GRC Administrator and Developer

Integrated Resources, Inc

Lansing, MI

JOB DETAILS
SKILLS
Agile Programming Methodologies, Application Programming Interface (API), Automation, BASIC Programming Language, Communication Skills, Computer Programming, Computer Security, Cross-Functional, Database Design, DevOps, Document Management, Documentation, Identify Issues, Import/Export, Information Technology & Information Systems, Information Technology/Systems Audit, Internal Audit, Internet Security, JSON, Java, Microsoft C# (C Sharp), Microsoft SharePoint, Microsoft Windows Azure, PCI, Problem Solving Skills, Project/Program Management, Python Programming/Scripting Language, REST (Representational State Transfer), Regulatory Compliance, Risk, Risk Management, Root Cause Analysis, Scripting (Scripting Languages), Software Administration, Source Code/Configuration Management (SCM), Structured Data, Systems Maintenance, Team Player, Test Automation, Test Plan/Schedule, Testing, Time Management
LOCATION
Lansing, MI
POSTED
3 days ago
Job Title: GRC Administrator and Developer
Location: Lansing, MI (Hybrid - 2 days a week (Mondays and Tuesdays required))
Duration: 1 year Contract with possible extension
Interview mode: In-person only

Position Summary:
This position is part of a collaborative team of information technology professionals dedicated to supporting the agency s mission and goals. The role focuses on maintaining and enhancing the Client s Web-based Governance, Risk, and Compliance (GRC) tool, Navex IRM (formerly Keylight). Responsibilities include administration, development, troubleshooting, and implementing new functionality. The position may also involve working on new development projects, testing, documentation, and cross-team collaboration with Michigan Cyber Security, Office of Internal Audit Systems, Office of the Chief Technology Officer, and the Enterprise Project Management Office.

Key Responsibilities:
  • Serve as the primary administrator and developer for the Client s GRC tool (Navex IRM).
  • Collaborate closely with stakeholders to understand security and compliance requirements and design tailored automation solutions.
  • Lead automation initiatives for security accreditation processes, including evidence collection, workflow routing, and control reviews to reduce manual effort.
  • Design and implement unified security controls frameworks aligned with Client s Standards and integrate CJIS v6.0, IRS 1075, PCI (SAQ A, SAQ A-EP), and ARC-AMPE standards.
  • Develop and maintain Python API modules and automation scripts to import and update compliance controls, integrate CMDB, vulnerability data, and audit evidence for continuous monitoring.
  • Work cross-functionally with IT, security, and business teams to ingest structured data (JSON, CSV) into the GRC tool and maintain centralized Azure Repos for source control and documentation.
  • Integrate with RESTful APIs to automate data imports, exports, and reporting in JSON and CSV formats.
  • Troubleshoot issues, identify solutions, and ensure timely resolution.
  • Maintain and update system and project documentation (Azure repositories, SharePoint).
  • Communicate with Navex IRM regarding software issues, maintenance, and upgrades.
  • Analyze GRC issues/incidents to identify root causes and work with vendor support to implement solutions.
  • Participate in development activities, including testing, implementation, and documentation.
  • Perform other duties as assigned.

Required Skills and Qualifications:
  • Python programming experience
  • Experience developing automation scripts and API integrations (RESTful APIs)
  • General knowledge of database design
  • Basic programming skills in Java or C#
  • Familiarity with DevOps practices and Risk Management concepts
  • Experience with Agile methodology (e.g., sprints)
  • Strong troubleshooting and problem-solving skills
  • Excellent communication and collaboration abilities

Preferred Skills:
  • Experience with automated testing
  • Knowledge of any GRC tool (Navex IRM experience is a plus)
  • Understanding of governance, risk, and compliance frameworks
  • Experience with security frameworks such as CJIS, IRS 1075, PCI, ARC-AMPE

Top Skills Summary:
  • Python programming (primary requirement) 2-3+ years
  • API integration and automation experience 1-2+ years
  • Agile methodology experience 1-2+ years
  • Risk Management knowledge 1-2+ years
  • Database design expertise 2-3+ years
  • GRC tool familiarity (preferred) 1-2+ years

Feel free to forward my email to your friends/colleagues who might be available. We do offer a referral bonus! Thank you for your time and consideration.
I am looking forward to hearing from you.

About the Company

I

Integrated Resources, Inc