faculty members of UPHS (HUP, PMC,... 
    Work at office
    Local area

    Penn Medicine

    Bala Cynwyd, PA
    14 hours ago
  • $85k - $100k

     ...The IT Security Analyst is responsible for global cybersecurity operations, risk management, and compliance, ensuring the protection and integrity of enterprise systems and data. Key Responsibilities - Lead and manage global IT cybersecurity strategy and operations... 
    Permanent employment

    Nigel Frank International

    Conshohocken, PA
    7 days ago
  •  ...Job Description Job Description Job Title: Junior Security Analyst Location: Philadelphia, PA Job Type: Long-Term Contract Work Setting: Onsite Project Overview We are supporting a large-scale airport technology environment that requires entry-level... 
    Long term contract
    Internship

    NavitasPartners

    Philadelphia, PA
    9 days ago
  • A prominent university is seeking a Patrol Officer II to maintain safety and enforce regulations on campus. The role includes responding to emergencies, conducting patrols, and preparing incident reports. Ideal candidates will have a high school diploma and at least one... 
    Full time

    VILLANOVA UNIVERSITY

    Villanova, PA
    2 days ago
  •  ...Financial Analyst II – Plant Operations, Cost Accounting The Financial Analyst II – Plant Operations, Cost Accounting role is responsible for supporting cost accounting, operational financial analysis, budgeting, forecasting, month-end close, inventory reporting, and... 
    Work at office

    Leonardo

    Philadelphia, PA
    2 days ago
  • Aqua, an Essential Utilities company, is hiring a Finance & Rates Analyst II in Bryn Mawr, PA. This role focuses on preparing, supporting, and auditing financial and regulatory filings, building financial models, and collaborating with managers during rate case and acquisition... 
    Work at office
    Local area

    Aqua America, Inc.

    Bryn Mawr, PA
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to GRC Security Analyst II. Be the first to apply!