Requisition Number: 29563
When you work for AmeriGas, you become a part of something BIG! Founded in 1959, AmeriGas is the nation’s premier propane company, serving over 1.5 million residential, commercial, industrial and motor fuel propane customers. Together, over 6,500 dedicated professionals will deliver over 1 billion gallons of propane from 1,800+ distribution points across the United States.
The Global Cybersecurity Senior GRC Analyst plays a critical role in ensuring that the organization operates within its regulatory, legal, and compliance obligations while managing risk effectively. The Global GRC Senior Analyst will report directly to the Global Cybersecurity Governance, Risk and Compliance Manager. This role involves collaborating with cross-functional teams to design, implement, and maintain governance, risk, and compliance processes. The ideal candidate is detail-oriented, analytical, and experienced in regulatory compliance, risk management frameworks, and governance best practices and must develop and apply continuous improvement strategies in all aspects of the job function.
Key Responsibilities:
Governance:
• Develop and maintain corporate policies, procedures, and frameworks to align with industry best practices (e.g., NIST CSF, SOX, PCI, etc.).
• Ensure IT functions are in compliance with best practices and company policies and standards through assessments (i.e. peer reviews, audits, etc.)
Risk Management:
• Assist with conducting gap assessments to identify threats, vulnerabilities, and potential impacts on the organization.
• Develop and maintain the risk register, ensuring risks are documented, prioritized, and mitigated.
• Perform third-party/vendor risk assessments to evaluate potential risks associated with external partnerships and perform on-going monitoring to assess risk of engagement.
Compliance:
• Ensure compliance with regulatory requirements (e.g., GDPR, HIPAA, SOX, PCI-DSS) and industry standards through monitoring and reporting metrics, security exceptions and using other methods to monitor compliance
•Drive compliance by maintaining the compliance framework to ensure policies and standards align to regulatory requirements, laws and best practices.
Stakeholder Engagement
• Collaborate with stakeholders to monitor regulatory and industry developments to ensure
compliance with changes.
Collaboration and Reporting:
• Partner with IT, Legal, HR, and other departments to ensure alignment on risk and compliance efforts.
• Create and deliver regular risk and compliance metrics for senior leadership and boards.
• Serve as a subject matter expert (SME) for GRC-related queries and initiatives.
Qualifications:
Education and Experience:
• Bachelor’s degree in Information Security, Risk Management, Computer Science, or related field, required.
• 4+ years of experience in GRC, risk management, or compliance roles.
Skills and Competencies:
• Strong understanding of GRC tools and platforms (e.g., RSA Archer, ServiceNow GRC).
• Familiarity with risk management frameworks (e.g., COBIT, FAIR) and compliance standards.
• Exceptional analytical, problem-solving, and organizational skills.
• Strong written and verbal communication skills, with the ability to interact effectively with stakeholders at all levels.
• Certifications such as CRISC, CISM, CISA or CISSP highly preferred.
Key Attributes:
• Attention to detail and ability to manage multiple priorities.
• Proactive mindset with a focus on continuous improvement.
• Collaborative team player who can influence without authority.
Must work onsite 5 days a week.
AmeriGas Propane, Inc. is an Equal Opportunity Employer. The Company does not discriminate on the basis of race, color, sex, national origin, disability, age, gender identity, sexual orientation, veteran status, or any other legally protected class in its practices.
AmeriGas is a Drug Free Workplace. Candidates must be willing to submit to a pre-employment drug screen and a criminal background check. Successful applicants shall be required to pass a pre-employment drug screen as a condition of employment, and if hired, shall be subject to substance abuse testing in accordance with AmeriGas policies. As a federal contractor that engages in safety-sensitive work, AmeriGas cannot permit employees in certain positions to use medical marijuana, even if prescribed by an authorized physician. Similarly, applicants for such positions who are actively using medical marijuana may be denied hire on that basis.

UGI Corporation is an international energy distribution and services company that provides superior service in delivering a range of energy products. By operating as a best-in-class service provider, offering a great place to work, serving our communities and delivering value to investors, we aim to positively impact the lives of our shareholders, employees, customers and communities.
UGI Corporation (NYSE: UGI) is a holding company that distributes and markets energy products and services through our subsidiaries and the company’s common stock is a balanced growth and income investment. UGI Corporation has paid common dividends for more than 135 consecutive years.
Why do you want to work here? We offer a competitive salary, full benefit package, tuition reimbursement, 401K with a generous company match & immediate vesting, paid paternity/maternity leave, volunteer time, paid vacation, paid sick time, onsite deli, service awards, and other great perks! Plus, the culture is amazing... you can't beat it!
Visit us online to learn more at www.ugicorp.com.