Neptune Technology Group logo

Sr. GRC Specialist

Neptune Technology GroupDuluth, GA

Automate your job search with Sonara.

Submit 10x as many applications with less effort than one manual application.1

Reclaim your time by letting our AI handle the grunt work of job searching.

We continuously scan millions of openings to find your top matches.

pay-wall

Overview

Schedule
Full-time
Career level
Senior-level
Benefits
Career Development

Job Description

Neptune Technology Group Inc. is a technology company serving water utilities across North America. Since 1892, we have continually focused on the evolving needs of water utilities - revenue optimization, operational efficiencies, and improved customer service. With our portfolio of smart water meters, data collection systems and software, we make data actionable for our customers - so they can remain focused on the business of water. For additional information, please visit the company website at www.neptunetg.com.

Sr. GRC Specialist - Application and Product Security

Position Summary

As a Sr. GRC Specialist focused on Product and Application Security, you will be responsible for ensuring that Neptune Technology Group's products and applications adhere to the highest security standards. You will engage with stakeholders throughout the organization and the product lifecycle to ensure that security practices are followed, and risk mitigations are implemented where required.

Key Responsibilities

  • Application and Product Security: Integrate security requirements into the product design phase for software, and IoT/IIOT products. Ensure secure coding practices are followed and conduct regular security assessments of applications to identify and mitigate vulnerabilities. Conduct security reviews and audits to ensure compliance with industry standards.
  • Security Standards: Develop and maintain application and product security policies and procedures. Develop, implement, and maintain security standards and best practices for product and application security.
  • Security Reviews: Conduct security reviews and assessments of products and applications to identify potential vulnerabilities and ensure compliance with security standards.
  • Security Tools & Processes: Implement and manage security tools and processes, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and penetration testing.
  • Threat Modeling: Perform threat modeling to identify and mitigate potential security risks in products and applications.
  • Incident Response: Lead incident response efforts for product and application security incidents, including investigation, remediation, and reporting.
  • Training & Awareness: Develop and deliver training and awareness programs to educate stakeholders on product and application security best practices.
  • Risk Assessments: Conduct risk assessments and develop mitigation strategies for identified security risks.
  • Collaboration: Collaborate with cross-functional teams, including development, operations, and legal, to ensure security requirements are integrated into the product development lifecycle.
  • Documentation: Maintain comprehensive documentation of security assessments, reviews, and incident response activities.

Qualifications:

  • Bachelor's degree in information systems, Cybersecurity, or a related field.
  • Minimum of 5+ years of relevant experience in governance, risk, and compliance roles.
  • Strong understanding of regulatory requirements and industry standards.

Preferred Qualifications:

  • Certifications such as ISO 27001, CISA, CISM, or CISSP.
  • Experience with third-party risk management and vendor assessments.
  • Knowledge of security frameworks such as ISO 27001, NIST, SOX or SOC 2.

Skills:

  • Analytical & Problem-Solving: Strong analytical skills with the ability to identify risks and propose effective solutions.
  • Communication & Leadership: Excellent communication skills with experience leading cross-functional teams and working with senior management.
  • Attention to Detail: Meticulous attention to detail in reviewing audit findings, compliance risks, and policy documentation.
  • Technical Expertise: Proficient in cybersecurity tools, and Microsoft Office Suite. Knowledge of GRC platforms is a plus.
  • Ability to work independently and make decisions with wide latitude for independent judgment.

Travel Requirements: Typically require overnight travel less than 10% of the time.

Location: Duluth, GA or Tallassee, AL.

Equal Opportunity Employer EEO/AA M/F/Vet Disability

#HP1

Automate your job search with Sonara.

Submit 10x as many applications with less effort than one manual application.

pay-wall

FAQs About Sr. GRC Specialist Jobs at Neptune Technology Group

What is the work location for this position at Neptune Technology Group?
This job at Neptune Technology Group is located in Duluth, GA, according to the details provided by the employer. Some roles may also include multiple work locations depending on the requirement.
What pay range can candidates expect for this role at Neptune Technology Group?
Employer has not shared pay details for this role.
What employment applies to this position at Neptune Technology Group?
Neptune Technology Group lists this role as a Full-time position.
What experience level is required for this role at Neptune Technology Group?
Neptune Technology Group is looking for a candidate with "Senior-level" experience level.
What benefits are offered by Neptune Technology Group for this role?
Neptune Technology Group offers Career Development for this position. Actual benefits may vary depending on the employer's policies and employment terms.
What is the process to apply for this position at Neptune Technology Group?
You can apply for this role at Neptune Technology Group either through Sonara's automated application system, which helps you submit applications 10X faster with minimal effort, or by applying manually using the direct link on the job page.