GRC Security Analyst II
Aqua America
Essential Utilities, Inc. Job Title: GRC Security Analyst II (Governance & Risk) Responsibilities Manage execution of both enterprise-wide and focused risk, threat, and vulnerability assessments, including but not limited to Security Awareness, Vulnerability, Configuration, and Third-Party Assessments. Analyze and prioritize risk, vulnerability, and compliance findings to define remediation priorities considering all available data sources; partnering with technology and business stakeholders to socialize and implement remediation plans. Define and manage qualitative and quantitative metrics and reporting to measure the success of vulnerability, third party, security awareness, security awareness, configuration, and asset management remediations. Ability to lead ongoing vulnerability management processes, including working with IT and business stakeholders to prepare vulnerability remediation plans, track progress, and reduce overall vulnerability exposures. Participate in development, implementation and operation of control/compliance frameworks and security best practices based on ISO 27001/27002, NIST (800‑30, Cyber Security Framework/CSF), COBIT, Critical Security Controls, CIS Configuration Benchmarks. Monitor compliance with security configuration standards for servers, endpoints, software, and networking platforms based on CIS Benchmarks. Work closely with IT, development, and operations teams to ensure the integration of security practices into the software development lifecycle (SDLC) and IT operations. Lead or assist with vendor and 3rd party risk assessments. Create/maintain documentation of security solutions, services, configurations, and processes. Work closely with engineers focused on intrusion detection, incident response and security operations to manage risk related to existing and emerging threats. Collaborate with other security engineers to analyze, process, integrate, communicate, and respond to threat intelligence. Ability to participate in or lead development, improvements and updates to continually improve security controls, policies, guidelines, processes and procedures. Develop and deliver security awareness training programs for employees to enhance their understanding of security best practice to ensure that security and risk management continue to be integrated into the corporate culture. Lead development and operation of the security awareness program to ensure that security and risk management continue to be integrated into the corporate culture. Implement and maintain controls for compliance and privacy. Act as liaison to internal and external audit teams as needed. Provide escalation support for the Information Technology Help Desk as required. Ability to work off hours maintenance windows and participate in rotating on call shift periodically. Ability to work alone or function effectively as part of a team. All other duties as assigned by management. Qualifications Bachelors in Information Technology, Computer Science, Cyber Security, Security and Risk Analysis, Information Assurance. 3‑5 years of previous Governance & Risk experience. Candidates must have a minimum of one of the following certifications or will be required to obtain within the first 12 months: CISSP, GIAC (GSEC, GSNA), CRISC, CISA, CISM, CCSP, SSCP, CAP, CSSLP, CSX Practitioner. Experience working with assessment tools such as Qualys Policy Compliance and CIS‑CAT. Experience developing and using Qualys, or other vulnerability management, platforms with experience in multiple modules and/or areas: Vulnerability Management, Policy Compliance, Continuous Monitoring, Policy Compliance, Web Application Scanning and Asset Management. Experience leading security awareness program development including: Leading regular phishing assessment campaigns. Creating innovative security awareness campaigns using solution provider and custom‑developed tools/trainings designed to be flexible and adaptable across a diverse employee population (executives, engineering, marketing and communications, finance, customer service, etc.). Participate in aligning the security awareness program with the enterprise’s greatest risks and measure the impact in risk reduction from security awareness efforts. GRC platform experience, with RSA Archer knowledge a strong positive. Strong written and verbal communication skills are required as this position will be responsible for working directly with technical teams and business stakeholders. Demonstrates strong organizational skills and the ability to multi‑task, prioritize workload and delegate responsibilities. Strong analytical skills for assessing and prioritizing security risks. Ability to promote a security‑conscious culture within the organization. Ability to adapt to evolving threats, technologies, and organizational needs. Ability to understand and integrate security into project and application lifecycles for enterprise IT systems. Minimum of 3 to 5 years experience in Information Technology focusing on information security auditing, risk analysis, and vulnerability management. General knowledge of the following technologies from a security perspective: Active Directory, database platforms, web server platforms, Middleware, PKI, cloud computing, Office 365 and Azure. Experience using statistical, quantitative, and qualitative analysis techniques. Proactive approach to staying informed on the latest security threats, vulnerabilities, and industry best practices. Essential Utilities, Inc., is an Equal Opportunity/Affirmative Action employer. Equal employment opportunity is provided to all employees and applicants for employment without regard to the following legally protected characteristics: race, color, religion, sex, national origin, age, pregnancy (including childbirth and related medical conditions, including medical conditions related to lactation), physical or mental disability, covered‑veteran status, genetic information (including testing and characteristics), sexual orientation, gender identity or expression or any other characteristic protected by applicable local, state or federal law. Essential Utilities is committed to providing reasonable accommodation to individuals with disabilities. If you have a condition that may prevent you from applying for a job online or need to request an accommodation during the interview process, please call View phone number on click.appcast.io). #J-18808-Ljbffr Aqua America
- Aqua seeks a GRC Security Analyst II to ensure the security and integrity of information systems. Responsibilities include risk assessments, developing remediation plans, and ensuring compliance with best practices. The ideal candidate will have a Bachelor’s degree in Information...Suggested
- Aqua America, Inc. is hiring a GRC Security Analyst II responsible for managing risk assessments, developing security awareness programs, and ensuring compliance with security standards. The role requires a bachelor's degree in Information Technology or a related field,...Suggested
- ...Security Analyst The Security Analyst is responsible for managing third-party vulnerability data, executing scans using Sompo’s proprietary tools, and partnering with IT teams to prioritize remediation efforts. The role requires strong technical expertise in vulnerability...Suggested
- ...Information Security Analyst I The Corporate Information Services Department is seeking a dynamic and talented Information Security Analyst I. The Information Security Analyst I participates in the identification, implementation, maintenance, and support of technologies...SuggestedFor contractors
- ...additional information visit . The Corporate Information Services Department is seeking a dynamic and talented Sr. Information Security Analyst - Cloud & AI Security. As a key member of our collaborative Cybersecurity team, the Senior Information Security Analyst...SuggestedFor contractorsLocal area
- ...additional information visit . The Corporate Information Services Department is seeking a dynamic and talented Information Security Analyst I. The Information Security Analyst I participates in the identification, implementation, maintenance, and support of...For contractorsLocal area
- Aqua America, Inc. is seeking a Finance & Rates Analyst II in Bryn Mawr, PA. Your role will involve preparing and supporting financial filings, collaborating on rate cases, and building financial models. The ideal candidate will have a BA/BS degree in Finance or Accounting...Work at office
- Overview As a Security Governance Analyst, you will play a pivotal role in advancing the firm’s cybersecurity efforts. This role provides a unique... ...Power-user of Business Intelligence and/or Cybersecurity GRC tools a plus #J-18808-Ljbffr Susquehanna International Group
- ...wastewater service and natural gas providers in the U.S. The Security Analyst I - Identity & Access Management (IAM) & Compliance is a hands... ...of the Information Security Governance, Risk, and Compliance (GRC) team with primary focus on Identity & Access Management and access...InternshipLocal area
- Essential Utilities, Inc. is seeking a Security Analyst I - Identity & Access Management (IAM) & Compliance to support enterprise IAM controls and related compliance activities across IT and OT environments. You will collaborate with IT, OT Engineering, and Application...
- Susquehanna International Group, LLP is seeking a security professional to join the Information Security Services team in Bala Cynwyd, PA. The role focuses on managing network security controls, responding to incidents, and collaborating with business units and engineers...
- ...Site VPN tunnels.Knowledge and understanding of information risk concepts and principles, as a means ofrelating business needs to security controlsAwareness of mainstream operating systemsExperience working in a virtual team, with ability to have a positive and impacting...
- Job Title: Financial Analyst II Location: Chesterbrook PA (Web Cam Interview) Duration: Long Term (W2) H1 Transfer/ GC/ Citizen Job Description: Client Support: Ensure every call is answered professionally and promptly and that the highest level of customer service...Work at office
- Aqua, an Essential Utilities company, is seeking a contract/temp Financial Analyst II to join our Finance team in Bryn Mawr, PA. The role supports development and integration of the total Company planning process, capital attraction, and regulatory rate filings across...Contract workTemporary work
$76.4k - $138.6k
...systems is central to doing business, and everyone in EY Information Security has a critical role to play. Join a global team of almost 950... ...business value. The opportunity As an Offensive Security Analyst on the Attack Surface Management team, you will play a key role...Summer holidayLocal areaFlexible hours- Aqua is seeking a contract/temporary Financial Analyst II to join the Finance team in Bryn Mawr, PA. The role supports rate case filings, budgeting, and financial analyses for multi-state regulatory activities. The position offers a hybrid schedule after a 90-day training...Contract workTemporary work
- ...Actuarial Analyst II Bring your drive for excellence, team orientation and customer commitment to Independence; help us renew and reimagine our business and shape the future of health care. Our organization is looking to diversify, grow, innovate and serve, and we...Work experience placementInterim role
$80k - $90k
...the return on the city’s technology investments; ensuring data security continuity; planning for continuing operations in the event of... ...Enterprise Resource Planning (ERP) System Admin and Security Analyst is responsible for day-to-day oversight and administration of system...Permanent employmentFull timePart timeWork at office- ...Job Description: About the Role: The Network Security Engineer will design, implement, and manage secure network infrastructure to ensure uninterrupted business operations. Responsibilities: Configure and maintain firewalls, VPNs, and IDS/IPS systems...
- ...Information Security Analyst Job Classification: Full-time/Exempt Location: Audubon, PA About Us: At Client, we move with a sense of urgency to deliver innovations that improve the quality of life of patients with musculoskeletal disorders. Our team is inspired...Full time
- ...Job Title Responsibilities: Provide vulnerability management and secure configuration baseline management oversight and governance programs. Adjudicate risk-acceptance ("exception") requests and false positive requests, review metrics, shape and govern based...
- ...Data Security Analyst We are looking for a Data Security Analyst to join our Information Security Architecture team in Philadelphia, PA or Overland Park, KS (Hybrid). This is an exciting opportunity to work on cutting-edge data protection and security initiatives leveraging...Full timeWork experience placementWork at office2 days per week
- ...Job Description Job Description Harbor Consulting & Management, Inc is looking to hire an Information Security Compliance Analyst - CISSP/CISA. Compensation: ~140K +/DOE. Employment type: ~ FT. We are a 20+ year old professional services organization...
- ....S. Are you looking for a fantastic career at Essential Utilities? We have an exciting opportunity for a contract/temp Financial Analyst II to join our Finance team in Bryn Mawr, PA! We are looking for an accountant that supports the development and integration of the...Contract workTemporary workWork at officeLocal area
$72k - $90k
...stack technical know-how to develop innovative solutions for our clients' most complex challenges. Position Overview: The Security Analyst supports customer engagements by helping to deliver business and technology solutions, interacting with clients to understand...Full timeRemote workShift work$85k - $100k
...The IT Security Analyst is responsible for global cybersecurity operations, risk management, and compliance, ensuring the protection and integrity of enterprise systems and data. Key Responsibilities - Lead and manage global IT cybersecurity strategy and operations...Permanent employment$102.5k - $210.6k
...long learners focused on technology and innovation. Recruiting for this role ends on 8/31/2026. Work you’ll do As a Lead Cloud Security Analyst, you are an advanced individual contributor pivotal to bridging Deloitte’s cybersecurity expertise and cloud engineering...Full timeFlexible hoursShift work- ...seeking a Senior Governance, Risk & Compliance Analyst for a contract role supporting the... ...and operationalization of an enterprise GRC platform. This role will focus on helping... ...The resource will partner with management, security, IT, compliance, and business stakeholders...Contract work
- ...GRC Analyst We are looking for an individual who is personable, comfortable working within a growing & supportive environment and capable... ...IT internal controls Evaluate and assist with developing security monitoring and operating procedures at the application, system...Remote work
- Aqua Pennsylvania, Inc. in Bryn Mawr, PA seeks a Finance & Rates Analyst II to prepare and analyze regulatory filings related to rate-making and corporate finance. You will build and maintain financial models and provide testimony for rate cases, supporting budgets and...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to GRC Security Analyst II. Be the first to apply!



