Talent.com
Information Security Governance Risk & Compliance Analyst
Information Security Governance Risk & Compliance AnalystPSECU • Harrisburg, PA, United States
Information Security Governance Risk & Compliance Analyst

Information Security Governance Risk & Compliance Analyst

PSECU • Harrisburg, PA, United States
30+ days ago
Job type
  • Full-time
Job description

Members Achieve More isn't just a tagline for us, it's part of everything we do! We're looking for passionate individuals to join our team to help us maintain that focus every day. Want to work somewhere that's remained strong for 90 years, that encourages you to learn, grow, and pursue your dreams? If yes, then read on...

The Information Security GRC Analyst is responsible for analyzing and assessing the information security controls in an effort to protect the confidentiality, integrity, and availability of PSECU's information. The individual is responsible for ensuring network and cloud security access and for implementing and documenting measures to safeguard the network against accidental or authorized modifications, destruction, or disclosure.

The level for this position will be determined based on the selected candidate's experience.

Schedule : Monday - Friday, 9 : 00am -5 : 00pm. This position will be a hybrid model both in person and remote with minimum of onsite expectation of 40% or as needed.

In this position, you will

  • Monitor Compliance : Assist in protecting the integrity, availability and confidentiality of network resources and data. Assist in the development and enforcement of security policies, standards, and procedures. Participate in network, system, and application vulnerability assessments, generate report findings, and oversee remediation activities. Participate in the monitoring and periodic testing of IT compliance controls to ensure ongoing adherence to PSECU policies, standards, and industry frameworks for both cloud and on-prem solutions.
  • Control and Risk Assessments : Perform or coordinate control testing, assessments, and monitoring to ensure that Information Technology processes and controls are effective, functioning as designed, and managed to the appropriate level of risk. Coordinate IT self-assessment compliance reviews based on regulatory, industry standards, and internal policy requirements. Evaluate any related external frameworks or standards ((e.g., ITIL, COBIT, National Institute of Standards and Technology [NIST], ISO 27002, Center for Internet Security Critical Security Controls (SANS 20) etc.) or internal policies / standards (e.g., code of conduct, record retention, and acceptable use, etc.) to determine the relevant IT compliance requirements and controls. Conduct risk assessments to identify gaps in the control structure.
  • Vendor Due Diligence : Participate in the vendor management and due diligence process. Consult with business units when negotiating and contracting third-party service provider arrangements to ensure associated information security risks are considered. Perform necessary due diligence activities to determine third-party adherence with IT compliance requirements prior to establishing a business relationship.
  • Incident Response : Participate in or conduct incident response investigations by using and understanding PSECU's Incident Management procedures. Participate in the Incident Management Program in order to plan and respond effectively to a compromise of PSECU's IT infrastructure or to an unauthorized access and / or disclosure of sensitive company, member, or employee data. Review SIEM, operational logs, and event console activity to identify and determine the cause of security related events.
  • Awareness Program : Assist in developing Information Security and Privacy Awareness content employees, members. Assist in socializing PSECU Policies and Standards to PSECU employees.
  • Internal Audit Coordination : Collect evidence for internal and external audits. Research and respond to internal and external audit finding
  • Other duties as assigned.

Qualifications : Required & Preferred

BS, BS : Computer and Information Science

Reasonable accommodation may be made to enable a qualified individual with a disability or disabilities to perform the essential duties and responsibilities of the job.

Physical Demands and Sensory Abilities :

Repetitive movement of hands and fingers (e.g. typing, writing).

Lifting and carrying containers weighing as much as 20-30 pounds (e.g. to / from building and vehicle to a storage area).

Sitting for long periods of time (e.g. at a desk, in meetings).

Ability to reach above, at, and below the waist.

Ability to reach above, at, and below shoulder level.

Occasional bending, kneeling, stooping and / or squatting.

Visual acuity.

Auditory acuity.

Create a job alert for this search

Information Security Risk Analyst • Harrisburg, PA, United States

Related jobs
Correctional Officer

Correctional Officer

Federal Bureau of Prisons • Herndon, PA, US
Full-time
Corrections professionals who foster a humane and secure environment and ensure public safety by preparing individuals for successful reentry into our communities. Provides supervision, care and cor...Show more
Last updated: 10 days ago • Promoted
Asset Protection Specialist

Asset Protection Specialist

Home Depot (Retail) • Harrisburg, PA, US
Full-time
The Asset Protection Specialist is primarily responsible for preventing financial loss caused by theft and fraud and supporting safety and environmental program compliance in their assigned store / m...Show more
Last updated: 30+ days ago • Promoted
Regional Manager, Data Center Security Risk Assessments

Regional Manager, Data Center Security Risk Assessments

Pennsylvania Staffing • Harrisburg, PA, US
Full-time
Regional Manager, Security Risk Assessments AMER.The Physical Security Operations team serves as the primary point of contact for all stakeholders, ensuring that physical security requirements and ...Show more
Last updated: 18 hours ago • Promoted • New!
Security Architect - Secure Technology, Architecture and Safety

Security Architect - Secure Technology, Architecture and Safety

Oracle • Harrisburg, PA, United States
Full-time
You will design and govern security reference architectures, standards, and controls for cloud primitives (compute, network, storage), identity and access, data protection, container / Kubernetes pla...Show more
Last updated: 18 days ago • Promoted
Detection & Response Security Engineer, Threat Intelligence

Detection & Response Security Engineer, Threat Intelligence

META • Harrisburg, PA, United States
Full-time
Meta Security is looking for a threat intelligence investigator with extensive experience in investigating cyber threats with an intelligence-driven approach. You will be proactively responding to a...Show more
Last updated: 18 days ago • Promoted
Independent Risk Advisor

Independent Risk Advisor

Horizon Farm Credit • Mechanicsburg, PA, United States
Part-time
This position will have an extended recruiting timeline, targeting late December or January for interviews.Horizon Farm Credit is seeking an accomplished and highly experienced professional to serv...Show more
Last updated: 18 days ago • Promoted
Information System Security Manager III

Information System Security Manager III

Solvere Technical Group • Mechanicsburg, PA, United States
Full-time
Solvere Technical Group is seeking an Information System Security Manager III to provide support for IT and cybersecurity activities. Providing oversight in the following areas : .Testing, monitoring,...Show more
Last updated: 30+ days ago • Promoted
IT CYBERSECURITY SPECIALIST (OS / INFOSEC)

IT CYBERSECURITY SPECIALIST (OS / INFOSEC)

Defense Information Systems Agency • Mechanicsburg, PA, United States
Full-time +1
This position is being recruited under 10 USC 1599f into the Cyber Excepted Service and does NOT convey eligibility to be converted to the Competitive Service. It has been identified as a position n...Show more
Last updated: 7 days ago • Promoted
Manager, Security Governance Risk and Compliance

Manager, Security Governance Risk and Compliance

KPMG • Harrisburg, PA, United States
Full-time
Known for being a great place to work and build a career, KPMG provides audit, tax and advisory services for organizations in today's most important industries. Our growth is driven by delivering re...Show more
Last updated: 11 days ago • Promoted
Cyber Compliance (Vulnerability Management Lead) - Assistant Director

Cyber Compliance (Vulnerability Management Lead) - Assistant Director

EY • Harrisburg, PA, United States
Full-time
At EY, we're all in to shape your future with confidence.We'll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go.Join EY and help ...Show more
Last updated: 18 days ago • Promoted
Senior Engineer, IT Governance and Compliance

Senior Engineer, IT Governance and Compliance

Cardinal Health • Harrisburg, PA, United States
Full-time
NYSE : CAH) is a global healthcare services and products company.We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, phy...Show more
Last updated: 14 days ago • Promoted
Senior Analyst, Security Compliance (SOX IT)

Senior Analyst, Security Compliance (SOX IT)

Coinbase • Harrisburg, PA, United States
Full-time
Ready to be pushed beyond what you think you’re capable of?.At Coinbase, our mission is to increase economic freedom in the world. It’s a massive, ambitious opportunity that demands the best of us, ...Show more
Last updated: 5 days ago • Promoted
Senior Risk Analytics Manager

Senior Risk Analytics Manager

Navient • Harrisburg, PA, United States
Full-time
Our mission is to make higher education accessible and affordable for everyone.We empower students with financial support and supercharge their ability to pay down their debt, so they can get on th...Show more
Last updated: 19 days ago • Promoted
Security Analyst

Security Analyst

JFC Staffing • Camp Hill, PA, United States
Permanent
Security Analyst opening on a permanent hybrid basis up to 85k is available! This role offers a chance to contribute to a stable, essential industry, with a focus on advancing security protocols wi...Show more
Last updated: 5 days ago • Promoted
Manager Information Security & Risk Management

Manager Information Security & Risk Management

Highmark Health • Harrisburg, PA, United States
Full-time
This job provides Information Security and Risk Management services for the Organization.Works with peers within security, HM Health Solutions customers and application teams to ensure alignment wi...Show more
Last updated: 30+ days ago • Promoted
Cyber Security Manager - Diego Garcia

Cyber Security Manager - Diego Garcia

Amentum • Harrisburg, PA, United States
Full-time
Please note this position is based on Contract Award and is located on the island of Diego Garcia.Facility-Related Control System (FRCS) Cybersecurity Manager. The Contractor shall provide a FRCS Cy...Show more
Last updated: 30+ days ago • Promoted
Lead Adversarial Security Engineer

Lead Adversarial Security Engineer

Trellix • Harrisburg, PA, United States
Full-time
Lead Adversarial Security Engineer.Trellix, the trusted CISO ally, is redefining the future of cybersecurity and soulful work. Our comprehensive, GenAI-powered platform helps organizations confronte...Show more
Last updated: 7 days ago • Promoted
Senior Security Engineer (Cryptography)

Senior Security Engineer (Cryptography)

Zoom Corporation • Harrisburg, PA, United States
Full-time
Senior Security Engineer (Cryptography) at Zoom is responsible for designing, and guiding encryption primitives implementation for Zoom video and meeting applications and services.The ideal candida...Show more
Last updated: 5 hours ago • Promoted • New!