Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Governance, Risk and Compliance Analyst

Crown Holdings

About Crown

Crown Holdings, Inc. through it's subsidiaries, is a world leader in the metal packaging production process. We design and manufacture a wide range of innovative and sustainable metal packaging solutions and products. Our clients are some of the largest and most respected companies in the world.

Crown is dedicated to building a team of highly talented, dedicated, and driven individuals. It's an exciting time to join our business because Crown offers you the opportunity to grow and develop your skills in an expanding industry.

Crown was founded with the goal of valuing and promoting sustainability and this vision continues to be essential to our long-term future.

Job Description:

Global Information Security GRC Analyst - Third-Party Risk

The Company:

CROWN Cork & Seal USA, Inc., a wholly owned company of Crown Holdings, Inc. is a global leader in the design, manufacture and sale of packaging products for consumer goods. At Crown, we are passionate about helping our customers build their brands and connect with consumers around the world. We do this by delivering innovative packaging that offers significant value for brand owners, retailers, and consumers alike. With operations in 39 countries employing over 23,000 people and net sales of nearly $12 billion, we are uniquely positioned to bring best practices in quality and manufacturing to our customers to drive their businesses locally and globally. Sustaining a leadership position requires us to build a team of highly talented, dedicated, and driven individuals.

The Team:

The mission of the Global Information Security team is to protect Crown's global information systems, data and employees from cyber-based security threats while ensuring the confidentiality, integrity and availability of information used by the Crown business units to produce world class sustainable packaging solutions to our customers.

You will join a cohesive and collaborative team who love what they do and are committed to creating a safe and secure environment for the Crown family. We are nimble with dynamic backgrounds that foster an environment of continuous learning and growth.

The Job:

We are seeking a Global Information Security GRC Analyst - Third Party Risk to support the execution and continuous improvement of Crown's cybersecurity governance program. This role is part of Crown's Global Cybersecurity team and will help expand and mature the company's global GRC capabilities, with primary responsibility for supporting third-party security risk management. The role will also support related cyber risk and governance activities, including cybersecurity risk assessments, risk register maintenance, remediation tracking, risk reporting, AI governance, policy governance, compliance, and audit readiness.

The ideal candidate is analytical, collaborative, and passionate about helping the organization manage risk while enabling business objectives.

Key Responsibilities

Third-Party Security Risk Management
  • Manage the end-to-end third-party security risk assessment process.
  • Assess vendor security controls and assurance documentation using ISO 27001, NIST frameworks, and SOC 2 reports.
  • Review vendor security documentation, identify risks, and track remediation activities.
  • Maintain third-party risk registers and support ongoing vendor monitoring and reporting.
Governance, Risk & Compliance
  • Conduct cybersecurity risk assessments and maintain risk registers.
  • Support AI governance activities, including risk assessments and inventory management.
  • Coordinate cybersecurity policy development, review, approval, and lifecycle activities.
  • Support compliance and audit readiness through control testing, evidence collection, and remediation tracking.
  • Develop cybersecurity metrics, dashboards, and leadership reporting.
  • Identify opportunities to improve and automate GRC processes.
Location

This is a full-time, on-site position based in Yardley, Pennsylvania. Employees are expected to work from the office five days per week, with flexibility in daily start and end times.

Required Qualifications
  • Bachelor's degree in Cybersecurity, Information Technology, Information Systems, or a related field or equivalent professional experience.
  • 3-5 years of experience in cybersecurity, GRC, cyber risk, or third-party risk management.
  • Experience conducting security assessments and reviewing vendor security documentation.
  • Knowledge of cybersecurity frameworks such as ISO 27001, NIST CSF, and SOC 2.
  • Strong analytical, communication, and stakeholder management skills.
Preferred Qualifications
  • Certifications such as CISSP, CISM, CISA, CRISC, Security+, or ISO 27001 Lead Implementer/Auditor.
  • Experience with GRC platforms such as LogicGate, ServiceNow GRC, Archer, OneTrust, or AuditBoard.
  • Familiarity with AI governance frameworks including NIST AI RMF and ISO/IEC 42001.
  • Experience supporting cloud security and regulatory compliance initiatives.
  • Experience supporting GRC and TPRM activities across multiple countries and cultures.
Additional Job Considerations

This role requires collaboration, teamwork, and regular interaction with business stakeholders, technology teams, and external partners.

What Crown Offers You
  • Strong commitment to employee safety and well-being
  • Opportunity to build a meaningful career
  • Professional development through training and work experiences
  • Exposure to global cybersecurity and risk management initiatives
Join us and become part of a team helping to protect Crown's business through effective cybersecurity governance, risk management, and compliance.

What Crown Offers You
  • Strong engagement and commitment to the safety of our employees
  • The opportunity to build a meaningful career

  • Professional and personal development through training and work experiences


Join us and become part of a team of professionals who are passionate about sustainable packaging!

Working Together Working Together is one of the five pillars that make up our Twentyby30™ program. We aim to value and respect each individual and foster an environment of inclusivity.
Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Governance, Risk and Compliance Analyst in Yardley, PA vacancy
  •  ...Global Information Security Grc Analyst – Third-Party Risk Crown Cork & Seal Usa, Inc., a wholly...  ...improvement of Crown's cybersecurity governance program. This role is part of Crown'...  ..., AI governance, policy governance, compliance, and audit readiness. The ideal... 
    Suggested
    Full time
    Work at office

    Crown Holdings

    Morrisville, PA
    5 days ago
  • $119k - $218.3k

    Position Summary Senior Consultant - Risk, Regulatory, & Licensing - Digital Assets Regulatory & Financial Risk Ready for a...  ...developments to provide clients with up-to-date perspectives on compliance obligations and industry best practices.Collaborate with cross-... 
    Suggested
    Work at office

    Deloitte

    Princeton, NJ
    4 days ago
  • About this opportunity We are looking for a Compliance Officer to support Group Function Third Party Assessments within Compliance Programs...  ...senior subject‑matter expert in due diligence and third‑party risk assessments. This opportunity will allow you to continue to... 
    Suggested
    Work experience placement
    Local area
    Shift work

    Ericsson

    Trenton, NJ
    1 day ago
  • $137k - $235.75k

     ...labeling strategy and content, including risk and mitigation identification and...  ...functional teams, as appropriate.Present at governance meetings, such as Labeling Committee, to...  ...Analytical Reasoning, Business Writing, Compliance Risk, Fact-Based Decision Making, Industry... 
    Suggested
    Full time
    Work experience placement
    Local area
    Immediate start
    Worldwide

    Johnson & Johnson

    Titusville, NJ
    1 day ago
  • $92.5k - $131.7k

     ...high initiativeDelivers project tasks on timeWorks cross-functionally to identify and communicate regulatory requirements, regulatory risks and mitigation strategiesTests, confirms and/or improves processesSolves issues quickly and efficientlyAbility to prioritize and... 
    Suggested
    Full time
    Work at office
    Remote work

    Church & Dwight Company

    Princeton, NJ
    5 days ago
  •  ...Withum Plus You - that’s the Power in the Plus!Job Description:The Risk Advisory practice at Withum is experiencing significant growth...  ...demand for assurance services. Our team is seeking a Contract Compliance Senior Consultant with experience performing royalty audits,... 
    Full time
    Contract work
    Work at office
    Local area

    Withum Smith+Brown

    Princeton, NJ
    2 days ago
  •  ...Security & Compliance Analyst We are seeking a Security & Compliance Analyst to support and strengthen...  ...IT, operations, and vendors to reduce risk across all systems. Position...  ...remediation tracking Compliance & Governance Maintain and enforce IT security... 

    Silvi Materials

    Fairless Hills, PA
    5 days ago
  • Position Summary The CDL Test Examiner is responsible for overseeing and ensuring the integrity of the licensing test for prospective CDL holders, in accordance with state and federal regulations. About Our Company We are the Driving Academy, we provide affordable...
    Local area

    Driving Academy

    Levittown, PA
    2 days ago
  •  ...management, submission execution, and ongoing compliance with global regulatory requirements. The...  ...regulatory interpretation, updates, and risk assessments. # Regulatory Submission...  ...Global Regulatory Team (GRT) meetings, governance discussions, and alliance meetings.... 
    Local area
    Remote work

    PAREXEL

    Trenton, NJ
    1 day ago
  •  ...services including electronic records retention processes in accordance with regulatory requirements. Ensures that labeling is in compliance to the requirements from regulatory agencies. Maintains the technical and non-technical documentation change system. Assures... 
    For contractors
    Work at office

    LanceSoft

    Princeton, NJ
    5 days ago
  • $86.7k - $102k

     ...manages investigational and marketing applications to health authorities like the FDA and EMA, compiles required data and maintains compliance with evolving regulations and technologies—including AI—to support drug review, approval and market access while protecting... 
    Local area

    TAIHO ONCOLOGY INC

    Princeton, NJ
    1 day ago
  •  ...registrations, listings in responsible countries/region Review and approve advertising and promotional items to ensure regulatory compliance with intended markets Ensure external communications for regulatory purposes meet regulations Requirements Bachelor's... 
    Work experience placement

    Connecting Talent 2 Opportunity

    Princeton, NJ
    3 days ago
  • $80.9k - $127.05k

     ...regulatory strategies for products that require government approval. This job family proactively identifies regulatory requirements and risks for products and develops plans for...  ...product changes, regulatory submissions, compliance initiatives, and commercial support. This... 
    Full time
    Temporary work
    Work experience placement
    Local area
    Immediate start
    Remote work
    Flexible hours

    Cardinal Health

    Trenton, NJ
    2 days ago
  •  ...and ensure accuracy of the site Approved Vendor List.Track, monitor, and complete periodic vendor reassessments to ensure ongoing compliance.Manage periodic reassessment schedules, documentation, follow-ups, and completion tracking to support supplier lifecycle... 

    Planet Pharma

    Hopewell, NJ
    1 day ago
  • Pharmacovigilance Analytics And Reporting Specialist The Pharmacovigilance (PV) Analytics and Reporting Specialist, PV Analytics Center of Excellence is responsible for successful execution, and close-out of activities aligned with the overall vision, strategy, and ...
    Flexible hours

    Omni Inclusive

    Lawrence Township, NJ
    3 days ago
  • $90.72k - $121.52k

     ...status as a protected veteran or spouse/family member of a protected veteran; or disability.Technical/Domain Skill 1Domain|Banking|Compliance & Regulations Technical/Domain Skill 2Domain|Banking|Products Technical/Domain Skill 3Domain|Capital Markets - Asset Classes|... 
    Full time
    Temporary work
    Relocation

    Infosys Technologies

    Pennington, NJ
    3 days ago
  • $145.6k - $279.4k

     ...maximize lifecycle value while ensuring compliance with U.S. regulatory requirements. Location...  ...Affairs at internal (U.S. and global) governance forums and external meetings with...  ...evaluate regulatory challenges, identify risks, and develop mitigation approaches. Strategic... 
    Work at office
    Visa sponsorship
    Work visa
    Relocation package

    U023 (FCRS = US023) Sandoz Inc

    Princeton, NJ
    13 hours ago
  •  ...won’t just manage timelines—you’ll enable clarity, anticipate risk, elevate team performance, and help bring transformative vaccines...  ...and cross-functional stakeholders to maintain effective GRST governance, meeting cadence, stakeholder alignment, and communication flow... 
    Work at office
    Remote work
    Work from home
    Worldwide

    PAREXEL

    Trenton, NJ
    4 days ago
  • $50 - $51.72 per hour

     ...Assurance with a Top-Tier Global Pharma Leader in Pennington, NJ. This 100% on-site role provides critical oversight for vendor quality compliance, supplier lifecycle management, and regulatory inspection readiness within a dynamic manufacturing environment. location:... 
    Hourly pay
    Contract work
    Temporary work
    Work experience placement
    Pennington, NJ
    2 days ago
  •  ...Full-Time | Onsite Turn Compliance Into Impact Sibanye-Stillwater is seeking an R2 / e-Stewards Quality & Compliance Specialist to help drive the certifications, management systems, and compliance programs supporting our responsible recycling operations. If... 
    Full time

    Sibanye-Stillwater

    Fairless Hills, PA
    17 days ago
  • $30 - $35 per hour

     ...Job Description Job Description DDD Program Operations & Compliance Specialist Infinity Healthcare Services, LLC Location: Princeton, New Jersey Work Arrangement: Hybrid, with required community travel Employment Type: Full-Time Reports To: Administrator... 
    Hourly pay
    Full time
    Work at office

    Infinity Healthcare Services

    Princeton, NJ
    9 days ago
  • A prominent life sciences company is seeking an Executive Recruiter for a 12-month contract primarily remote, based in Princeton, NJ. The role involves supporting GxP document management initiatives, facilitating project plans, and providing audit support. Ideal candidates...
    Remote job
    Contract work

    GForce Life Sciences

    Princeton, NJ
    13 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Governance, Risk and Compliance Analyst. Be the first to apply!