Neptune Technology Group · 1 week ago
Sr. GRC Specialist
Neptune Technology Group Inc. is a technology company serving water utilities across North America. The Sr. GRC Specialist will focus on Product and Application Security, ensuring compliance with security standards and integrating security practices throughout the product lifecycle.
Responsibilities
Integrate security requirements into the product design phase for software, and IoT/IIOT products. Ensure secure coding practices are followed and conduct regular security assessments of applications to identify and mitigate vulnerabilities.Conduct security reviews and audits to ensure compliance with industry standards
Develop and maintain application and product security policies and procedures. Develop, implement, and maintain security standards and best practices for product and application security
Conduct security reviews and assessments of products and applications to identify potential vulnerabilities and ensure compliance with security standards
Implement and manage security tools and processes, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and penetration testing
Perform threat modeling to identify and mitigate potential security risks in products and applications
Lead incident response efforts for product and application security incidents, including investigation, remediation, and reporting
Develop and deliver training and awareness programs to educate stakeholders on product and application security best practices
Conduct risk assessments and develop mitigation strategies for identified security risks
Collaborate with cross-functional teams, including development, operations, and legal, to ensure security requirements are integrated into the product development lifecycle
Maintain comprehensive documentation of security assessments, reviews, and incident response activities
Qualification
Required
Bachelor's degree in information systems, Cybersecurity, or a related field
Minimum of 5+ years of relevant experience in governance, risk, and compliance roles
Strong understanding of regulatory requirements and industry standards
Preferred
Certifications such as ISO 27001, CISA, CISM, or CISSP
Experience with third-party risk management and vendor assessments
Knowledge of security frameworks such as ISO 27001, NIST, SOX or SOC 2
Company
Neptune Technology Group
Designing and engineering for the business of water.
H1B Sponsorship
Neptune Technology Group has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2024 (2)
2023 (1)
Funding
Current Stage
Late StageRecent News
2025-08-01
Company data provided by crunchbase