Track key risk indicators and security metrics Risk Management: Assist with conducting gap ... Exceptional analytical, problem-solving, and organizational skills. Strong written and verbal ...
Track key risk indicators and security metrics Risk Management: Assist with conducting gap ... Exceptional analytical, problem-solving, and organizational skills. Strong written and verbal ...
Global Risk and Security (GR&S) at Vanguard enables business strategy, protects client and Vanguard ... Use analytics and model insights to identify trends, refine strategies, and improve detection ...
Global Risk and Security (GR&S) at Vanguard enables business strategy, protects client and Vanguard ... Use analytics and model insights to identify trends, refine strategies, and improve detection ...
Global Risk and Security (GR&S) at Vanguard enables business strategy, protects client and Vanguard ... Use analytics and model insights to identify trends, refine strategies, and improve detection ...
Global Risk and Security (GR&S) at Vanguard enables business strategy, protects client and Vanguard ... Use analytics and model insights to identify trends, refine strategies, and improve detection ...
GRC Security Analyst II
Bryn Mawr, PA · On-site
The Security Analyst will frequently engage with both technical teams and business process owners ... Analyze and prioritize risk, vulnerability, and compliance findings to define remediation ...
GRC Security Analyst II
Bryn Mawr, PA · On-site
The Security Analyst will frequently engage with both technical teams and business process owners ... Analyze and prioritize risk, vulnerability, and compliance findings to define remediation ...
GRC Security Analyst II
Bryn Mawr, PA · On-site
The Security Analyst will frequently engage with both technical teams and business process owners ... Analyze and prioritize risk, vulnerability, and compliance findings to define remediation ...
GRC Security Analyst II
Bryn Mawr, PA · On-site
The Security Analyst will frequently engage with both technical teams and business process owners ... Analyze and prioritize risk, vulnerability, and compliance findings to define remediation ...
GRC Security Analyst II
Bryn Mawr, PA · On-site
The GRC Security Analyst II will focus on ensuring the security and integrity of the organization ... Responsibilities : • Manage execution of both enterprise-wide and focused risk, threat, and ...
GRC Security Analyst II
Bryn Mawr, PA · On-site
The GRC Security Analyst II will focus on ensuring the security and integrity of the organization ... Responsibilities : • Manage execution of both enterprise-wide and focused risk, threat, and ...
Sr Information Security Analyst (US) - CSIRT
Mount Laurel, NJ · On-site
$79K - $127K/yr
Proficient to advanced knowledge of organization, technology controls / security/ risk issues ... Ability to perform analysis and reporting on information from multiple data sources using data ...
Sr Information Security Analyst (US) - CSIRT
Mount Laurel, NJ · On-site
$79K - $127K/yr
Proficient to advanced knowledge of organization, technology controls / security/ risk issues ... Ability to perform analysis and reporting on information from multiple data sources using data ...
Prepare security risk analysis reports and develop response procedures to support informed decision-making across the organization. Required Qualifications * Bachelor's degree in Computer Science ...
Prepare security risk analysis reports and develop response procedures to support informed decision-making across the organization. Required Qualifications * Bachelor's degree in Computer Science ...
Prepare security risk analysis reports and develop response procedures to support informed decision-making across the organization. Required Qualifications * Bachelor's degree in Computer Science ...
Prepare security risk analysis reports and develop response procedures to support informed decision-making across the organization. Required Qualifications * Bachelor's degree in Computer Science ...
Prepare security risk analysis reports and develop response procedures to support informed decision-making across the organization. Required Qualifications * Bachelor's degree in Computer Science ...
Prepare security risk analysis reports and develop response procedures to support informed decision-making across the organization. Required Qualifications * Bachelor's degree in Computer Science ...
Sr Lead Security Engineer - Workforce
Wilmington, DE · On-site
$111K - $152K/yr
Uses enterprise-authorized AI capabilities within the work environment to accelerate security risk analysis and documentation (e.g., synthesizing threat assessments), validating outputs and ensuring ...
Sr Lead Security Engineer - Workforce
Wilmington, DE · On-site
$111K - $152K/yr
Uses enterprise-authorized AI capabilities within the work environment to accelerate security risk analysis and documentation (e.g., synthesizing threat assessments), validating outputs and ensuring ...
Sr Lead Security Engineer - Workforce
$111K - $152K/yr
Uses enterprise-authorized AI capabilities within the work environment to accelerate security risk analysis and documentation (e.g., synthesizing threat assessments), validating outputs and ensuring ...
Sr Lead Security Engineer - Workforce
$111K - $152K/yr
Uses enterprise-authorized AI capabilities within the work environment to accelerate security risk analysis and documentation (e.g., synthesizing threat assessments), validating outputs and ensuring ...
Sr Lead Security Engineer - Workforce
Wilmington, DE · On-site
$111K - $152K/yr
Uses enterprise-authorized AI capabilities within the work environment to accelerate security risk analysis and documentation (e.g., synthesizing threat assessments), validating outputs and ensuring ...
Sr Lead Security Engineer - Workforce
Wilmington, DE · On-site
$111K - $152K/yr
Uses enterprise-authorized AI capabilities within the work environment to accelerate security risk analysis and documentation (e.g., synthesizing threat assessments), validating outputs and ensuring ...
Sr Vulnerability Management Analyst
Malvern, PA · On-site
$94K - $123K/yr
This role sits at the intersection of security risk, automation, and emerging AIdriven capabilities ... The role requires strong analytical & communication skills, combined with technical and security ...
Sr Vulnerability Management Analyst
Malvern, PA · On-site
$94K - $123K/yr
This role sits at the intersection of security risk, automation, and emerging AIdriven capabilities ... The role requires strong analytical & communication skills, combined with technical and security ...
Security Governance Specialist/NIST
Wilmington, DE · On-site
$80 - $100/hr
The focus is turning security activity into clear metrics, trends, and business risk insight. The person will map the organization's practices against the NIST Cybersecurity Framework, identify where ...
New
Security Governance Specialist/NIST
Wilmington, DE · On-site
$80 - $100/hr
The focus is turning security activity into clear metrics, trends, and business risk insight. The person will map the organization's practices against the NIST Cybersecurity Framework, identify where ...
New
Cryptographic Agility Surveillance Analyst
Berwyn, PA · On-site
$150K/yr
Working closely with encryption engineers, security architects, risk partners, and technology teams ... Analytical thinking and the ability to evaluate technical information from multiple sources.
Cryptographic Agility Surveillance Analyst
Berwyn, PA · On-site
$150K/yr
Working closely with encryption engineers, security architects, risk partners, and technology teams ... Analytical thinking and the ability to evaluate technical information from multiple sources.
Principal IT Security Architect - REMOTE from any EST or CST US-based location
Philadelphia, PA · Remote
Analyzing and understanding the impact of regulation changes on security architecture, standards ... Effectively communicating risk and mitigation activities to all levels of the organization during ...
New
Principal IT Security Architect - REMOTE from any EST or CST US-based location
Philadelphia, PA · Remote
Analyzing and understanding the impact of regulation changes on security architecture, standards ... Effectively communicating risk and mitigation activities to all levels of the organization during ...
New
Prepare Standard Operating Procedures that meet the security requirements for the business' clients Perform vulnerability/risk assessment analysis to support certification and accreditation. Provides ...
Prepare Standard Operating Procedures that meet the security requirements for the business' clients Perform vulnerability/risk assessment analysis to support certification and accreditation. Provides ...
Security GRC Analyst
Exton, PA · On-site
Job Overview The Security GRC Analyst role is to ensure the secure operation of the Credit Union ... Assess technology risk across IT and the organization, collaborate to develop remediation plans ...
Security GRC Analyst
Exton, PA · On-site
Job Overview The Security GRC Analyst role is to ensure the secure operation of the Credit Union ... Assess technology risk across IT and the organization, collaborate to develop remediation plans ...
Job Overview The Security GRC Analyst role is to ensure the secure operation of the Credit Union ... Assess technology risk across IT and the organization, collaborate to develop remediation plans ...
Job Overview The Security GRC Analyst role is to ensure the secure operation of the Credit Union ... Assess technology risk across IT and the organization, collaborate to develop remediation plans ...
Security Risk Analyst information
See Philadelphia, PA salary details
$9.88 - $15.06
2% of jobs
$15.06 - $20.24
0% of jobs
$20.24 - $25.42
1% of jobs
$25.42 - $30.60
1% of jobs
$30.60 - $35.78
1% of jobs
$39.66 is the 25th percentile. Wages below this are outliers.
$35.78 - $40.96
26% of jobs
$40.96 - $46.14
11% of jobs
The median wage is $47.99 / hr.
$46.14 - $51.32
22% of jobs
$51.32 - $56.50
9% of jobs
$56.90 is the 75th percentile. Wages above this are outliers.
$56.50 - $61.68
17% of jobs
$61.68 - $66.85
9% of jobs
$9
$48
$66
How much do security risk analyst jobs pay per hour?
What does a security risk analyst do?
What are the key skills and qualifications needed to thrive as a security risk analyst?
What are some common challenges security risk analysts face when collaborating with other departments?
What is the difference between Security Risk Analyst vs Security Analyst?
| Aspect | Security Risk Analyst | Security Analyst |
|---|---|---|
| Certifications | CompTIA Security+, CISSP, CISA | CompTIA Security+, CISSP, CEH |
| Work Environment | Risk assessment, vulnerability analysis, policy development | Monitoring security systems, incident response, security audits |
| Employer & Industry Usage | Financial, healthcare, government sectors focusing on risk mitigation | IT departments across various industries focusing on security operations |
While both roles focus on cybersecurity, Security Risk Analysts primarily assess and manage potential security threats and vulnerabilities, emphasizing risk mitigation strategies. Security Analysts tend to monitor security systems, respond to incidents, and ensure ongoing security measures. Both roles often require similar certifications and work environments but differ in their core responsibilities within cybersecurity teams.
What is a security risk analyst?

Job description
Requisition Number:Â 29563Â
When you work for AmeriGas, you become a part of something BIG! Founded in 1959, AmeriGas is the nation's premier propane company, serving over 1.5 million residential, commercial, industrial and motor fuel propane customers. Together, over 6,500 dedicated professionals will deliver over 1 billion gallons of propane from 1,800+ distribution points across the United States.
Job Summary:
The Global Cybersecurity Senior GRC Analyst plays a critical role in ensuring that the organization operates within its regulatory, legal, and compliance obligations while managing risk effectively. The Global GRC Senior Analyst will report directly to the Global Cybersecurity Governance, Risk and Compliance Manager. This role involves collaborating with cross-functional teams to design, implement, and maintain governance, risk, and compliance processes. The ideal candidate is detail-oriented, analytical, and experienced in regulatory compliance, risk management frameworks, and governance best practices and must develop and apply continuous improvement strategies in all aspects of the job function.
Key Responsibilities:
Governance:
           Develop and maintain corporate policies, procedures, and frameworks to align with industry best practices (e.g., NIST CSF, SOX, PCI, etc.).
- Assist with the development and maintenance of GRC process and procedure documentation.
           Ensure IT functions are in compliance with best practices and company policies and standards through assessments (i.e. peer reviews, audits, etc.)
- Track key risk indicators and security metrics
Risk Management:
           Assist with conducting gap assessments to identify threats, vulnerabilities, and potential impacts on the organization.
           Develop and maintain the risk register, ensuring risks are documented, prioritized, and mitigated.
           Perform third-party/vendor risk assessments to evaluate potential risks associated with external partnerships and perform on-going monitoring to assess risk of engagement.
- Maintain centralize documentation, continuous monitoring for vendors, formal escalation protocols for non-compliance to ensure alignment with enterprise risk tolerance.
- Document risk acceptance decisions and compensating controls
- Develop and maintain templates for consistent risk documentation
- Assist in evaluating cybersecurity risk on incoming projects.
- Assist and support team in performing cybersecurity due diligence on merger/acquisition targets.
Compliance:
           Ensure compliance with regulatory requirements (e.g., GDPR, HIPAA, SOX, PCI-DSS) and industry standards through monitoring and reporting metrics, security exceptions and using other methods to monitor compliance
          Drive compliance by maintaining the compliance framework  to ensure policies and standards align to regulatory requirements, laws and best practices.
Stakeholder Engagement
- Collaborate with business units to understand critical processes
- Educate stakeholders on risk management concepts and frameworks
- Partner with technical teams to validate remediation plans
- Present risk findings to appropriate governance committees
- Coordinate and collaborate with stakeholders to establish and track metrics for governance programs.
               Collaborate with stakeholders to monitor regulatory and industry developments to ensure Â
                 compliance with changes.
- Coordinate and collaborate with stakeholders to track outcomes and metrics for all third-party breaches.
- Advise stakeholders on compliance requirements and incorporate new metrics into governance life cycle process, including new tools as they are onboarded.
- Coordinate the review of Policies and Standards through collaborating with stakeholders.
Collaboration and Reporting:
           Partner with IT, Legal, HR, and other departments to ensure alignment on risk and compliance efforts.
           Create and deliver regular risk and compliance metrics for senior leadership and boards.
           Serve as a subject matter expert (SME) for GRC-related queries and initiatives.
Qualifications:
Education and Experience:
           Bachelor's degree in Information Security, Risk Management, Computer Science, or related field, required.
           4+ years of experience in GRC, risk management, or compliance roles.
Skills and Competencies:
           Strong understanding of GRC tools and platforms (e.g., RSA Archer, ServiceNow GRC).
           Familiarity with risk management frameworks (e.g., COBIT, FAIR) and compliance standards.
           Exceptional analytical, problem-solving, and organizational skills.
           Strong written and verbal communication skills, with the ability to interact effectively with stakeholders at all levels.
           Certifications such as CRISC, CISM, CISA or CISSP highly preferred.
Key Attributes:
                          Attention to detail and ability to manage multiple priorities.
                          Proactive mindset with a focus on continuous improvement.
                          Collaborative team player who can influence without authority.
AmeriGas Propane, Inc. is an Equal Opportunity Employer. The Company does not discriminate on the basis of race, color, sex, national origin, disability, age, gender identity, sexual orientation, veteran status, or any other legally protected class in its practices.
AmeriGas is a Drug Free Workplace. Candidates must be willing to submit to a pre-employment drug screen and a criminal background check. Successful applicants shall be required to pass a pre-employment drug screen as a condition of employment, and if hired, shall be subject to substance abuse testing in accordance with AmeriGas policies. As a federal contractor that engages in safety-sensitive work, AmeriGas cannot permit employees in certain positions to use medical marijuana, even if prescribed by an authorized physician. Â Similarly, applicants for such positions who are actively using medical marijuana may be denied hire on that basis.
About UGI
Sourced by ZipRecruiter
UGI Corporation, headquartered in King of Prussia, PA, US, is a diversified utility service company engaged in the distribution and marketing of energy products and services on an international scale. Founded in 1882, the corporation operates through its various subsidiaries in the domestic and international markets. Its repertoire of products and services includes natural gas, liquid fuels, and electricity. The company has fundamentally positioned itself as a leader in the energy industry with a commitment to safety, reliability, and exceptional service. UGI's mission revolves around leading the way in delivering reliable, safe, and efficient energy solutions for customers.
Industry
Utilities
Company size
10,000+ Employees
Headquarters location
King of Prussia, PA, US
Year founded
1882