Global Sr GRC Analyst

AmeriGas

King of Prussia (PA)

On-site

USD 110,000 - 170,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Equal Opportunity Employer
Drug Free Workplace
Pre-employment background check

Job summary

AmeriGas Propane, Inc. is seeking a Global Cybersecurity Senior GRC Analyst to ensure regulatory, legal and compliance obligations are met while effectively managing risk.

You will collaborate with cross-functional teams to design, implement and maintain governance, risk, and compliance processes. The ideal candidate is detail-oriented, analytical, with experience in regulatory compliance, risk management frameworks, and governance best practices, developing continuous improvement strategies

Qualifications

  • Bachelor's degree in Information Security, Risk Management, Computer Science, or related field, required.
  • 6+ years in GRC, risk management, or compliance roles.
  • Experience with governance, risk, and compliance processes and frameworks.

Responsibilities

  • Develop and maintain corporate policies, procedures, and governance frameworks (NIST CSF, SOX, PCI).
  • Maintain risk register, track risk indicators, and assess third-party/vendor risk.
  • Monitor regulatory compliance (GDPR, HIPAA, SOX, PCI-DSS) and report metrics.
  • Collaborate with IT, Legal, HR, and other departments for risk alignment.
  • Produce regular risk and compliance metrics for leadership and boards.

Skills

GRC tooling knowledge
Risk frameworks
Analytical thinking
Communication skills
Certifications (CRISC/CISM/CISA/CISSP)

Education

Bachelor's degree in Information Security/Risk Management/CS or related

Tools

RSA Archer
ServiceNow GRC

Job description

AmeriGas

AmeriGas is a Drug Free Workplace. Candidates must be able to pass a pre-employment drug screen and a criminal background check. AmeriGas is an Equal Opportunity Employer.

Location: King Of Prussia, PA, US, 19406

Workplace Environment: Onsite

Company: AmeriGas Propane, Inc.

Requisition Number: 29564

When you work for AmeriGas, you become a part of something BIG! Founded in 1959, AmeriGas is the nation's premier propane company, serving over 1.5 million residential, commercial, industrial and motor fuel propane customers. Together, over 6,500 dedicated professionals will deliver over 1 billion gallons of propane from 1,800+ distribution points across the United States.

Job Summary

The Global Cybersecurity Senior GRC Analyst plays a critical role in ensuring that the organization operates within its regulatory, legal, and compliance obligations while managing risk effectively. The Global GRC Senior Analyst will report directly to the Global Cybersecurity Governance, Risk and Compliance Manager. This role involves collaborating with cross-functional teams to design, implement, and maintain governance, risk, and compliance processes. The ideal candidate is detail-oriented, analytical, and experienced in regulatory compliance, risk management frameworks, and governance best practices and must develop and apply continuous improvement strategies in all aspects of the job function.

Key Responsibilities
Governance
  • Develop and maintain corporate policies, procedures, and frameworks to align with industry best practices (e.g., NIST CSF, SOX, PCI, etc.).
  • Assist with the development and maintenance of GRC process and procedure documentation.
  • Ensure IT functions are in compliance with best practices and company policies and standards through assessments (i.e. peer reviews, audits, etc.)
  • Track key risk indicators and security metrics
Risk Management
  • Assist with conducting gap assessments to identify threats, vulnerabilities, and potential impacts on the organization.
  • Develop and maintain the risk register, ensuring risks are documented, prioritized, and mitigated.
  • Perform third-party/vendor risk assessments to evaluate potential risks associated with external partnerships and perform on-going monitoring to assess risk of engagement.
  • Maintain centralize documentation, continuous monitoring for vendors, formal escalation protocols for non-compliance to ensure alignment with enterprise risk tolerance.
  • Document risk acceptance decisions and compensating controls
  • Develop and maintain templates for consistent risk documentation
  • Assist in evaluating cybersecurity risk on incoming projects.
  • Assist and support team in performing cybersecurity due diligence on merger/acquisition targets.
Compliance
  • Ensure compliance with regulatory requirements (e.g., GDPR, HIPAA, SOX, PCI-DSS) and industry standards through monitoring and reporting metrics, security exceptions and using other methods to monitor compliance
  • Drive compliance by maintaining the compliance framework to ensure policies and standards align to regulatory requirements, laws and best practices.
Stakeholder Engagement
  • Collaborate with business units to understand critical processes
  • Educate stakeholders on risk management concepts and frameworks
  • Partner with technical teams to validate remediation plans
  • Present risk findings to appropriate governance committees
  • Coordinate and collaborate with stakeholders to establish and track metrics for governance programs.
  • Collaborate with stakeholders to monitor regulatory and industry developments to ensure compliance with changes.
  • Coordinate and collaborate with stakeholders to track outcomes and metrics for all third-party breaches.
  • Advise stakeholders on compliance requirements and incorporate new metrics into governance life cycle process, including new tools as they are onboarded.
  • Coordinate the review of Policies and Standards through collaborating with stakeholders.
Collaboration and Reporting
  • Partner with IT, Legal, HR, and other departments to ensure alignment on risk and compliance efforts.
  • Create and deliver regular risk and compliance metrics for senior leadership and boards.
  • Serve as a subject matter expert (SME) for GRC-related queries and initiatives.
Qualifications
  • Education and Experience:
  • Bachelor's degree in Information Security, Risk Management, Computer Science, or related field, required.
  • 6+ years of experience in GRC, risk management, or compliance roles.
Skills and Competencies
  • Strong understanding of GRC tools and platforms (e.g., RSA Archer, ServiceNow GRC).
  • Familiarity with risk management frameworks (e.g., COBIT, FAIR) and compliance standards.
  • Exceptional analytical, problem-solving, and organizational skills.
  • Strong written and verbal communication skills, with the ability to interact effectively with stakeholders at all levels.
  • Certifications such as CRISC, CISM, CISA or CISSP highly preferred.
Key Attributes
  • Attention to detail and ability to manage multiple priorities.
  • Proactive mindset with a focus on continuous improvement.
  • Collaborative team player who can influence without authority.

AmeriGas Propane, Inc. is an Equal Opportunity Employer. The Company does not discriminate on the basis of race, color, sex, national origin, disability, age, gender identity, sexual orientation, veteran status, or any other legally protected class in its practices.

AmeriGas is a Drug Free Workplace. Candidates must be willing to submit to a pre-employment drug screen and a criminal background check. Successful applicants shall be required to pass a pre-employment drug screen as a condition of employment, and if hired, shall be subject to substance abuse testing in accordance with AmeriGas policies. As a federal contractor that engages in safety-sensitive work, AmeriGas cannot permit employees in certain positions to use medical marijuana, even if prescribed by an authorized physician. Similarly, applicants for such positions who are actively using medical marijuana may be denied hire on that basis.

Equal employment opportunity, including veterans and individuals with disabilities.

PI287262577

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Global Sr GRC Analyst
Global Sr GRC Analyst

UGI Corporation • King of Prussia (PA)

On-site
USD 120,000 - 160,000
Global Sr GRC Analyst
Global Sr GRC Analyst

AmeriGas • Philadelphia

On-site
USD 105,000 - 145,000
Cyber Security Engineer
Cyber Security Engineer

AmeriGas • King of Prussia (PA)

On-site
USD 90,000 - 130,000
Cyber Security Engineer
Cyber Security Engineer

UGI • King of Prussia (PA)

On-site
USD 90,000 - 130,000
Cyber Security Engineer
Cyber Security Engineer

UGI Corporation • King of Prussia (PA)

On-site
USD 90,000 - 130,000
Cyber Security Engineer
Cyber Security Engineer

AmeriGas • Pennsylvania

On-site
USD 90,000 - 130,000
Global Senior GRC Analyst – Risk & Compliance Leader
Global Senior GRC Analyst – Risk & Compliance Leader

AmeriGas • King of Prussia (PA)

On-site
USD 110,000 - 170,000
Equal Opportunity Employer
Drug Free Workplace
Pre-employment background check
Director - Training
Director - Training

AmeriGas • King of Prussia (PA)

Hybrid
USD 110,000 - 160,000
Senior Global GRC & Cyber Risk Analyst
Senior Global GRC & Cyber Risk Analyst

AmeriGas • Philadelphia

On-site
USD 105,000 - 145,000
Global GRC Senior Analyst — Compliance & Risk Strategy
Global GRC Senior Analyst — Compliance & Risk Strategy

UGI Corporation • King of Prussia (PA)

On-site
USD 120,000 - 160,000