2

Remote Security Risk Assessment Jobs in Pennsylvania

Director of InfoSec & Data Privacy

Exton, PA · On-site +1

$175K - $190K/yr

  • Retirement

  • PTO

Manage customer security assessments, vendor reviews, third-party risk assessments, security ... Experience supporting hybrid or remote environments and cloud-native application development ...

Data Security Consultant

Indiana, PA · On-site +1

$130K - $150K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Risk and compliance oversight - Assess data security risks, review control effectiveness, and ... remote (if non-local) or hybrid work arrangement where you'll spend 2 days per week on-site in ...

Data Security Consultant

Indiana, PA · On-site +1

$130K - $150K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Risk and compliance oversight - Assess data security risks, review control effectiveness, and ... remote (if non-local) or hybrid work arrangement where you'll spend 2 days per week on-site in ...

... of security and user trust. This role can be on-site, hybrid, or remote in the US. Responsibilities * Utilize extensive technical risk expertise to help Autodesk maintain and grow its Trust Risk ...

Cloud Architect

Allentown, PA · Remote

$64.25 - $81.75/hr

  • Medical

  • Retirement

Remote EST Time Zone Cloud Security Architect or Cloud Platform Developer with a hands-on coding ... You will provide expert guidance, conduct security assessments, and provide detailed design and ...

Chief Risk Officer

Philadelphia, PA · On-site +1

$185K - $250K/yr

Remote; AL; CA; IL; FL; MA; NC; NJ; NY; PA; TX; UT; VA Pay Salary: $185,000-$250,000, bonus ... Risk Identification & Assessment: Analyzing potential threats - including cybersecurity ...

Application Security Engineer (REMOTE)

Reading, PA · Remote

$117K - $146K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Support threat modeling, risk assessments, and security architecture reviews for applications. Ensure that all security practices meet regulatory and compliance requirements. Develop and deliver ...

Application Security Engineer (REMOTE)

Reading, PA · Remote

$117K - $146K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Support threat modeling, risk assessments, and security architecture reviews for applications. Ensure that all security practices meet regulatory and compliance requirements. Develop and deliver ...

Application Security Engineer (REMOTE)

PA · On-site +1

$117K - $146K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

... risk assessments, and security architecture reviews for applications. • Ensure that all security practices meet regulatory and compliance requirements. • Develop and deliver cybersecurity ...

Showing results 21-40

Remote Security Risk Assessment information

What is a remote security risk assessment?

A Remote Security Risk Assessment is a process where security professionals evaluate an organization's security risks, vulnerabilities, and threats without being physically present on-site. This assessment is typically conducted through virtual meetings, digital questionnaires, and remote access to systems and documentation. The goal is to identify potential security gaps and recommend improvements to protect sensitive data and systems from cyber threats. Remote assessments have become increasingly popular due to their flexibility, cost-effectiveness, and ability to serve organizations regardless of location.

What are the key skills and qualifications needed to thrive as a remote security risk assessor?

To thrive as a Remote Security Risk Assessor, you need expertise in cybersecurity principles, risk analysis, and a relevant degree or certifications such as CISSP, CISM, or CRISC. Familiarity with tools like vulnerability scanners, security information and event management (SIEM) systems, and risk assessment frameworks (e.g., NIST, ISO 27001) is essential. Strong analytical thinking, communication skills, and attention to detail help in accurately identifying and communicating risks to stakeholders. These skills and qualities are vital to ensure organizations can proactively mitigate threats and maintain robust security postures in remote or distributed environments.

What are some common challenges faced by professionals in remote security risk assessment roles?

Professionals in remote security risk assessment often encounter challenges such as limited on-site visibility, reliance on digital communication, and the need to assess complex IT environments from afar. Effective collaboration with on-site staff and stakeholders is essential to gather accurate information and implement recommendations. Additionally, staying up-to-date with evolving cybersecurity threats and maintaining clear documentation are vital for success in this role.

What is the difference between Remote Security Risk Assessment vs Cybersecurity Analyst?

AspectRemote Security Risk AssessmentCybersecurity Analyst
CredentialsCertifications like CISSP, CISA, CISMCertifications like CompTIA Security+, CISSP, CEH
Work EnvironmentRemote or on-site, focusing on risk evaluationRemote or on-site, focusing on security monitoring and incident response
Industry UsageUsed in risk management, compliance, and audit contextsUsed in security operations, threat analysis, and incident handling

Remote Security Risk Assessments and Cybersecurity Analysts both require security certifications and often work in similar environments. However, risk assessors focus on evaluating vulnerabilities and compliance, while analysts handle ongoing security monitoring and incident response. Understanding these differences helps organizations assign the right roles for their security needs.

What are the most commonly searched types of Security Risk Assessment jobs in Pennsylvania?

The most popular types of Security Risk Assessment jobs in Pennsylvania are:

What are popular job titles related to Remote Security Risk Assessment jobs in Pennsylvania?

For Remote Security Risk Assessment jobs in Pennsylvania, the most frequently searched job titles are:

What job categories do people searching Remote Security Risk Assessment jobs in Pennsylvania look for?

The top searched job categories for Remote Security Risk Assessment jobs in Pennsylvania are:

What cities in Pennsylvania are hiring for Remote Security Risk Assessment jobs?

Cities in Pennsylvania with the most Remote Security Risk Assessment job openings:

Infographic showing various Remote Security Risk Assessment job openings in Pennsylvania as of August 2026, with employment types broken down into 84% Full Time, 13% Part Time, and 3% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution.

Information System Security Engineer (ISSE) II (on-site)

Ishpi Information Technologies, Inc

Philadelphia, PA • On-site, Remote

Full-time

Re-posted 18 days ago


Job description

Overview
Ishpi Information Technologies, Inc. (DBA ISHPI) is passionate about providing our customers with technical solutions that satisfy their business needs. Through collaborative interactions with customers, team members, subject matter experts (SMEs), technical leaders, and partners we design practical solutions that solve real problems for major government and business organizations. As a member of our group, you will work with a team focused on delivering innovative business solutions using emerging technologies through proven successful methods.
Responsibilities
The ISSE II will provide on-site support to the Naval Surface Warfare Command in Philadelphia, PA. Shall provide cybersecurity support for the Code 104 Information Technology Operations Division in the area of Information System Security Engineer (ISSE) support. These duties include but are not limited to:
  • Assessment & Authorization (A&A)
  • Cybersecurity Compliance and Audit Readiness
  • Information Assurance Vulnerability Management (IAVM)
  • Vulnerability Scanning and Remediation
  • Application and Implementation of Security Technical Implementation Guides (STIGs) and Security Requirements Guide (SRGs)

Shall assist with the developing, maintaining, and tracking Risk Management Framework (RMF) system security plans which include System Categorization Forms, Platform Information Technology (PIT) Determination Checklists, Assess Only (AO) Determination Checklists, Implementation Plans, System Level Continuous Monitoring (SLCM) Strategies, System Level Policies, Hardware Lists, Software List, System Diagrams, Privacy Impact Assessments (PIA), and Plans of Action and Milestones (POA&M).
  • Execute the RMF process in support of obtaining and maintaining Interim Authority to Test (IATT), AO approval, Authorization to Operate (ATO), and Denial of Authorization to Operate (DATO).
  • Identify and tailor IT and CS security control baselines based on RMF guidelines and categorization of the RMF boundary
  • Perform Ports, Protocols, and Services Management (PPSM).
  • Perform IT and CS vulnerability-level risk assessments.
  • Execute security control testing as required by a risk assessment or annual security review (ASR).
  • Mitigate and remediate IT and CS system level vulnerabilities for all assets withing the boundary per STIG requirements
  • Develop and maintain Plans of Actions and Milestones (POA&M) in Enterprise Mission Assurance Support Service (eMASS).
  • Develop and maintain system level IT and CS policies and procedures for respective RMF boundaries and/or guidance provided by the command ISSMs
  • Implement and assess STIG and SRGs.
  • Perform and develop vulnerability assessments with automated tools such as Assured Compliance Assessment Solution (ACAS), Security Content Automation Protocol (SCAP) Compliance Check (SCC) and Evaluate STIG.
  • Deploy security updates to Information System components.
  • Perform routine audits of IT system hardware and software components.
  • Maintain inventory of Information System components.
  • Participate in IT change control and configuration management processes.
  • Upload vulnerability data in Vulnerability Remediation Asset Manager (VRAM).
  • Image or re-image assets that are part of the assigned RMF boundary
  • Install software and troubleshoot software issues as necessary to support compliance of the RMF boundaries' assets.
  • Assist with removal of SSD, HDD or other critical components of assets before destruction and removal from the RMF boundary.
  • Provide cybersecurity patching of assets in times of DoD and DoN TASKORDs, FRAGORDs, or even designated by Command ISSM, ACIO, and/or Code 104 management.
  • Support configuration change documentation and control processes and maintaining DOD STIG Compliance.
  • Support cyber compliance of assets that are part of an enterprise IT network to include Windows server and CISCO networking hardware. This includes assessing vulnerabilities, patching and meeting requirements of the STIG for the hardware.
  • Report compliance issues of network hardware to management as not cause an operational of the network.

Qualifications
Education: Bachelor's degree in Computer science, Information Technology, or an equivalent technical degree from an accredited college or university.
Experience:Three (3) years professional experience capturing and refining information security operational and security requirements, and ensuring those requirements are properly addressed through purposeful architecting, design, development, and configuration; and implementing security controls, configuration changes, software/hardware updates/patches, vulnerability scanning, and securing configurations.
Minimum Certification Requirement includes one of the following:
CCNA-Security
CySA+
GICSP
GSEC or
Security+ CE
Security Clearance: Requires U.S. Citizenship and an active government security clearance.
"Ishpi Information Technologies, Inc. is an Equal Opportunity Employer. All qualified candidates will be considered without regard to legally protected characteristics.
Expression of Interest: By applying to this job, you are expressing interest in this position and could be considered for other career opportunities where similar skills and requirements have been identified as a match. Should this match be identified, you may be contacted for this and future openings.
*cj