GRC Careers: AI Governance, Risk and Compliance JobsConnecting Talent and Trust. Post a Job Log in

JobsPennsylvaniaMalvernGovernance, Risk & Compliance Analyst, Specialist

Governance, Risk & Compliance Analyst, Specialist

Vanguard
CybersecurityOn-siteFull-timeMalvern, Pennsylvania

Vanguard is hiring for the job of Governance, Risk & Compliance Analyst, Specialist, Malvern, Pennsylvania (On-site). This is a Cybersecurity job in the governance, risk, and compliance field. Review the full details below and apply directly with Vanguard.

Organization: VanguardLocation: Malvern, PennsylvaniaWorkplace: On-siteFocus: CybersecurityPosted: Aug 23, 2026
Vanguard is hiring for this Cybersecurity job in Malvern, one of the metros GRC Careers tracks for governance, risk, and compliance hiring. See other GRC jobs in Malvern →

Works with Enterprise Security and Fraud subdivisions and business units as the technical authority regarding security of application and systems software, equipment, and related capabilities and performance characteristics to evaluate their effectiveness at meeting defined requirements, determining integration requirements and identifying ramifications on operations of their implementation.
Supports the development and maintenance of a portfolio of global security and fraud policies and standards. Monitors and maintains the lifecycle of the portfolio. Responsible for oversight of management and decisions related to methodology and policy for all Security and fraud functions.
Advises key stakeholders and security policy owners during policy and standards discussions. Interfaces with clients on all inquiries related to Information and IT Security and fraud capabilities.
Works with Compliance and Regional Security and Fraud teams to understand global regulatory requirements, develop global and regional policies and standards, and oversee implementation. Interfaces with external regulators for Information and IT Security and Fraud.
Reviews and analyzes current and proposed policy and standards directives and IT technical issues which may affect the implementation of Information Security and Fraud across the enterprise.
Recommends, develops, implements and coordinates new security policies, standards, controls and operating doctrine at all levels across the company. Interprets policy relating to Vanguard information security and frau functions and provides guidance, as required.
Defines and implements automations to accelerate delivery and improve effectiveness.
Defines and implements data-driven approaches and dashboards to predict risk issues, develop solutions, and partner with key owners and stakeholders.
Designs, implements and supports modernized GRC process and tool capabilities.
Participates in special projects and performs other duties as assigned.
Qualifications
Seven years related work experience, Information Security or fraud experience required.
Undergraduate degree or equivalent combination of training and experience.
In-depth knowledge of relevant frameworks and standards (i.e., NIST CSF, NIST 800-53, CIS Controls, ISO 27002) and financial services industry cyber regulations and guidelines, and considered an expert in the domain.
Demonstrated experience with GRC solutions platform and automation capabilities.
Excellent communication and influencing skills.
Influence key stakeholders and security policy and control owners.
Professional certification (CISSP, CISM, CompTIA, SANS, ISC2) preferred.
Special Factors
Sponsorship
Vanguard is not offering visa sponsorship for this position.
About Vanguard
At Vanguard, we don't just have a mission, we're on a mission.
To work for the long-term financial wellbeing of our clients. To lead through product and services that transform our clients' lives. To learn and develop our skills as individuals and as a team. From Malvern to Melbourne, our mission drives us forward and inspires us to be our best.
How We Work
Vanguard has implemented a hybrid working model for the majority of our crew members, designed to capture the benefits of enhanced flexibility while enabling in-person learning, collaboration, and connection. We believe our mission-driven and highly collaborative culture is a critical enabler to support long-term client outcomes and enrich the employee experience.

Location and market context

This job is based in Malvern on-site. Local candidates benefit from being close to Vanguard's teams and regional hiring market. Confirm the exact in-office expectation and any relocation support with the employer.

About cybersecurity governance jobs

Cybersecurity governance connects security control frameworks to business and regulatory risk, covering policy, risk assessment, and control assurance rather than hands-on operations. Jobs like this one are typically evaluated against frameworks such as NIST CSF, ISO/IEC 27001, SOC 2, and security risk and control-assurance practices.

How to position yourself for this cybersecurity governance job

Strong candidates emphasize security control frameworks, risk assessment, policy and standards, and translating technical security posture into governance and board-level reporting. In your resume and outreach, tie your experience to how Vanguard would apply NIST CSF, ISO/IEC 27001, SOC 2, and security risk and control-assurance practices, and lead with concrete outcomes rather than duties.

Similar GRC jobs

Want to be next in a job like this?

Jobs like Governance, Risk & Compliance Analyst, Specialist in Malvern, Pennsylvania open regularly. Be first to know, privately. No current employer ever sees you looking.

New Cybersecurity jobs, the moment they post.

One click unsubscribe.
Know your GRC? Take the 2-minute AI Governance Challenge. No signup needed.
Play now →

Employer, or see something wrong with this posting? Report this posting and we will review it promptly.