Sr. GRC Specialist jobs in United States
cer-icon
Apply on Employer Site
company-logo

Neptune Technology Group · 1 week ago

Sr. GRC Specialist

Neptune Technology Group Inc. is a technology company serving water utilities across North America. The Sr. GRC Specialist will focus on Product and Application Security, ensuring compliance with security standards and integrating security practices throughout the product lifecycle.

ElectronicsInfrastructureManufacturing
check
H1B Sponsor Likelynote
Hiring Manager
Dawn Forrest
linkedin

Responsibilities

Integrate security requirements into the product design phase for software, and IoT/IIOT products. Ensure secure coding practices are followed and conduct regular security assessments of applications to identify and mitigate vulnerabilities.Conduct security reviews and audits to ensure compliance with industry standards
Develop and maintain application and product security policies and procedures. Develop, implement, and maintain security standards and best practices for product and application security
Conduct security reviews and assessments of products and applications to identify potential vulnerabilities and ensure compliance with security standards
Implement and manage security tools and processes, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and penetration testing
Perform threat modeling to identify and mitigate potential security risks in products and applications
Lead incident response efforts for product and application security incidents, including investigation, remediation, and reporting
Develop and deliver training and awareness programs to educate stakeholders on product and application security best practices
Conduct risk assessments and develop mitigation strategies for identified security risks
Collaborate with cross-functional teams, including development, operations, and legal, to ensure security requirements are integrated into the product development lifecycle
Maintain comprehensive documentation of security assessments, reviews, and incident response activities

Qualification

GovernanceRiskComplianceCybersecurityISO 27001CISACISMCISSPAnalytical SkillsTechnical ExpertiseCommunication SkillsAttention to Detail

Required

Bachelor's degree in information systems, Cybersecurity, or a related field
Minimum of 5+ years of relevant experience in governance, risk, and compliance roles
Strong understanding of regulatory requirements and industry standards

Preferred

Certifications such as ISO 27001, CISA, CISM, or CISSP
Experience with third-party risk management and vendor assessments
Knowledge of security frameworks such as ISO 27001, NIST, SOX or SOC 2

Company

Neptune Technology Group

twittertwittertwitter
company-logo
Designing and engineering for the business of water.

H1B Sponsorship

Neptune Technology Group has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2024 (2)
2023 (1)

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Don Deemer
President & CEO
linkedin
leader-logo
Dawn Forrest
Sr. Talent Acquisition Partner
linkedin
Company data provided by crunchbase