About the job
Join our dynamic information technology team as a GRC Tool Administrator and Automation Developer. In this pivotal role, you will enhance and support our web-based Governance, Risk, and Compliance (GRC) platform, driving its ongoing development, automation, and integration initiatives. Collaborating with cross-functional teams, you will streamline security processes, implement innovative features, and ensure the platform meets our organizational compliance and risk management objectives.
Key Responsibilities
- Act as the primary administrator and developer for the organization’s GRC platform.
- Engage with stakeholders to understand security and compliance requirements, then design and deploy automation solutions.
- Lead automation projects for accreditation workflows, evidence collection, control reviews, and other critical security tasks.
- Design and implement cohesive security control frameworks that align with industry standards, integrating frameworks such as CJIS, IRS 1075, PCI, and ARC-AMPE.
- Create and maintain Python-based API modules and automation scripts for updating compliance controls, integrating CMDB and vulnerability data, and supporting continuous monitoring.
- Ingest structured data formats (JSON, CSV) into the GRC tool and manage centralized source control and documentation repositories (e.g., Azure Repos).
- Utilize RESTful APIs to automate data transfers, reporting, and system updates.
- Diagnose system issues, identify root causes, and ensure prompt resolutions.
- Maintain project documentation across repositories and knowledge bases.
- Collaborate with the platform vendor on software issues, updates, and enhancements.
- Participate in development activities, including testing, implementation, and documentation.
- Perform additional duties as required.
Requirements
- 2-3+ years of experience in Python programming.
- 1-2+ years in developing automation scripts and API integrations (RESTful APIs).
- Solid understanding of database design principles.
- Basic programming skills in Java or C#.
- Familiarity with DevOps practices and risk management concepts.
- Experience working within Agile methodologies (e.g., sprints).
- Strong analytical problem-solving and troubleshooting skills.
- Excellent communication and collaboration skills across teams.
Preferred Qualifications
- Experience with automated testing frameworks.
- Hands-on experience with any Governance, Risk & Compliance (GRC) tool.
- Understanding of various GRC frameworks.
- Familiarity with security frameworks such as CJIS, IRS 1075, PCI, or ARC-AMPE.

