The Security Risk & Compliance Analyst supports the organizations global information security program by assisting in the identification, assessment, and management of information security risks and ...
The Security Risk & Compliance Analyst supports the organizations global information security program by assisting in the identification, assessment, and management of information security risks and ...
WHAT WE DO Our Security, Risk and Compliance consultants work with clients at all levels of the organization, from the C-suite to the shop floor, helping them to deliver on their most strategic ...
WHAT WE DO Our Security, Risk and Compliance consultants work with clients at all levels of the organization, from the C-suite to the shop floor, helping them to deliver on their most strategic ...
WHAT WE DO Our Security, Risk and Compliance consultants work with clients at all levels of the organization, from the C-suite to the shop floor, helping them to deliver on their most strategic ...
WHAT WE DO Our Security, Risk and Compliance consultants work with clients at all levels of the organization, from the C-suite to the shop floor, helping them to deliver on their most strategic ...
Security Risk & Engineering - Tech and Cyber Risk & Compliance - Experienced Associate
Philadelphia, PA · On-site
$63K - $140K/yr
Industry/Sector Not Applicable Specialism Cybersecurity & Privacy Management Level Associate & Summary The Opportunity As a Security Risk & Engineering - Tech and Cyber Risk & Compliance ...
Security Risk & Engineering - Tech and Cyber Risk & Compliance - Experienced Associate
Philadelphia, PA · On-site
$63K - $140K/yr
Industry/Sector Not Applicable Specialism Cybersecurity & Privacy Management Level Associate & Summary The Opportunity As a Security Risk & Engineering - Tech and Cyber Risk & Compliance ...
Risk & Compliance Manager
Fleetwood, PA · On-site
$80K - $100K/yr
... Security. Primary Responsibilities: · The position serves as the compliance manager for the Bank ... risk assessments and tabletop exercises.Qualifications:Bachelor 's Degree in a relation field ...
Quick apply
Risk & Compliance Manager
Fleetwood, PA · On-site
$80K - $100K/yr
... Security. Primary Responsibilities: · The position serves as the compliance manager for the Bank ... risk assessments and tabletop exercises.Qualifications:Bachelor 's Degree in a relation field ...
Risk & Compliance Manager
$80K - $100K/yr
... Security. Primary Responsibilities: · The position serves as the compliance manager for the Bank ... risk experience * Excellent analytical and research skills * Strong written and verbal ...
Risk & Compliance Manager
$80K - $100K/yr
... Security. Primary Responsibilities: · The position serves as the compliance manager for the Bank ... risk experience * Excellent analytical and research skills * Strong written and verbal ...
Risk & Compliance Manager
Fleetwood, PA · On-site
$80K - $100K/yr
... Security. Primary Responsibilities: • The position serves as the compliance manager for the Bank ... risk experience * Excellent analytical and research skills * Strong written and verbal ...
Risk & Compliance Manager
Fleetwood, PA · On-site
$80K - $100K/yr
... Security. Primary Responsibilities: • The position serves as the compliance manager for the Bank ... risk experience * Excellent analytical and research skills * Strong written and verbal ...
An excellent career opportunity is currently available for an entry level Risk & Compliance Analyst ... Understanding of fundamental privacy, security, and IT concepts (access controls, data retention ...
An excellent career opportunity is currently available for an entry level Risk & Compliance Analyst ... Understanding of fundamental privacy, security, and IT concepts (access controls, data retention ...
Risk & Compliance Analyst
Pittsburgh, PA · On-site
An excellent career opportunity is currently available for an entry level Risk & Compliance Analyst ... Understanding of fundamental privacy, security, and IT concepts (access controls, data retention ...
Risk & Compliance Analyst
Pittsburgh, PA · On-site
An excellent career opportunity is currently available for an entry level Risk & Compliance Analyst ... Understanding of fundamental privacy, security, and IT concepts (access controls, data retention ...
The Senior Research IT Security Risk & Compliance Analyst will assess, document, and implement various controls for University research. This individual manages the control documentation and advises ...
The Senior Research IT Security Risk & Compliance Analyst will assess, document, and implement various controls for University research. This individual manages the control documentation and advises ...
Security Awareness & Compliance Analyst** to support enterprise cybersecurity Governance, Risk, and Compliance (GRC) initiatives. This role will be responsible for administering and enhancing the ...
Security Awareness & Compliance Analyst** to support enterprise cybersecurity Governance, Risk, and Compliance (GRC) initiatives. This role will be responsible for administering and enhancing the ...
Works with Enterprise Security and Fraud subdivisions and business units as the technical authority ... Conducts security and fraud assessments, risk analyses and assesses contingency plans for to verify ...
Works with Enterprise Security and Fraud subdivisions and business units as the technical authority ... Conducts security and fraud assessments, risk analyses and assesses contingency plans for to verify ...
* Works with Enterprise Security and Fraud subdivisions and business units as the technical authority ... Works with Compliance and Regional Security and Fraud teams to understand global regulatory ...
* Works with Enterprise Security and Fraud subdivisions and business units as the technical authority ... Works with Compliance and Regional Security and Fraud teams to understand global regulatory ...
... Security & Intelligence | Non-Profit | Professional Services | Real Estate And Hospitality ... Seeking Public Sector Risk & Compliance Advisor candidates with relevant Government and Public ...
... Security & Intelligence | Non-Profit | Professional Services | Real Estate And Hospitality ... Seeking Public Sector Risk & Compliance Advisor candidates with relevant Government and Public ...
Head of Security
Conshohocken, PA · On-site
Governance, Risk & Compliance * Own the GRC function: security risk management, the risk register, policy and standards, and control-framework alignment (NIST CSF / CIS Controls). * Run the security ...
Head of Security
Conshohocken, PA · On-site
Governance, Risk & Compliance * Own the GRC function: security risk management, the risk register, policy and standards, and control-framework alignment (NIST CSF / CIS Controls). * Run the security ...
Senior Security Analyst
Exton, PA · On-site
$92K - $121K/yr
Governance, Risk & Compliance (GRC) * Execute and coordinate external security audits and assurance activities, including ISO 27001 certification and surveillance audits, SOC 2 examinations, customer ...
Senior Security Analyst
Exton, PA · On-site
$92K - $121K/yr
Governance, Risk & Compliance (GRC) * Execute and coordinate external security audits and assurance activities, including ISO 27001 certification and surveillance audits, SOC 2 examinations, customer ...
Senior Security Analyst
$92K - $121K/yr
Governance, Risk & Compliance (GRC) * Execute and coordinate external security audits and assurance activities, including ISO 27001 certification and surveillance audits, SOC 2 examinations, customer ...
Senior Security Analyst
$92K - $121K/yr
Governance, Risk & Compliance (GRC) * Execute and coordinate external security audits and assurance activities, including ISO 27001 certification and surveillance audits, SOC 2 examinations, customer ...
Infrastructure Compliance Analyst**** Hybrid in Horsham, PA
Horsham, PA · On-site
$110 - $150/hr
This role bridges the gap between Security, Governance Risk & Compliance (GRC), and Infrastructure by translating security requirements into practical engineering solutions that enable the business ...
Infrastructure Compliance Analyst**** Hybrid in Horsham, PA
Horsham, PA · On-site
$110 - $150/hr
This role bridges the gap between Security, Governance Risk & Compliance (GRC), and Infrastructure by translating security requirements into practical engineering solutions that enable the business ...
Cyber Compliance Manager (Financial Services)
$112K - $151K/yr
... compliance related to the handling, processing and protection of sensitive information. We serve a ... risk management, security testing, enterprise architecture, governance, regulatory privacy ...
Cyber Compliance Manager (Financial Services)
$112K - $151K/yr
... compliance related to the handling, processing and protection of sensitive information. We serve a ... risk management, security testing, enterprise architecture, governance, regulatory privacy ...
Cyber Compliance Manager (Financial Services)
$106K - $143K/yr
... compliance related to the handling, processing and protection of sensitive information. We serve a ... risk management, security testing, enterprise architecture, governance, regulatory privacy ...
Cyber Compliance Manager (Financial Services)
$106K - $143K/yr
... compliance related to the handling, processing and protection of sensitive information. We serve a ... risk management, security testing, enterprise architecture, governance, regulatory privacy ...
Security Risk Compliance information
What is security risk compliance?
What are the key skills and qualifications needed to thrive as a security risk compliance professional?
What are some common challenges faced by security risk compliance professionals when balancing regulatory requirements with business objectives?
What is the difference between Security Risk Compliance vs Security Analyst?
| Aspect | Security Risk Compliance | Security Analyst |
|---|---|---|
| Certifications | ISO 27001 Lead Implementer, CISSP, CISA | CISSP, CompTIA Security+, GIAC Security Certifications |
| Work Environment | Policy development, compliance audits, risk assessments | Monitoring security systems, incident response, vulnerability analysis |
| Employer & Industry Usage | Financial, healthcare, government sectors focusing on regulatory adherence | IT departments across various industries focusing on security operations |
Security Risk Compliance professionals focus on ensuring organizations meet regulatory standards and manage security risks through policies and audits. Security Analysts primarily monitor security systems, analyze threats, and respond to incidents. While both roles require security certifications and work within similar environments, their core responsibilities differ: compliance versus active security monitoring.
What cities in Pennsylvania are hiring for Security Risk Compliance jobs?
Cities in Pennsylvania with the most Security Risk Compliance job openings:
Full-time
Re-posted 14 days ago
Victaulic rating
7.2
Based on 35 frontline employees who took The Breakroom Quiz
352nd of 544 rated manufacturers
Job description
Job Description
The Security Risk & Compliance Analyst supports the organizations global information security program by assisting in the identification, assessment, and management of information security risks and compliance demands across Victaulic's entire organization. This position plays an integral role in ensuring the company meets its obligations under domestic and international regulatory frameworks, including but not limited to, NIST CSF, ISO27001, CMMC and the EU's NIS2 Directive. The analyst will work closely with internal stakeholders, external auditors, and third-party vendors to support a culture of security awareness and continuous compliance improvement.
The ideal candidate for this role will have knowledge of, if not actual experience, in the processes of obtaining and maintaining compliance with security frameworks as well as an understanding of industry standard Information Technology auditing.
Responsibilities
Risk Assessment & Management
Assist in conducting information security risk assessments across business units, systems, and processes in accordance with established methodologies.
Document risk findings, assign risk ratings, and track remediation activities through the risk register.
Support the development and maintenance of risk treatment plans in coordination with system owners and IT teams.
Participate in annual and ad hoc enterprise risk reviews, contributing analysis and supporting materials.
Compliance & Framework Management
Support compliance activities related to NIST Cybersecurity Framework (CSF), ISO/IEC 27001, CMMC (Cybersecurity Maturity Model Certification), and the EU NIS2 Directive.
Conduct gap analyses against applicable frameworks and assist in developing remediation roadmaps.
Maintain compliance documentation, including policies, procedures, control evidence, and assessment reports.
Monitor regulatory changes and emerging framework updates; summarize implications for the security program.
Third-Party & Audit Management
Coordinate and support third-party security audits and assessments, including scheduling, evidence collection, and stakeholder communication.
Assist in managing vendor risk assessments for new and existing third-party vendors and suppliers.
Track audit findings and corrective action plans, ensuring timely remediation and closure.
Serve as a liaison between internal teams and external auditors during certification audits.
Policy, Documentation & Awareness
Assist in drafting, reviewing, and updating information security policies, standards, and procedures.
Support the delivery of security awareness training and phishing simulation programs.
Maintain organized records of all compliance and risk management activities in the Governance, Risk & Compliance platform.
Collaboration & Reporting
Collaborate with IT, Legal, Operations, and other business functions to integrate security requirements into business processes.
Prepare regular status reports and metrics dashboards for management review.
Contribute to the continuous improvement of the information security program by identifying process gaps and recommending enhancements.
Qualifications
Technical Experience
Foundational understanding of information security principles, including confidentiality, integrity, and availability (CIA).
Basic understanding of risk assessment methodologies and risk management concepts.
Familiarity with third-party risk management and audit processes.
Strong analytical and problem-solving skills with attention to detail.
Capacity to understand legacy and progressive technology and security controls along with respective risk.
Working knowledge of technologies such as cloud computing, DevOps, and application security is required.
General Requirements
Analytical Thinking - applies structured reasoning to evaluate risk and compliance data objectively
Integrity & Accountability - Handles sensitive security information with discretion and professionalism.
Communication - Clearly translates security requirements and findings for varied audiences across the organization
Continuous Learning - Proactively keeps pace with evolving security frameworks, threats, and regulatory requirements
Collaboration - Builds effective working relationships across IT, operations, and business functions globablly
Detail Orientation - Produces thorough, accurate documentation and maintains meticulous records of compliance activities
Education & Certifications
0 - 2 years' experience in information security, IT audit, risk management, or a related field.
Bachelor's degree, cybersecurity certification, or equivalent experience in an information security or related field.
A minimum of an entry-level certification such as the CompTIA Security+ certification
Additional Risk & Compliance certification(s), such as CISA, a plus
Work Environment & Physical Requirements
This position is primarily office-based with hybrid flexibility. The role may require occasional visits to manufacturing facilities domestically and internationally. Ability to work across global time zones may be required for coordination with European and Asian teams.
Victaulic is an Equal Employment Opportunity (EOE/M/F/Vets/Disabled) employer and welcomes all qualified applicants. Applicants will receive fair and impartial consideration without regard to race, gender, color, religion, national origin, age, disability, veteran status, sexual orientation, genetic data, or other legally protected status. (Background checks may be required as part of our pre-employment process).
What Victaulic employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About Victaulic
Sourced by ZipRecruiter
Industry
Industrial machinery manufacturing
Company size
1,001 - 5,000 Employees
Headquarters location
Easton, PA, US
Year founded
1919