Risk Compliance Analyst Jobs in Pennsylvania
Risk Compliance Analyst jobs in Pennsylvania are open across Pittsburgh, Philadelphia, and King of Prussia and other Pennsylvania metros, with employers like Highmark Health, Asplundh Tree Expert, and Independence Blue Cross hiring at every experience level. Find a role that fits below and apply directly.
Find Risk Compliance Analyst JobsOverview
Showing 5 of 48+ Risk Compliance Analyst jobs











Job Description
The Security Risk & Compliance Analyst supports the organizations global information security program by assisting in the identification, assessment, and management of information security risks and compliance demands across Victaulic’s entire organization. This position plays an integral role in ensuring the company meets its obligations under domestic and international regulatory frameworks, including but not limited to, NIST CSF, ISO27001, CMMC and the EU’s NIS2 Directive. The analyst will work closely with internal stakeholders, external auditors, and third-party vendors to support a culture of security awareness and continuous compliance improvement.
The ideal candidate for this role will have knowledge of, if not actual experience, in the processes of obtaining and maintaining compliance with security frameworks as well as an understanding of industry standard Information Technology auditing.
Responsibilities
Risk Assessment & Management
- Assist in conducting information security risk assessments across business units, systems, and processes in accordance with established methodologies.
- Document risk findings, assign risk ratings, and track remediation activities through the risk register.
- Support the development and maintenance of risk treatment plans in coordination with system owners and IT teams.
- Participate in annual and ad hoc enterprise risk reviews, contributing analysis and supporting materials.
Compliance & Framework Management
- Support compliance activities related to NIST Cybersecurity Framework (CSF), ISO/IEC 27001, CMMC (Cybersecurity Maturity Model Certification), and the EU NIS2 Directive.
- Conduct gap analyses against applicable frameworks and assist in developing remediation roadmaps.
- Maintain compliance documentation, including policies, procedures, control evidence, and assessment reports.
- Monitor regulatory changes and emerging framework updates; summarize implications for the security program.
Third-Party & Audit Management
- Coordinate and support third-party security audits and assessments, including scheduling, evidence collection, and stakeholder communication.
- Assist in managing vendor risk assessments for new and existing third-party vendors and suppliers.
- Track audit findings and corrective action plans, ensuring timely remediation and closure.
- Serve as a liaison between internal teams and external auditors during certification audits.
Policy, Documentation & Awareness
- Assist in drafting, reviewing, and updating information security policies, standards, and procedures.
- Support the delivery of security awareness training and phishing simulation programs.
- Maintain organized records of all compliance and risk management activities in the Governance, Risk & Compliance platform.
Collaboration & Reporting
- Collaborate with IT, Legal, Operations, and other business functions to integrate security requirements into business processes.
- Prepare regular status reports and metrics dashboards for management review.
- Contribute to the continuous improvement of the information security program by identifying process gaps and recommending enhancements.
Qualifications
Technical Experience
- Foundational understanding of information security principles, including confidentiality, integrity, and availability (CIA).
- Basic understanding of risk assessment methodologies and risk management concepts.
- Familiarity with third-party risk management and audit processes.
- Strong analytical and problem-solving skills with attention to detail.
- Capacity to understand legacy and progressive technology and security controls along with respective risk.
- Working knowledge of technologies such as cloud computing, DevOps, and application security is required.
General Requirements
- Analytical Thinking – applies structured reasoning to evaluate risk and compliance data objectively
- Integrity & Accountability – Handles sensitive security information with discretion and professionalism.
- Communication – Clearly translates security requirements and findings for varied audiences across the organization
- Continuous Learning – Proactively keeps pace with evolving security frameworks, threats, and regulatory requirements
- Collaboration – Builds effective working relationships across IT, operations, and business functions globally
- Detail Orientation – Produces thorough, accurate documentation and maintains meticulous records of compliance activities
Education & Certifications
- 0 – 2 years’ experience in information security, IT audit, risk management, or a related field.
- Bachelor’s degree, cybersecurity certification, or equivalent experience in an information security or related field.
- A minimum of an entry-level certification such as the CompTIA Security+ certification
- Additional Risk & Compliance certification(s), such as CISA, a plus
Work Environment & Physical Requirements
This position is primarily office-based with hybrid flexibility. The role may require occasional visits to manufacturing facilities domestically and internationally. Ability to work across global time zones may be required for coordination with European and Asian teams.
Victaulic is an Equal Employment Opportunity (EOE/M/F/Vets/Disabled) employer and welcomes all qualified applicants. Applicants will receive fair and impartial consideration without regard to race, gender, color, religion, national origin, age, disability, veteran status, sexual orientation, genetic data, or other legally protected status. (Background checks may be required as part of our pre-employment process).
See All 48 Risk Compliance Analyst Jobs in Pennsylvania
Find roles in Pennsylvania that match your experience and apply in just a few clicks.
Find Risk Compliance Analyst JobsRisk Compliance Analyst Jobs by City in Pennsylvania
Where Pennsylvania roles are concentrated, by current openings.
Risk Compliance Analyst Job Market in Pennsylvania
A snapshot from current Pennsylvania openings, updated as new roles post.
Who's Hiring
- Highmark Health4

- Asplundh Tree Expert3

- Independence Blue Cross3

- AmeriHealth Caritas2

- Saint-Gobain2

Top Industries Hiring
- Consulting & Professional Services8
- Insurance7
- Banking & Financial Services4
- Chemicals & Materials4
- Technology & Software4
What Pennsylvania Employers Look For
The qualifications that appear most often in risk compliance analyst jobs across Pennsylvania.
- Bachelor's degree in finance, accounting, business, or a related field
- Experience with risk frameworks such as COSO, SOX, or ISO 31000
- Proficiency in compliance management or GRC software platforms
- Knowledge of applicable regulations including BSA, AML, HIPAA, or FINRA rules
- Strong written communication skills for policy documentation and regulatory reporting
- Professional certification such as CRCM, CFE, CAMS, or CRISC preferred
Risk Compliance Analyst Jobs in Pennsylvania: Frequently Asked Questions
How many risk compliance analyst jobs are there in Pennsylvania?
There are 48+ risk compliance analyst openings in Pennsylvania on Migrate Mate as of June 2026, with the most roles in Pittsburgh, Philadelphia, and King of Prussia. New positions post regularly as employers across Pennsylvania hire.
How much do risk compliance analysts make in Pennsylvania?
Risk compliance analysts in Pennsylvania earn a median of about $85,580 a year, based on May 2025 Bureau of Labor Statistics wage data, ranging from around $49,910 for the lowest 10% to over $130,990 for the top 10%. Pay rises with experience, specialty, and employer.
Which Pennsylvania cities have the most risk compliance analyst jobs?
Pittsburgh, Philadelphia, and King of Prussia have the most risk compliance analyst openings in Pennsylvania right now, with additional roles spread across smaller metros statewide.
Which companies hire risk compliance analysts in Pennsylvania?
Employers hiring risk compliance analysts in Pennsylvania include Highmark Health, Asplundh Tree Expert, and Independence Blue Cross, based on current listings on Migrate Mate as of June 2026.
Are there remote risk compliance analyst jobs in Pennsylvania?
Yes. About 35% of risk compliance analyst openings tied to Pennsylvania are remote or hybrid as of June 2026. The rest are on-site roles based in Pennsylvania metros.
How do I apply for risk compliance analyst jobs in Pennsylvania?
You can apply to risk compliance analyst jobs in Pennsylvania directly on Migrate Mate. Search the listings above, find roles that match your experience and preferred Pennsylvania location, then apply to each one that fits.
See All 48 Risk Compliance Analyst Jobs in Pennsylvania
Find roles in Pennsylvania that match your experience and apply in just a few clicks.
Find Risk Compliance Analyst Jobs