Information Security Governance Risk

2 weeks ago


Harrisburg, United States PSECU Full time
PSECU, a high-tech progressive financial institution with more than $8 billion in assets, is seeking an Information Security GRC Analyst I or II. The Information Security GRC Analyst I is responsible for assisting in analyzing and assessing the information security controls to protect the confidentiality, integrity, and availability of PSECU's information.The individual assists in ensuring network security access and assists in implementing and documenting measures to safeguard the network against accidental or authorized modifications, destruction, or disclosure.The Information Security GRC Analyst II is responsible for analyzing and assessing the information security controls to protect the confidentiality, integrity, and availability of PSECU's information.The individual is responsible for ensuring network and cloud security access and for implementing and documenting measures to safeguard the network against accidental or authorized modifications, destruction, or disclosure.

Benefits: We offer a competitive salary, excellent benefits and a great work environment. Along with excellent medical and retirement programs and a generous leave package, our workplace offers tuition reimbursement.

Employee Type: Full-time, Non-exempt

Schedule: Monday-Friday 9am-5pm

This position will be a hybrid model of both in person and remote with the minimum 40% onsite expectation or as needed.#LIHybrid

Minimum Starting Pay Rate: (Commensurate with experience)

DUTIES AND ACCOUNTABILITIES FOR LEVEL I - Essential for this position:
  • Assists in ensuring that resource owners/users are aware of security policies and standards.
  • Research and respond to internal and external audit findings.
  • Assist in the protecting the integrity, availability, and confidentiality of network resources and data.
  • Review audit trails, system logs, and other monitoring data sources to identify incidents and assist in incident investigations.
  • Review operation logs and event console activity to identify and determine the cause of security-related events.
  • Perform necessary due diligence activities to determine third-party adherence with IT compliance requirements prior to establishing a business relationship.
  • Assist in the development of security policies, standards, and procedures.
  • Assists in maintaining a systematic process for managing PSECU's information security risks. Facilitate ITS business unit risk assessments.
  • Participate throughout the system development life cycle and system acquisition and implementation initiatives.
  • Participate in network, system, and application vulnerability assessments, generate report findings, and verify remediation activities.
  • Assist with periodic user appropriateness and high-risk privilege reviews with other departments. Assist with reviewing the appropriateness of user activities.
DUTIES AND ACCOUNTABILITIES FOR LEVEL II - Essential for this position:
  • Assist in the development and enforcement of security policies, standards, and procedures.
  • Assist in protecting the integrity, availability, and confidentiality of network resources and data.
  • Ensure audit trails, system logs, and other monitoring data sources are reviewed periodically and are in compliance with policies and audit requirements.
  • Review SIEM, operation logs, and event console activity to identify and determine the cause of security-related events.
  • Participate in network, system, and application vulnerability assessments, generate report findings, and oversee remediation activities.
  • Participate in the monitoring and periodic testing of IT compliance controls to ensure ongoing adherence to PSECU policies, standards, and industry frameworks for both cloud and on-prem solutions.
  • Manage or coordinate periodic user access reviews with other departments. Review the appropriateness of user activities.
  • Perform or coordinate control testing, assessments, and monitoring to ensure that Information Technology processes and controls are effective, functioning as designed, and managed to the appropriate level of risk.
  • Coordinate IT self-assessment compliance reviews based on regulatory, industry standards, and internal policy requirements.
  • Perform necessary due diligence activities to determine third-party adherence with IT compliance requirements prior to establishing a business relationship.
  • Participate in or conduct incident response investigations by using and understanding PSECU's Incident Management procedures. Participate in the Incident Management Program in order to plan and respond effectively to a compromise of PSECU's IT infrastructure or to an unauthorized access and/or disclosure of sensitive company, member, or employee data.

MINIMUM / PREFERRED EXPERIENCE AND EDUCATION FOR LEVEL I

Minimum Experience:

Bachelor's degree in Cybersecurity, Information Security, Computer Science, Information Assurance, or a related field,

Entry level to two years' experience in Cybersecurity, Information Security, Auditing, Risk Management, Information Assurance, and/or work supporting and maintaining a network or cloud environment,

Or any equivalent combination of experience and education.

Preferred Experience:

Certification in field of expertise is preferred, i.e., Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), or Certified Internal Auditor (CIA).

MINIMUM / PREFERRED EXPERIENCE AND EDUCATION FOR LEVEL II:

Minimum Experience:

Two - Four years' experience in Cybersecurity, Information Security, Auditing, Risk Management, Information Assurance, and/or work supporting and maintaining a network or cloud environment,

Bachelor's degree in Cybersecurity, Information Security, Computer Science, Information Assurance, or a related field,

Or any equivalent combination of experience and education.

Preferred Experience:

Certification in field of expertise, i.e., Certified Information Systems Security Professional (CISSP), Certified Cloud Security Professional (CCSP) Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), or Certified Internal Auditor

Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities

The contractor will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor's legal duty to furnish information. 41 CFR 60-1.35(c)

  • Harrisburg, Pennsylvania, United States PSECU Full time

    PSECU, a forward-thinking financial organization with assets exceeding $8 billion, is looking for an Information Security GRC Analyst I or II. The Information Security GRC Analyst I plays a vital role in assisting with the evaluation and analysis of information security measures to ensure the confidentiality, integrity, and availability of PSECU's data. This...


  • Harrisburg, Pennsylvania, United States PSECU Full time

    PSECU, a forward-thinking financial institution with over $8 billion in assets, is in search of an Information Security GRC Analyst I or II. The Information Security GRC Analyst I plays a crucial role in supporting the evaluation and analysis of information security measures to ensure the confidentiality, integrity, and availability of PSECU's data. This...


  • Harrisburg, Pennsylvania, United States Della Infotech Full time

    Job SummaryWe are seeking a highly skilled Senior IT Governance, Risk and Compliance Analyst to join our team at Della Infotech. As a key member of our organization, you will play a critical role in supporting the delivery of a successful governance, risk, and compliance (GRC) program.Key ResponsibilitiesDesign, implement, and monitor a comprehensive IT...


  • Harrisburg, Pennsylvania, United States ObjectWin Technology Full time

    Job Title: Senior IT Governance, Risk and Compliance Analyst Location: Remote Duration: 6 Months Position Overview: As a Senior IT Governance, Risk and Compliance Analyst at ObjectWin Technology, you will play a pivotal role in advancing our governance, risk, and compliance (GRC) initiatives. Your primary focus will be to develop, implement, and oversee a...

  • Senior Underwriter

    7 days ago


    Harrisburg, Pennsylvania, United States Allied Public Risk Full time

    About the RoleWe are seeking a highly skilled Senior Underwriter to join our team at Allied Public Risk. As a key member of our underwriting team, you will be responsible for overseeing the production, underwriting, and profitability of our book of business.Key ResponsibilitiesWork with the Lead Underwriter to develop and implement strategies to meet or...


  • Harrisburg, Pennsylvania, United States Delphi-US Full time

    Job Title: Information Security Analyst (Contract)Location: RemoteJob ResponsibilitiesExhibits sound judgment and adept problem-solving abilities. Adapts swiftly to evolving situations. Demonstrates technical proficiency and experience with Windows and Unix/Linux operating systems, enterprise-grade firewalls, network security, network traffic examination,...


  • Harrisburg, Pennsylvania, United States Unisys Full time

    Position Overview:As a pivotal member of our organization, you will oversee the identification, monitoring, and management of enterprise-level risks. Your role will encompass conducting risk evaluations and assessing the efficacy of mitigation strategies.Key Responsibilities:Assess, select, and implement security solutions and tools to fortify our...

  • Security Officers

    4 weeks ago


    Harrisburg, United States KRE Security Full time $15 - $18

    Job DescriptionJob DescriptionBenefits:Competitive salaryFree uniformsOpportunity for advancementKRE SECURITY IS GROWING!!!Due to Growth KRE is holding OPEN INTERVIEWS.3405 N 6th St | Harrisburg, PA 17110 When you come into the lobby go to 2nd flr stairs. You will go thru another lobby, turn left and Rachel with be there in her officeApplication must be...


  • Harrisburg, Pennsylvania, United States Information Network Associates Full time

    Job OverviewInformation Network Associates, Inc. (INA) is actively seeking dedicated security professionals to fill the role of Unarmed Security Officers.Key Responsibilities:Provide security and resource protection services for designated projects, ensuring compliance with all relevant local, state, and federal regulations, as well as INA's policies and...


  • Harrisburg, United States Information Network Associates Full time $23

    Job DescriptionJob DescriptionInformation Network Associates, Inc. (INA) Location: Harrisburg, PA Position Type: Full-time Information Network Associates, Inc. (INA) is seeking a professional and dedicated Manager to join our Security Services division. You will play a vital part in ensuring the safety and security of our clients personnel and property. This...


  • Harrisburg, Pennsylvania, United States Information Network Associates Full time

    Job OverviewInformation Network Associates, Inc. (INA) is actively seeking dedicated security professionals to fulfill the role of Unarmed Security Officers.Key Responsibilities:Deliver security and resource protection services for designated projects, adhering to all applicable local, state, and federal regulations, as well as INA policies and site-specific...


  • Harrisburg, Pennsylvania, United States Information Network Associates Full time

    Job OverviewInformation Network Associates, Inc. (INA) is actively seeking dedicated security personnel to fulfill the role of Unarmed Security Officers.Key Responsibilities:Deliver security and asset protection services for designated projects, adhering to all applicable local, state, and federal regulations, as well as INA's internal policies and...


  • Harrisburg, Pennsylvania, United States Information Network Associates, Inc. Full time

    Job Summary:Information Network Associates, Inc. is seeking a highly skilled Security Officer to join our organization in the Harrisburg area. As a key member of our team, you will be responsible for providing security and resource protection services for assigned projects.Key Responsibilities:Enforce standards of conduct and adherence to applicable laws and...

  • Security Officer

    2 days ago


    Harrisburg, Pennsylvania, United States U.S. Security Care Full time

    Job Summary:U.S. Security Care is seeking a highly skilled and detail-oriented Security Officer - Unarmed to join our team. As a Security Officer - Unarmed, you will be responsible for ensuring the safety and protection of client assets in accordance with all local, state, and federal laws.Key Responsibilities:Perform security operating procedures and...

  • Security Officer

    1 month ago


    Harrisburg, United States Information Network Associates Full time

    Job DescriptionJob DescriptionInformation Network Associates, Inc. (INA) is currently seeking security professionals to join our organization as Unarmed Security Officers in the Harrisburg area.Responsibilities:Perform security and resource protection services for an assigned project in accordance with all local, state and federal laws, INA policies and...

  • Security Officer

    1 week ago


    Harrisburg, Pennsylvania, United States U.S. Security Care Full time

    Job SummaryU.S. Security Care is seeking a highly skilled Security Officer to join our team in Harrisburg, PA. As a Security Officer, you will be responsible for ensuring the safety and protection of client assets in accordance with all local, state, and federal laws.Key ResponsibilitiesPerform security operating procedures and site-specific tasks in...

  • Security Officer

    1 week ago


    Harrisburg, Pennsylvania, United States U.S. Security Care Full time

    Job SummaryU.S. Security Care is seeking a highly skilled and detail-oriented Security Officer to join our team in Harrisburg, PA. As a Security Officer, you will be responsible for ensuring the safety and protection of our client assets in accordance with all local, state, and federal laws.Key ResponsibilitiesPerform security operating procedures and...

  • Security Officer

    1 week ago


    Harrisburg, Pennsylvania, United States U.S. Security Care Full time

    **Job Summary**U.S. Security Care is seeking a highly motivated and detail-oriented Security Officer to join our team in Harrisburg, PA. As a Security Officer, you will be responsible for ensuring the safety and protection of our client assets in accordance with all local, state, and federal laws.**Key Responsibilities**Perform security operating procedures...

  • Security Officer

    1 week ago


    Harrisburg, Pennsylvania, United States U.S. Security Care Full time

    **Job Summary**U.S. Security Care is seeking a highly skilled and reliable Security Officer to join our team in Harrisburg, PA. As a Security Officer, you will be responsible for ensuring the safety and protection of our client assets in accordance with all local, state, and federal laws.**Key Responsibilities**Perform security operating procedures and...

  • Security Officer

    1 week ago


    Harrisburg, Pennsylvania, United States U.S. Security Care Full time

    **Job Summary**U.S. Security Care is seeking a highly motivated and detail-oriented Security Officer to join our team in Harrisburg, PA. As a Security Officer, you will be responsible for ensuring the safety and protection of our clients' assets in accordance with all local, state, and federal laws.**Key Responsibilities**Perform security operating...