Information Security Governance Risk

2 weeks ago


Harrisburg, United States PSECU Full time
Members Achieve More isn't just a tagline for us, it's part of everything we do We're looking for passionate individuals to join our team to help us maintain that focus every day. Want to work somewhere that's remained strong for 90 years, that encourages you to learn, grow, and pursue your dreams? If yes, then read on...

The Information Security GRC Analyst II is responsible for analyzing and assessing the information security controls in an effort to protect the confidentiality, integrity, and availability of PSECU's information. The individual is responsible for ensuring network and cloud security access and for implementing and documenting measures to safeguard the network against accidental or authorized modifications, destruction, or disclosure.
Schedule: Monday - Friday, 9:00am -5:00pm.
This position will be a hybrid model both in person and remote with minimum of onsite expectation 40% or as needed.
In this position, you will
  • Monitor Compliance: Assist in protecting the integrity, availability and confidentiality of network resources and data. Assist in the development and enforcement of security policies, standards, and procedures. Participate in network, system, and application vulnerability assessments, generate report findings, and oversee remediation activities. Participate in the monitoring and periodic testing of IT compliance controls to ensure ongoing adherence to PSECU policies, standards, and industry frameworks for both cloud and on-prem solutions.
  • Control and Risk Assessments: Perform or coordinate control testing, assessments, and monitoring to ensure that Information Technology processes and controls are effective, functioning as designed, and managed to the appropriate level of risk. Coordinate IT self-assessment compliance reviews based on regulatory, industry standards, and internal policy requirements. Evaluate any related external frameworks or standards ((e.g., ITIL, COBIT, National Institute of Standards and Technology [NIST], ISO 27002, Center for Internet Security Critical Security Controls (SANS 20) etc.) or internal policies/standards (e.g., code of conduct, record retention, and acceptable use, etc.) to determine the relevant IT compliance requirements and controls. Conduct risk assessments to identify gaps in the control structure.
  • Vendor Due Diligence: Participate in the vendor management and due diligence process. Consult with business units when negotiating and contracting third-party service provider arrangements to ensure associated information security risks are considered. Perform necessary due diligence activities to determine third-party adherence with IT compliance requirements prior to establishing a business relationship.
  • Incident Response: Participate in or conduct incident response investigations by using and understanding PSECU's Incident Management procedures. Participate in the Incident Management Program in order to plan and respond effectively to a compromise of PSECU's IT infrastructure or to an unauthorized access and/or disclosure of sensitive company, member, or employee data. Review SIEM, operational logs, and event console activity to identify and determine the cause of security related events.
  • Awareness Program: Assist in developing Information Security and Privacy Awareness content employees, members. Assist in socializing PSECU Policies and Standards to PSECU employees.
  • Internal Audit Coordination: Collect evidence for internal and external audits. Research and respond to internal and external audit finding
  • Other duties as assigned.


Qualifications: Required & Prefer
BS, BS: Computer and Information Science

Reasonable accommodation may be made to enable a qualified individual with a disability or disabilities to perform the essential duties and responsibilities of the job.

Physical Demands and Sensory Abilities:

Repetitive movement of hands and fingers (e.g. typing, writing).

Lifting and carrying containers weighing as much as 20-30 pounds (e.g. to/from building and vehicle to a storage area).

Sitting for long periods of time (e.g. at a desk, in meetings).

Ability to reach above, at, and below the waist.

Ability to reach above, at, and below shoulder level.

Occasional bending, kneeling, stooping and/or squatting.

Visual acuity.

Auditory acuity.

#LIHybrid

LI-Hybrid

  • Harrisburg, Pennsylvania, United States PSECU Full time

    We are seeking a highly skilled Information Technology Audit Manager to join our team at PSECU. The successful candidate will be responsible for managing and supervising the information technology assurance and consulting engagements of our Internal Audit function in accordance with internal audit and information security standards, relevant laws,...


  • Harrisburg, Pennsylvania, United States Information Network Associates Full time

    Job SummaryInformation Network Associates, Inc. (INA) is seeking a seasoned professional to lead our Security Services division as a Manager. This role is critical in ensuring the safety and security of our clients' personnel and property.The ideal candidate will have a strong background in security management, with experience in supervising security staff,...


  • Harrisburg, Pennsylvania, United States J&J Family of Companies Full time

    About the Role:The J&J Family of Companies is seeking a highly skilled Cybersecurity Manager, Business Information Security to drive Cyber Trust and Security by Design through consulting, engagement, and assurance.Key Responsibilities:Drive the adoption of security industry best-practices, J&J security standards, and capabilities with a focus on Quality,...


  • Harrisburg, United States Innova Solutions Full time

    Innova Solutions has a client that is immediately hiring for a Information Security EngineerTitle:Information Security Engineer Position type: Full Time - ContractDuration: 12 Months

  • Security Professional

    1 month ago


    Harrisburg, Pennsylvania, United States Information Network Associates Full time

    Job DescriptionInformation Network Associates, Inc. (INA) is seeking security professionals to provide protection services for assigned projects in the Harrisburg area.Key Responsibilities:Enforce standards of conduct and adherence to laws, regulations, and INA policies within assigned projects.Conduct patrols of grounds, buildings, and property as...

  • Security Specialist

    4 weeks ago


    Harrisburg, United States PSECU Full time

    Members Achieve More isn't just a tagline for us, it's part of everything we do! We're looking for passionate individuals to join our team to help us maintain that focus every day. Want to work somewhere that's remained strong for 90 years, that encourages you to learn, grow, and pursue your dreams? If yes, then read on... Successfully work within a...


  • Harrisburg, Pennsylvania, United States Information Network Associates, Inc. Full time

    Job SummaryInformation Network Associates, Inc. (INA) is seeking a highly skilled and experienced Manager to lead our Security Services division. As a key member of our team, you will be responsible for ensuring the safety and security of our clients' personnel and property. This is a safety-sensitive position that requires a professional and dedicated...


  • Harrisburg, Pennsylvania, United States Information Network Associates, Inc. Full time

    Security Services ManagerAbout the RoleInformation Network Associates, Inc. (INA) is seeking a professional and dedicated Security Services Manager to join our Security Services division. The successful candidate will play a vital part in ensuring the safety and security of our clients' personnel and property.Key ResponsibilitiesSupervisor: Manage assigned...


  • Harrisburg, United States Allied Universal Security Full time

    Allied Universal, North America's leading security and facility services company, provides rewarding careers that give you a sense of purpose. While working in a dynamic, diverse and inclusive workplace, you will be part of a team that fuels a culture that will reflect in our communities and customers we serve. We offer medical, dental and vision coverage,...


  • Harrisburg, Pennsylvania, United States Ahold Delhaize Full time

    Job Title: HR Data Visualization and Governance AnalystJoin Ahold Delhaize USA, a leading grocery retail group, as an HR Data Visualization and Governance Analyst. This role is crucial to the HR Reporting and Analytics team, responsible for creating sophisticated business intelligence solutions for analyzing and presenting HR, financial, and business data to...


  • Harrisburg, Pennsylvania, United States Information Network Associates, Inc. Full time

    As a key member of our Security Services division, you will play a vital role in ensuring the safety and security of our clients' personnel and property. This position is considered safety-sensitive and is essential for providing top-tier security services at INA and/or its client sites.Key Responsibilities:Manage assigned security staff in the...

  • Security Specialist

    4 weeks ago


    Harrisburg, United States PSECU Full time

    Successfully work within a comprehensive enterprise-wide physical security program consistent with industry standards and government agency recommendations. Properly execute emergency response activities and perform various processes to protect both Security Specialist, Security, Specialist, Monitoring, Banking, Healthcare, Staff


  • Harrisburg, Pennsylvania, United States Securitas Electronic Security Inc Full time

    At Securitas Electronic Security Inc, we are seeking a highly skilled Senior Project Manager to oversee the installations of fully designed, engineered, and integrated enterprise security systems and equipment. This role is for our Data Center team, where you will manage the job site while acting as the customer interface, coordinating all installation...


  • Harrisburg, Pennsylvania, United States Liberty Mutual Full time

    Job SummaryWe are seeking a highly skilled Risk Control Consultant to join our team at Liberty Mutual. As a Risk Control Consultant, you will be responsible for providing expert technical support to our clients, identifying new service opportunities, and designing and executing programs to improve results and increase the quality of risk control services.Key...


  • Harrisburg, United States Duquesne Light Company Full time

    Manager, Government RelationsWe are seeking a dynamic and experienced Manager of Government Affairs to join our team at Duquesne Light Company. This role is vital in shaping our company’s strategy and engagement with government entities at the local, state, and federal levels. The ideal candidate will have a strong understanding of the energy sector,...


  • harrisburg, United States Duquesne Light Company Full time

    Manager, Government RelationsWe are seeking a dynamic and experienced Manager of Government Affairs to join our team at Duquesne Light Company. This role is vital in shaping our company’s strategy and engagement with government entities at the local, state, and federal levels. The ideal candidate will have a strong understanding of the energy sector,...


  • Harrisburg, Pennsylvania, United States Cherokee Nation Businesses Full time

    Cybersecurity SCRM Expert Job DescriptionThis position requires the ability to obtain a Public Trust. We are seeking a highly knowledgeable and experienced Cybersecurity Subject Matter Expert (SME) and Supply Chain Risk Management (SCRM) Analyst to provide expert-level systems analysis, design, integration, and implementation advice on complex cybersecurity...


  • Harrisburg, Pennsylvania, United States KPMG Full time

    Job SummaryKPMG is seeking a highly skilled Director, Senior Cloud Security Architect to join our Global Information Solution Group organization. The ideal candidate will have a strong background in cloud security, with a minimum of ten years of experience in security architecture, threat modeling, identity management, and authentication.Key Responsibilities...


  • Harrisburg, Pennsylvania, United States The Pennsylvania State University Full time

    Job Opportunity:The School of Business Administration at Penn State Harrisburg is seeking part-time lecturers to teach undergraduate courses within cybersecurity, networking, and communications, and other security and privacy topics for the Fall 2024 Semester and beyond.Responsibilities:Prepare course lessonsEvaluate studentsHold regular office hoursBecome...


  • Harrisburg, Pennsylvania, United States Zurich NA Full time

    Risk Engineering Internship OverviewZurich North America is currently seeking a highly motivated and detail-oriented Risk Engineering Intern to join our team for the summer of 2025. As a Risk Engineering Intern, you will have the opportunity to gain valuable experience in risk management and business continuity, working alongside our experienced...