1

Cybersecurity Program Manager Jobs in Lancaster, PA

This individual will work under the direction of the Global Manager - Cyber Security Threat Intelligence & Protection to drive the external and cloud exposure management program, conduct external ...

Ability to manage multiple priorities and technology initiatives simultaneously. * Excellent verbal ... Maintain current knowledge of infrastructure technologies and cybersecurity trends through ...

... cyber security, and external vendors to identify, prioritize, and deliver AI initiatives. • ... programs. Preferred : • Experience in strategy/management consulting and/or multi-industry ...

... manages employee clearances, and contributes to the development and improvement of HR programs ... Maintains compliance with data privacy, cybersecurity, and information governance practices related ...

... manages employee clearances, and contributes to the development and improvement of HR programs ... Maintains compliance with data privacy, cybersecurity, and information governance practices related ...

Director, Finance Systems

Lititz, PA · On-site

$104K - $136K/yr

GTS leads architecture, integrations, cybersecurity, environments, deployment, and technical ... Finance Partnership for PSA, CPQ & CRM Integration * Represent Finance in the PSA program and ...

Director, Finance Systems

Lititz, PA · On-site

$104K - $136K/yr

GTS leads architecture, integrations, cybersecurity, environments, deployment, and technical ... Finance Partnership for PSA, CPQ & CRM Integration * Represent Finance in the PSA program and ...

Director, Finance Systems

Lititz, PA · On-site

$180 - $240/hr

GTS leads architecture, integrations, cybersecurity, environments, deployment, and technical ... Finance Partnership for PSA, CPQ & CRM Integration * Represent Finance in the PSA program and ...

Showing results 21-40

Cybersecurity Program Manager information

See Lancaster, PA salary details

$53K

$144.8K

$162.3K

How much do cybersecurity program manager jobs pay per year?

As of Aug 13, 2026, the average yearly pay for cybersecurity program manager in Lancaster, PA is $144,818.00, according to ZipRecruiter salary data. Most workers in this role earn between $125,400.00 and $152,600.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a cybersecurity program manager?

To thrive as a Cybersecurity Program Manager, you need a solid background in information security, project management, and risk assessment, often supported by a bachelor’s degree in a related field and certifications like CISSP or PMP. Familiarity with security tools such as SIEM platforms, vulnerability assessment software, and frameworks like NIST or ISO 27001 is essential. Excellent leadership, cross-team communication, and problem-solving skills set top performers apart in this role. These competencies ensure that security initiatives are well-executed, risks are minimized, and organizational objectives are consistently met.

What does a cybersecurity program manager do?

A typical day for a Cybersecurity Program Manager involves overseeing multiple security projects, coordinating with IT and leadership teams, and ensuring that security policies are effectively implemented across the organization. You may spend time conducting risk assessments, tracking project milestones, reviewing compliance reports, and addressing any urgent security threats or incidents. Regular collaboration with technical staff, vendors, and business stakeholders is also a key part of the role. This position balances hands-on problem-solving with high-level strategic planning to protect the company's digital assets and data.

What is a cybersecurity program manager?

A Cybersecurity Program Manager oversees an organization's cybersecurity initiatives, ensuring that security policies, frameworks, and projects align with business objectives. They coordinate teams, manage risks, and implement security controls to protect systems and data from cyber threats. Their role involves working with stakeholders, ensuring regulatory compliance, and leading security awareness efforts. They also track key performance metrics and continuously improve security strategies to address evolving threats.

What are popular job titles related to Cybersecurity Program Manager jobs in Lancaster, PA? For Cybersecurity Program Manager jobs in Lancaster, PA, the most frequently searched job titles are:
What job categories do people searching Cybersecurity Program Manager jobs in Lancaster, PA look for? The top searched job categories for Cybersecurity Program Manager jobs in Lancaster, PA are:
What cities near Lancaster, PA are hiring for Cybersecurity Program Manager jobs? Cities near Lancaster, PA with the most Cybersecurity Program Manager job openings:
Infographic showing various Cybersecurity Program Manager job openings in Lancaster, PA as of August 2026, with employment types broken down into 1% As Needed, 77% Full Time, 17% Part Time, 1% Temporary, and 4% Contract. Highlights an 96% Physical, 1% Hybrid, and 3% Remote job distribution, with an average salary of $144,818 per year, or $69.6 per hour.

Global IT Security Engineer

UGI

Denver, PA

Full-time

Re-posted 14 hours ago


Job description

Requisition Number: 29740 

At UGI Utilities, Inc. we believe in providing a superior range of energy products and services to our customers in a safe, affordable manner. As our energy needs evolve, UGI will be there providing safe and reliable service that brings warmth and comfort to our 750,000 customers in 45 counties in Pennsylvania and 1 county in Maryland.

We strive to reflect the communities we serve by attracting and retaining top talent, while maintaining a diverse workforce that embraces our culture of safety, service, and integrity. As an employee of UGI Utilities, you can expect a competitive total compensation plan and comprehensive benefits. Employees work in a collaborative environment, have upward mobility opportunities, and the ability to enjoy a true work life balance.

To learn more about UGI's workplace culture, sustainability efforts, and commitment to inclusivity, we invite you to visit our UGI Corporate sustainability page. 

Apply to UGI Utilities today to share in our mission and support countless neighbors, friends, and families in providing best-in-class products and services!

Job Summary

The Global Cyber Security Engineer will lead the identification, assessment, and remediation of external attack surface and cloud security risks across the organization. This individual will work under the direction of the Global Manager - Cyber Security Threat Intelligence & Protection to drive the external and cloud exposure management program, conduct external penetration testing activities, manage attack surface management (ASM) tooling, and ensure cloud environments maintain a strong security posture. The role also provides secondary support for network security, OT/ICS security, and identity and authentication functions in collaboration with other team members.

Key Characteristics:

  • Strong understanding of security and infrastructure architectures and technologies.
  • Experience in developing, implementing, advancing, and supporting security tools and procedures.
  • Demonstrated ability to troubleshoot with limited information.
Duties and Responsibilities
  • Own and drive the external exposure management program: manage attack surface management (ASM) tooling, continuously identify and prioritize externally exposed assets and vulnerabilities, develop remediation strategies, and track remediation through to closure with relevant IT and business stakeholders.
  • Plan and coordinate external penetration testing with tooling and 3rd party engagements, including scoping, vendor management, results analysis, and remediation follow-up. Develop and maintain internal red team/pen test capabilities and tooling to assess the organization's external attack surface on an ongoing basis.
  • Assess and improve cloud security posture across various cloud environments. Identify misconfigurations, excessive exposure, and policy violations; partner with cloud and infrastructure teams to drive remediation.
  • Contribute to cloud security architecture standards and guardrails.
  • Interpret various federal, state, and industry frameworks for security, including but not limited to PCI DSS, SOX, ISO/IEC 27001, OWASP Top Ten, CIS Critical Security Controls, NIST, and advises management of any changes. Participate in security audits and assessments.
  • Manage and optimize vulnerability management tooling (e.g., InsightVM); analyze scan results, develop and maintain reporting and dashboards, and coordinate with IT teams on prioritization and remediation tracking. Interpret relevant security frameworks (PCI DSS, NIST, CIS Controls) and advise on compliance implications.
  • Provide secondary support for network security and OT/ICS security functions, including firewall rule review, network segmentation assessments, and OT-specific security architecture considerations. Serve as backup for identity and authentication platforms (e.g., RSA) as needed.
  • Contribute to security governance activities including policy documentation, security audits, and compliance assessments. Support ongoing risk assessment processes and communicate findings to both technical and non-technical stakeholders.
  • Develop and maintain comprehensive documentation related to security policies, procedures, and configurations.
  • Collaborate effectively with other IT teams, business units, and vendors. Communicate security risks and recommendations to both technical and non-technical audiences.
  • Stay up to date on the latest security threats, vulnerabilities, and technologies. Research and evaluate new security solutions to improve our security posture.
  • Mentor junior security team members and provide technical guidance. 
Knowledge, Skills and Abilities
  • Advanced analytical and problem-solving skills.
  • Strong interpersonal skills.
  • Strong working knowledge of networking, routing, protocols, ports and services.
  • Experience with attack surface management (ASM) platforms, vulnerability management tools (e.g., InsightVM/Nexpose), external pen testing tools and frameworks (e.g., Metasploit, Burp Suite, NMAP, Wireshark), and cloud security posture management (CSPM) tools.
  • Hands-on experience with penetration testing and/or red team concepts and methodologies (e.g., PTES, MITRE ATT&CK). Familiarity with automated pentesting platforms is a big plus.
  • Working knowledge of Linux and Microsoft Windows operating systems, Active Directory, and server / endpoint skills and experience.
  • Demonstrated experience in conducting security assessments.
  • Familiarity with OT/ICS security concepts and environments, including network segmentation, industrial protocols, asset visibility, and OT-specific threat considerations (e.g., Purdue model, IEC 62443).
  • Understanding of identity and authentication platforms and their security implications, including MFA, token-based authentication, and privileged access management (e.g., RSA, PAM solutions).
  • Strong working knowledge of various cloud computing environments, including cloud-native security services, IAM, and common cloud misconfigurations and exposure patterns.
  • Experience with scripting languages (e.g., PowerShell, Python, Bash) is a plus. Familiarity with SDLC security testing concepts and application security (OWASP, SAST/DAST) is a plus.
  • Excellent oral and written communication skills.
  • Ability to follow established processes and guidelines for Change Management, Release Management, Problem and Incident management.
  • Collaborator with strong organizational skills, a positive attitude and customer service orientation.
  • Innovative thinker who can see the big picture while remaining attentive to the details.
  • Experience with MS productivity tools (Word, Excel, PowerPoint, Visio).
Education and Experience
  • Bachelor's degree in Computer Science, Information Security, or a related field, preferred.
  • A minimum four years of experience in Information Security. Previous general IT systems and networking background strongly preferred.
  • Relevant security certifications (e.g., CISSP, CISM, CEH, CompTIA Security+) are highly desirable.

Working Conditions:

  • Normal office environment
  • May require travel
  • May require on-call responsibilities
  • Must be in driving distance to the Pennsylvania offices (Valley Forge, Denver and Wyomissing)
  • Must have a conducive work from home environment to be productive 

 UGI Utilities, Inc is an Equal Opportunity Employer. The Company does not discriminate on the basis of race, color, sex, national origin, disability, age, gender identity, sexual orientation, veteran status, or any other legally protected class in its practices.

Successful applicants shall be required to pass a pre-employment drug screen as a condition of employment, and if hired, shall be subject to substance abuse testing in accordance with UGI policies.

As a federal contractor that engages in safety-sensitive work, UGI cannot permit employees in certain positions to use medical marijuana, even if prescribed by an authorized physician. Similarly, applicants for such positions who are actively using medical marijuana may be denied hire on that basis.


UGI logo

About UGI

Sourced by ZipRecruiter

UGI Corporation, headquartered in King of Prussia, PA, US, is a diversified utility service company engaged in the distribution and marketing of energy products and services on an international scale. Founded in 1882, the corporation operates through its various subsidiaries in the domestic and international markets. Its repertoire of products and services includes natural gas, liquid fuels, and electricity. The company has fundamentally positioned itself as a leader in the energy industry with a commitment to safety, reliability, and exceptional service. UGI's mission revolves around leading the way in delivering reliable, safe, and efficient energy solutions for customers.

Industry

Utilities

Company size

10,000+ Employees

Headquarters location

King of Prussia, PA, US

Year founded

1882

Social media