Find Jobs
Find Jobs Near You – Available Work in Your Location
Skip to job details
UU
UGI Utilities
Global Cybersecurity Senior GRC Analyst
Career Insights for Compliance Officer / Analyst
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on Pennsylvania data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
A Compliance Officer or Analyst monitors internal compliance with company policies and also company compliance with local, state and federal laws. Reviews company documents, including contracts and marketing materials; communicates with employees and develops training and internal policy materials.
$78,692 / year median in Pennsylvania
-3% projected decline
Job Description
Global Cybersecurity Senior GRC Analyst at UGI Utilities Global Cybersecurity Senior GRC Analyst at UGI Utilities in Denver, Pennsylvania Posted in 13 days ago.
Job Description:
UGI Utilities Position title:Global Cybersecurity Senior GRC Analyst Location:
Denver, PA, US, 17517Global Cybersecurity Senior GRC Analyst Location:
Denver, PA, US, 17517Workplace Environment:
Onsite Company:
UGI Utilities, Inc Requisition Number:
29670 At UGI Utilities, Inc. we believe in providing a superior range of energy products and services to our customers in a safe, affordable manner. As our energy needs evolve, UGI will be there providing safe and reliable service that brings warmth and comfort to our 750,000 customers in 45 counties in Pennsylvania and 1 county in Maryland. We strive to reflect the communities we serve by attracting and retaining top talent, while maintaining a diverse workforce that embraces our culture of safety, service, and integrity. As an employee of UGI Utilities, you can expect a competitive total compensation plan and comprehensive benefits. Employees work in a collaborative environment, have upward mobility opportunities, and the ability to enjoy a true work life balance. To learn more about UGI's workplace culture, sustainability efforts, and commitment to inclusivity, we invite you to visit our . Apply to UGI Utilities today to share in our mission and support countless neighbors, friends, and families in providing best-in-class products and services!Job Summary:
The Global Cybersecurity Senior GRC Analyst plays a critical role in ensuring that the organization operates within its regulatory, legal, and compliance obligations while managing risk effectively. The Global GRC Senior Analyst will report directly to the Global Cybersecurity Governance, Risk and Compliance Manager. This role involves collaborating with cross-functional teams to design, implement, and maintain governance, risk, and compliance processes. The ideal candidate is detail-oriented, analytical, and experienced in regulatory compliance, risk management frameworks, and governance best practices and must develop and apply continuous improvement strategies in all aspects of the job function.Key Responsibilities:
Governance:
- Develop and maintain corporate policies, procedures, and frameworks to align with industry best practices (e.g., NIST CSF, SOX, PCI, etc.). Assist with the development and maintenance of GRC process and procedure documentation.
- Ensure IT functions are in compliance with best practices and company policies and standards through assessments (i.
Risk Management:
- Assist with conducting gap assessments to identify threats, vulnerabilities, and potential impacts on the organization.
- Develop and maintain the risk register, ensuring risks are documented, prioritized, and mitigated.
- Perform third-party/vendor risk assessments to evaluate potential risks associated with external partnerships and perform on-going monitoring to assess risk of engagement.
Compliance:
- Ensure compliance with regulatory requirements (e.g., GDPR, HIPAA, SOX, PCI-DSS) and industry standards through monitoring and reporting metrics, security exceptions and using other methods to monitor compliance
- Drive compliance by maintaining the compliance framework to ensure policies and standards align to regulatory requirements, laws and best practices.
- Collaborate with stakeholders to monitor regulatory and industry developments to ensure compliance with changes.
Collaboration and Reporting:
- Partner with IT, Legal, HR, and other departments to ensure alignment on risk and compliance efforts.
- Create and deliver regular risk and compliance metrics for senior leadership and boards.
- Serve as a subject matter expert (SME) for GRC-related queries and initiatives.
Qualifications:
Education and Experience:
- Bachelor's degree in Information Security, Risk Management, Computer Science, or related field, preferred.
- At least 4 years of experience in GRC, risk management, or compliance roles.
Skills and Competencies:
- Strong understanding of GRC tools and platforms (e.g., RSA Archer, ServiceNow GRC).
- Familiarity with risk management frameworks (e.g., COBIT, FAIR) and compliance standards.
- Exceptional analytical, problem-solving, and organizational skills.
- Strong written and verbal communication skills, with the ability to interact effectively with stakeholders at all levels.
- Certifications such as CRISC, CISM, CISA or CISSP highly preferred.
Key Attributes:
- Attention to detail and ability to manage multiple priorities.
- Proactive mindset with a focus on continuous improvement.
- Collaborative team player who can influence without authority.