Please mention DailyRemote when applying
|
Division or Field Office: |
Office of CIO |
| Department of Position: | Enterprise Info Security Dept |
|
Work from: |
Home Office, Erie PA |
| Salary Range: |
$79,191.00 - $126,500.00 * salary range is for this level and may vary based on actual level of role hired for |
*This range represents a national range and the actual salary will depend on several factors including the scope and complexity of the role and the skills, education, training, credentials, location (State) based on ERIE's geographical differences, and experience of an applicant, as well as level of role for which the successful candidate is hired. Position may be eligible for an annual bonus payment.
At Erie Insurance, you’re not just part of a Fortune 500 company; you’re also a valued member of a diverse and inclusive team that includes more than 6,000 employees and over 13,000 independent agencies. Our Employees work in the Home Office complex located in Erie, PA, and in our Field Offices that span 12 states and the District of Columbia.
Benefits That Go Beyond The Basics
We strive to be Above all in Service® to our customers—and to our employees. That’s why Erie Insurance offers you an exceptional benefits package, including:
Additional benefits that include company-paid basic life insurance; short-and long-term disability insurance; orthodontic coverage for children and adults; adoption assistance; fertility and infertility coverage; well-being programs; paid volunteer hours for service to your community; and dollar-for-dollar matching of your charitable gifts each year.
Working independently or as part of a team, contributes to the planning, implementation, and management of the Information Security program to safeguard ERIE’s digital assets. Implements and maintains security systems and procedures to govern, identify, protect, detect, respond to, and recover from cybersecurity risks, threats, vulnerabilities, and incidents. Completes and may lead assignments of moderate complexity within the Information Security portfolio with minimal guidance. Performs duties in one or more of the following Information Security disciplines, including but not limited to: Application Security (AppSec); Cloud Security (CloudSec); Governance, Risk Management & Compliance (GRC); Identity & Access Management (IAM); Security Operations (SecOps), or Vulnerability Management.
What You'll Do
This opportunity is for a Professional Information Security Specialist on the Governance, Risk, and Compliance team. The Information Security Specialist will support cybersecurity governance, IT risk management, regulatory compliance, and control assurance activities across the enterprise.
This role will focus on SOX/MAR IT attestations, including coordinating evidence collection, supporting control owners, reviewing control documentation, tracking control performance, and helping ensure IT and cybersecurity controls are operating effectively. The role will partner with technology teams, application owners, business stakeholders, internal audit, external audit, and risk management partners to support audit readiness and compliance objectives.
The Information Security Specialist will also support broader GRC activities, including IT risk assessments, control testing, issue and remediation tracking, policy and standards governance, regulatory alignment, metrics reporting, and continuous improvement of the cybersecurity compliance program.
Preferred Experience & Skills
• Knowledge of IT governance, risk, and compliance processes
• Understanding of IT control areas such as access management, change management, system operations, cybersecurity governance, and third-party oversight
• Experience gathering, reviewing, and organizing audit evidence
• Ability to assess control effectiveness, identify gaps, and support remediation activities
• Knowledge of frameworks and regulations such as SOX/MAR, NIST CSF, NYDFS Part 500 or CIS Controls
• Strong analytical, documentation, communication, and stakeholder management skills
• Experience in GRC, IT audit, IT risk, cybersecurity compliance, or technology controls
What Makes You Stand Out
• Experience supporting SOX/MAR IT attestations, IT general controls, audits, or control testing
• Hands-on experience with control walkthroughs, evidence review, deficiency tracking, and audit support
• Familiarity with IT General Controls, control narratives, process flows, risk registers, GRC tools, and audit management platforms
• Ability to manage multiple priorities, meet audit deadlines, and drive accountability across teams
The first seven duties listed are the functions identified as essential to the job. Essential functions are those job duties that must be performed for the job to be accomplished.
This position description in no way states or implies that these are the only duties to be performed by the incumbent. Employees are required to follow any other job-related instruction and to perform any other duties as requested by their supervisor, or as become clear.
Minimum Education and Experience Requirements
Additional Experience
Stop the endless job search. Our AI finds and applies to the best jobs for you.
Discover remote opportunities in Others
Answer easy questions
200,000+ jobs across 15+ categories
Get your best job matches
Only hand-screened, legit jobs
Find a remote job faster
No ads, scams, or junk
“ I was the first applicant for a remote marketing position that got listed on the company website the same day I applied. Had an interview within 48 hours!