JOBSEARCHER

GRC Developer (Python)

Quantam Solutions provides IT solutions and consulting for various clients. We offer competitive hourly wages, health benefits, paid time off, and a 401(k) plan. We are currently seeking a GRC Administrator and Developer. The work schedule is hybrid with two days onsite and three days remote.Overview:This position is part of a collaborative team of information technology professionals dedicated to supporting the agency’s mission and goals. The role focuses on maintaining and enhancing Web-based Governance, Risk, and Compliance (GRC) tool, Navex IRM (formerly Keylight). Responsibilities include administration, development, troubleshooting, and implementing new functionality. The position may also involve working on new development projects, testing, documentation, and cross-team collaboration.Responsibilities:Serve as the primary administrator and developer for GRC tool (Navex IRM).Collaborate closely with stakeholders to understand security and compliance requirements and design tailored automation solutions.Lead automation initiatives for security accreditation processes, including evidence collection, workflow routing, and control reviews to reduce manual effort.Design and implement unified security controls frameworks aligned with State of Michigan Standards and integrate CJIS v6.0, IRS 1075, PCI (SAQ A, SAQ A-EP), and ARC-AMPE standards.Develop and maintain Python API modules and automation scripts to import and update compliance controls, integrate CMDB, vulnerability data, and audit evidence for continuous monitoring.Work cross-functionally with IT, security, and business teams to ingest structured data (JSON, CSV) into the GRC tool and maintain centralized Azure Repos for source control and documentation.Integrate with RESTful APIs to automate data imports, exports, and reporting in JSON and CSV formats.Troubleshoot issues, identify solutions, and ensure timely resolution.Maintain and update system and project documentation (Azure repositories, SharePoint).Communicate with Navex IRM regarding software issues, maintenance, and upgrades.Analyze GRC issues/incidents to identify root causes and work with vendor support to implement solutions.Participate in development activities, including testing, implementation, and documentation.Perform other duties as assigned.Required Qualifications:Bachelor’s degree in related field.Python programming (primary requirement) – 2-3+ yearsAPI integration and automation experience – 1-2+ yearsAgile methodology experience – 1-2+ yearsRisk Management knowledge – 1-2+ yearsDatabase design expertise – 2-3+ yearsBasic programming skills in Java or C#Familiarity with DevOps practices and Risk Management conceptsStrong troubleshooting and problem-solving skillsPreferred Qualifications:Experience with automated testingGRC tool familiarity (Navex IRM preferred) – 1-2+ yearsUnderstanding of governance, risk, and compliance frameworksExperience with security frameworks such as CJIS, IRS 1075, PCI, ARC-AMP