19 grc analyst jobs at 16 companies in Pennsylvania

3d
Save
Mark Applied
Hide
Senior GRC Analyst
Pittsburgh, Pennsylvania, United States
$114k-$163k/yr OnsiteFull Time
The Wolfe Companies
The Wolfe Companies: Provides comprehensive gift card management and fintech gifting solutions.
7+ YOE7+ years in GRC, IT audit, or security compliance; 3+ years supporting PCI DSS in a Level 1 or equivalent payment environment; SOC 2, ITGC, third-party risk, and GRC platform experience.
PCI DSS, SOC 2, NIST CSF 2.0, Vanta, Drata, Secureframe, ServiceNow IRM, AuditBoard
1mo
Save
Mark Applied
Hide
Cybersecurity GRC Analyst
Harrisburg or Hunker
$70k-$90k/yr OnsiteFull Time
Cleveland Brothers
Cleveland Brothers: Exclusive Caterpillar dealer providing heavy machinery sales, rental, and service.
Bachelor's or equivalent experience in cybersecurity/IT, deep GRC knowledge, experience with security frameworks, policy development, audits, risk assessments, control tracking, and strong written/verbal communication.
NIST CSF, SOC 2, CIS
2mo
Save
Mark Applied
Hide
GRC Security Analyst II
Bryn Mawr, Pennsylvania, United States
OnsiteFull Time
Essential Utilities
Essential UtilitiesNYSE: WTRG: Provides regulated water, wastewater, and natural gas utility services.
3+ YOE3+ years GRC or information security experience; bachelor’s in IT-related field; risk, vulnerability, and compliance assessment experience; familiarity with ISO/NIST/COBIT/CIS; must obtain one listed security certification within 12 months.
Qualys Policy Compliance, CIS-CAT, Qualys, RSA Archer, Microsoft Active Directory, Microsoft Office 365, Microsoft Azure
1mo
Save
Mark Applied
Hide
Junior Compliance Analyst
Morgantown or Pittsburgh
OnsiteFull Time
Maximus
MaximusNYSE: MMS: Provides government health and human services program administration.
1+ YOEBachelor's or equivalent experience, Security+ certification, familiarity with RMF, NIST SP 800-53, FISMA, FedRAMP, GRC/CSAM/eMASS/Xacta exposure, and ticketing systems.
GRC, CSAM, eMASS, Xacta, ServiceNOW, Jira, SharePoint
2w
Save
Mark Applied
Hide
Senior Enterprise Risk Management Analyst
Enola, Pennsylvania, United States
$70k/yr OnsiteFull Time
Members 1st Federal Credit Union
Members 1st Federal Credit Union: Financial cooperative providing consumer banking and lending services.
5+ YOE5-8 years related experience in enterprise risk management, supplier risk, insurance administration, GRC administration, and risk assessment; strong analytical, communication, and problem-solving skills.
GRC
1mo
Save
Mark Applied
Hide
Governance, Risk & Compliance Analyst, Specialist
Malvern or Plano
HybridFull Time
Vanguard
Vanguard: Global investment management and financial services provider.
5+ YOEFive years of information security or fraud experience, undergraduate degree or equivalent, expertise in NIST, CIS Controls, ISO 27002, GRC platforms, automation, and financial services cyber regulations.
NIST Cybersecurity Framework (NIST CSF), NIST 800-53, CIS Controls, ISO 27002, GRC, dashboards
2mo
Save
Mark Applied
Hide
Senior Business Systems Analyst (United States)
Philadelphia or United States
$81k-$134k/yr HybridFull Time
Deloitte
Deloitte: Global provider of audit, consulting, tax, and advisory services.
2+ YOEBachelor's degree in engineering or related field and 2 years experience; experience with ServiceNow, ITSM/ITOM, MS Office, SAFe Agile, GRC; requirements analysis, user stories, UAT, testing, and production incident triage.
Microsoft Office, Microsoft Excel, Microsoft PowerPoint, Microsoft Word, ServiceNow, ServiceNow ITSM, ServiceNow Agile, ITSM, ITOM, GRC, Safe agile
1d
Save
Mark Applied
Hide
InfoSec Analyst II, Trust
New York or Maryland or Massachusetts or Virginia or Connecticut or Pennsylvania
$84k-$160k/yr RemoteFull Time
Chainalysis
Chainalysis: Blockchain data platform for cryptocurrency investigation and compliance.
Experience in GRC, compliance, or IT audit in technology environments; knowledge of SOC 2, ISO 27001, or NIST; control testing, remediation tracking, communication, and AI governance experience.
SOC 2, ISO 27001, NIST, APIs
1mo
Save
Mark Applied
Hide
Senior Analyst, IT Internal Controls & SOX Compliance
San Francisco or Salt Lake City or Phoenix or Los Angeles or Chicago or Boston or Austin or New York City or Miami or Tampa or Atlanta or Columbus or Boise or San Diego or Minneapolis or Houston or Raleigh or Nashville or Kansas City or Charlotte or Portland or Philadelphia or Dallas or Washington D.C. or Seattle
$113k-$148k/yr RemoteFull Time
Circle
CircleNYSE: CRCL: Digital currency issuer and blockchain financial infrastructure provider.
4+ YOE4+ years Big 4 IT audit/controls experience, Bachelor's in related field, CPA/CISA/CIA/CISSP required; strong SOX/ITGC knowledge, cloud/SaaS/SDLC/IAM experience, ERP/GRC familiarity, and stakeholder communication skills.
Slack, Apple MacOS, Google Workspace, ERP, GRC, AI
2w
Save
Mark Applied
Hide
Compliance Analytics Analyst 3
Philadelphia, Pennsylvania, United States
OnsiteFull Time
Comcast
ComcastNASDAQ: CMCSA: Provides global telecommunications, media content, and entertainment services.
5+ YOE5+ years in cybersecurity/GRC or compliance analytics; strong Excel and SQL skills; experience with Snowflake/Databricks preferred; ability to define and validate controls and communicate insights to stakeholders.
Microsoft Excel, SQL, Snowflake, Databricks
1w
Save
Mark Applied
Hide
Cybersecurity Risk Management Analyst
Philadelphia, Pennsylvania, United States
OnsiteFull Time
Chubb
ChubbNYSE: CB: Provides property, casualty, and life insurance and reinsurance services globally.
5+ YOERequires 5+ years in GRC technology, IT automation, or security platform engineering; ServiceNow IRM development; Python scripting; cyber risk, compliance, or audit experience; and a relevant bachelor's degree or equivalent.
ServiceNow, ServiceNow IRM, Python, API
2mo
Save
Mark Applied
Hide
IT Internal Controls Analyst
Chadds Ford, Pennsylvania, United States
OnsiteFull Time
Incyte
IncyteNasdaq: INCY: Develops and manufactures innovative oncology and inflammation medicines.
1+ YOEBachelor's in IT/CS/IS, 1–3 years IT SOX/ITGC or technology risk experience, knowledge of user access controls and SDLC controls, ERP (SAP) and GRC tool experience, auditor interfacing, strong documentation skills.
AuditBoard (Optro), SAP, SAP GRC, ServiceNow GRC, Active Directory, ERP
2mo
Save
Mark Applied
Hide
Security Governance Analyst - New Grad
Bala Cynwyd, Pennsylvania, United States
OnsiteFull Time
Susquehanna International Group
Susquehanna International Group: Global quantitative trading firm specializing in proprietary financial markets.
Bachelor's degree required; experience or coursework in cybersecurity governance, compliance, or risk management; knowledge of NIST/ISO/SOC 2/CIS frameworks; strong communication and stakeholder management; familiarity with BI or GRC tools a plus.
NIST CSF, ISO 27001, SOC 2, CIS Controls
1mo
Save
Mark Applied
Hide
Governance, Risk & Compliance Analyst, Specialist
Malvern or Plano
HybridFull Time
Vanguard
Vanguard: Global investment management and financial services provider.
7+ YOESeven years of information security or fraud experience, undergraduate degree or equivalent, GRC platform and automation experience, knowledge of NIST, CIS, ISO 27002, and financial services cyber regulations.
NIST CSF, NIST 800-53, CIS Controls, ISO 27002
1mo
Save
Mark Applied
Hide
Governance, Risk & Compliance Analyst, Specialist
Dallas or Malvern
HybridFull Time
Vanguard
Vanguard: Provides mutual funds, ETFs, and investment management services.
7+ YOE7+ years related experience in information security or fraud, undergraduate degree or equivalent, expertise with security frameworks, GRC platforms, strong communication and influencing skills.
NIST CSF, NIST 800-53, CIS Controls, ISO 27002, GRC solutions platform
1mo
Save
Mark Applied
Hide
Governance, Risk & Compliance Analyst, Specialist
Dallas or Malvern
HybridFull Time
Vanguard
Vanguard: Provides mutual funds, ETFs, and investment management services.
5+ YOE5+ years information security or fraud experience; strong knowledge of NIST, CIS, ISO frameworks; GRC platform and automation experience; undergraduate degree or equivalent; excellent communication skills.
NIST CSF, NIST 800-53, CIS Controls, ISO 27002, GRC solutions platform
2w
Save
Mark Applied
Hide
Senior Analyst, Security Risk
United States or Colorado or Hawaii or Illinois or Maryland or Massachusetts or Minnesota or Vermont or District of Columbia or New York or New Jersey or Washington or California or Connecticut or Pennsylvania
$129k-$189k/yr RemoteFull Time
Twilio
TwilioNYSE: TWLO: Cloud communications platform for building customer engagement applications.
5+ YOE5+ years security-focused risk management experience with industry risk frameworks, quantitative and qualitative risk analysis, automation and AI tooling, cross-functional collaboration, and strong communication skills.
NIST RMF, AI RMF, COSO, ISO 31000, GRC, AI
4d
Save
Mark Applied
Hide
IT Governance, Risk, and Compliance Analyst
New Hampshire or Georgia or Pennsylvania or Iowa
RemoteFull Time
Pete & Gerry's Organics
Pete & Gerry's Organics: Produces and distributes organic, free-range, and pasture-raised eggs.
2+ YOEBachelor's degree and 2-5 years in IT audit, compliance, risk, SOX, or GRC; knowledge of ITGCs, control testing, access reviews, documentation, and audit evidence.
Microsoft Excel, Microsoft Word, Microsoft PowerPoint, Microsoft Dynamics Business Central, SAP, Oracle, FastPath, Delinea, FloQast, Microsoft Azure, Microsoft 365
2mo
Save
Mark Applied
Hide
Information Security – Risk & Compliance Analyst
Easton or United States or Europe or Asia
HybridFull Time
Victaulic
Victaulic: Manufacturer of mechanical pipe joining and flow control systems.
0+ YOE0–2 years in information security, IT audit, or risk; familiarity with NIST CSF, ISO/IEC 27001, CMMC, and NIS2; experience with risk assessments, third-party audits, cloud/DevOps/application security; CompTIA Security+ or equivalent; CISA preferred.
NIST CSF, ISO/IEC 27001, CMMC, NIS2 Directive, cloud computing, DevOps, application security, GRC platform