Senior Cybersecurity GRC Analyst

Eliassen Group

King of Prussia (PA)

On-site

USD 80,000 - 105,000

Full time

40 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Eliassen Group is seeking a Senior Cybersecurity GRC Analyst to support governance, regulatory compliance, and risk management initiatives within critical infrastructure environments. The role emphasizes OT/SCADA/ICS experience and collaboration with IT, Legal, HR and Enterprise Risk Management to drive risk reduction.

The position is on-site four days a week in the Denver/Lancaster, PA area with a competitive salary and comprehensive benefits. W2 eligibility required.

Qualifications

  • 4+ years of experience in GRC, risk management or compliance roles.
  • Strong understanding of GRC tools and platforms such as RSA Archer, ServiceNow GRC, or Fusion.
  • Familiarity with regulatory frameworks and OT/SCADA/ICS environments.

Responsibilities

  • Track compliance to cybersecurity regulatory requirements such as TSA and PUC.
  • Assist with maintaining processes and procedure documentation that supports regulatory compliance.
  • Support the review of policies and standards in collaboration with stakeholders.
  • Collaborate to establish and track metrics for cybersecurity regulatory governance programs.
  • Support development and maintenance of cybersecurity governance frameworks for OT/SCADA, aligning with standards including NERC CIP, IEC 62443, and NIST SP 800-82.
  • Collaborate with stakeholders to monitor regulatory changes and industry developments.
  • Track activities including tabletop exercises, architecture design reviews, TSA Cybersecurity Action Plan, and biennial cybersecurity audits.
  • Track gaps from internal and external assessments to completion.
  • Assist with tracking risk assessments and remediation for OT/SCADA systems.
  • Create awareness of compliance to company policies, standards, and regulatory requirements through monitoring and reporting.
  • Collaborate with IT stakeholders to monitor cybersecurity exceptions and other IT operational activities that present gaps.
  • Partner with IT, Legal, HR, and Enterprise Risk Management to align risk and compliance efforts.
  • Ensure stakeholders have operational metrics to monitor their compliance.
  • Deliver regular risk and compliance metrics for IT senior leadership in partnership with the Cybersecurity GRC team.

Skills

GRC
Risk management
Regulatory compliance
Stakeholder collaboration

Tools

RSA Archer
ServiceNow GRC
Fusion

Job description

Description

On-site in either King of Prussia, PA or Denver, PA

Our client is seeking a Senior Cybersecurity Governance, Risk & Compliance (GRC) Analyst to support cybersecurity governance, regulatory compliance, and risk management initiatives within a critical infrastructure environment. This role is responsible for helping ensure compliance with cybersecurity regulatory requirements, monitoring risk remediation activities, supporting governance programs, and collaborating across business and technology teams to strengthen cybersecurity maturity. The ideal candidate will have a background in GRC, cybersecurity compliance, and risk management, with hands-on experience supporting Operational Technology (OT), SCADA, Industrial Control Systems (ICS), and critical infrastructure environments. This individual will partner with Information Technology, Legal, Enterprise Risk Management, Human Resources, and business stakeholders to drive compliance, governance, and cybersecurity risk reduction initiatives. Candidates must be able to work on-site four days a week in the Denver/Lancaster, PA area and must demonstrate real-world experience supporting, assessing, governing, or auditing OT/SCADA/ICS environments.

This is a full-time, permanent opportunity, offering a competitive salary and comprehensive benefits package. Qualified applicants must be willing and able to work on a w2 basis.

Salary: $80,000 - $105,000/ yr. w2

Responsibilities
  • Track compliance to cybersecurity regulatory requirements such as TSA and PUC.
  • Assist with maintaining processes and procedure documentation that supports regulatory compliance.
  • Support the review of policies and standards in collaboration with stakeholders.
  • Collaborate to establish and track metrics for cybersecurity regulatory governance programs.
  • Support development and maintenance of cybersecurity governance frameworks for OT and SCADA, aligning with standards including NERC CIP, IEC 62443, and NIST SP 800-82.
  • Collaborate with stakeholders to monitor regulatory changes and industry developments.
  • Track activities including tabletop exercises, architecture design reviews, TSA Cybersecurity Action Plan, and biennial cybersecurity audits.
  • Track gaps from internal and external assessments to completion.
  • Assist with tracking risk assessments and remediation for OT/SCADA systems, including IC? Wait no.
  • Create awareness of compliance to company policies, standards, and regulatory requirements through monitoring and reporting.
  • Collaborate with IT stakeholders to monitor cybersecurity exceptions and other IT operational activities that present gaps.
  • Partner with IT, Legal, HR, and Enterprise Risk Management to align risk and compliance efforts.
  • Ensure stakeholders have operational metrics to monitor their compliance.
  • Deliver regular risk and compliance metrics for IT senior leadership in partnership with the Cybersecurity GRC team.
Experience Requirements
  • 4+ years of experience in GRC, risk management, or compliance roles.
  • Strong understanding of GRC tools and platforms such as RSA Archer, ServiceNow GRC, or Fusion.
  • Familiarity with frameworks
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior GRC Analyst: OT/SCADA Compliance & Risk (On-site)
Senior GRC Analyst: OT/SCADA Compliance & Risk (On-site)

Eliassen Group • King of Prussia (PA)

On-site
USD 80,000 - 105,000
GRC Analyst
GRC Analyst

The Emery Company, LLC • Houston (TX)

On-site
USD 85,000 - 110,000
Information Security Sr Anlyst
Information Security Sr Anlyst

TALENT Software Services • Cary (NC)

On-site
USD 100,000 - 130,000
Senior GRC Analyst
Senior GRC Analyst

Averity • New York (NY)

On-site
USD 90,000 - 140,000
Governance, Risk and Compliance Analyst Senior
Governance, Risk and Compliance Analyst Senior

Cone Health • Greensboro (NC)

On-site
USD 90,000 - 130,000
GOVERNANCE, RISK, AND COMPLIANCE ANALYST
GOVERNANCE, RISK, AND COMPLIANCE ANALYST

Access Data Consulting Corporation • Phoenix (AZ)

Hybrid
USD 80,000 - 100,000
Senior Cybersecurity Risk & Governance Analyst
Senior Cybersecurity Risk & Governance Analyst

Mortgage-Trade-Holding-Company,-LL • Oxford (MS)

On-site
USD 110,000 - 150,000
Sr. GRC Analyst
Sr. GRC Analyst

TriCom Technical Services • Overland Park (KS)

On-site
USD 100,000 - 140,000
Low-cost employee benefits
Paid time off
Paid Holidays
+1
Sr. Security Engineer/Analyst (GRC)
Sr. Security Engineer/Analyst (GRC)

Insight Global • United States

Hybrid
USD 120,000 - 160,000
Senior Cybersecurity Risk & Governance Analyst
Senior Cybersecurity Risk & Governance Analyst

mTrade, LLC. • Oxford (MS)

On-site
USD 110,000 - 160,000