
GRC Automation Engineer
Posted Aug 6

Posted Aug 6
This is a fully remote position, open to applicants in United States.
• Create, develop, and sustain automated workflows that support RMF, Assessment and Authorization (A&A), continuous monitoring, and cybersecurity governance initiatives.
• Build integrations between GRC platforms, vulnerability management solutions, security tools, ticketing systems, and reporting frameworks.
• Automate the collection of evidence, validation of controls, reporting, and ongoing compliance tasks.
• Assist in the implementation and enhancement of GRC platforms such as JCAM, ServiceNow, or equivalent enterprise solutions.
• Design scripts, APIs, dashboards, and automation workflows for authorization status, POA&M activities, vulnerability remediation, and cybersecurity performance metrics.
• Work in collaboration with RMF analysts and ISSOs to pinpoint manual processes that can be automated and improved continuously.
• Facilitate executive dashboards, cybersecurity metrics, and operational reports through automated data aggregation and visualization techniques.
• Assess emerging technologies, including artificial intelligence and machine learning, for enhancing documentation, workflow efficiency, and cybersecurity decision-making support.
• Keep automation documentation, workflow diagrams, technical procedures, and integration standards up to date.
• Diagnose automation challenges, monitor workflow performance, and apply enhancements for reliability and scalability.
• Discover opportunities to streamline cybersecurity governance processes while adhering to Federal requirements.
• Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, Software Engineering, Information Technology, or a related technical field.
• A minimum of three years’ experience in developing automation solutions that support cybersecurity, governance, compliance, or enterprise IT operations.
• Proficiency in developing scripts, APIs, or workflow automation using technologies such as PowerShell, Python, JavaScript, or similar.
• Experience in integrating enterprise platforms via REST APIs, web services, or workflow orchestration tools.
• Familiarity with NIST RMF, FISMA, and cybersecurity governance practices.
• Proven experience in creating dashboards, reports, or operational data visualizations.
• Strong analytical skills, troubleshooting capabilities, and proficiency in technical documentation.
• Preferred: Experience supporting NIH, HHS, or other Federal civilian agencies.
• Preferred: Experience with JCAM, eMASS, ServiceNow GRC, Archer, Microsoft Power Platform, Power Automate, or similar governance platforms.
• Preferred: Experience integrating vulnerability management platforms, SIEMs, cloud security tools, and enterprise ticketing systems.
• Preferred: Knowledge of AI-assisted workflow automation, document generation, or cybersecurity reporting.
• Preferred: Experience supporting CDM, continuous monitoring, or enterprise cybersecurity operations.
• Preferred: Experience in Agile development settings.
• Preferred certifications include Security+, CGRC, CISSP, Microsoft Power Platform certifications, AWS Certified Developer Associate, Azure Developer Associate, or Certified Scrum Developer.
• Competitive salary, paid bi-monthly.
• Comprehensive medical coverage.
• 100% of medical premiums covered by True Zero.
• Company-wide new business incentive programs.
• Contribution Incentives (e.g., white papers, blog posts, internal webinars, etc.).
• Three weeks of PTO plus 11 Paid Holidays Annually.
• 401k Program with a 100% company match on the first 4%.
• Monthly reimbursement for Cell Phone and Home Internet expenses.
• Paternity/Maternity Leave.
• Investment in training and certifications to enhance and expand your technical skills.
Granicus
nesto
nesto
LatamCent
Get handpicked remote jobs straight to your inbox weekly.