Summary
Granicus is a GovTech company that provides cloud-based digital solutions connecting governments with their constituents. The GRC Automation Engineer will build and implement AI-enabled automations, integrations, and workflows to improve governance, risk, and compliance operations while maintaining security, privacy, and regulatory requirements. The role also supports compliance frameworks, third-party security reviews, vulnerability and POA&M management, reporting, and cross-functional process transformation.
Responsibilities
- Build automations that reduce manual work across information security and compliance activities, including evidence collection, control validation, audit preparation, POA&M tracking, continuous monitoring, reporting, and task management
- Build third party security review automations to support new procurement and recurring reviews, including for third parties that impact FedRAMP, CJIS, HIPAA, PCI, and IP
- Use AI-enabled tools, AI agents, low-code/no-code platforms, scripts, APIs, and integrations to streamline repeatable compliance workflows and improve consistency, traceability, and timeliness. Design, test and optimise AI-assisted workflows and prompts to increase operational efficiency
- Evaluate emerging AI technologies and identify practical applications for governance, risk and compliance use cases
- Assess AI-enabled automations for security, privacy, regulatory compliance, auditability and alignment with organisational AI governance standards
- Leverage AI-assisted analysis to identify trends, risks, control gaps and remediation opportunities across security and compliance data
- Partner with Security, Engineering, Product, IT, Legal, and business teams to understand current manual processes, document requirements, and translate them into automated workflows
- Support automation across multiple compliance frameworks, including FedRAMP, CJIS, ISO 27001, ISO 42001, SOC 2, PCI, HIPAA, FISMA, and CyberEssentials, including controls and governance requirements associated with AI technologies
- Support ongoing transformation from FedRAMP rev5 legacy reporting and auditing requirements to the new Consolidated New Rules (CNRs) and 20.x. This includes transforming vulnerability management (scan to tickets to reporting, modern risk analysis and scoring, trend analysis), inventory management and reporting for FedRAMP, POA&M reporting, and deviation management
- Evaluate team processes to identify automation opportunities and execute
- Develop dashboards, metrics, and repeatable reporting that help leadership understand compliance status, control health, audit readiness, risks, gaps, and remediation progress
- Grow into a trusted builder on the GRC team by learning compliance frameworks, cloud environments, secure engineering practices, and practical automation patterns
- Responsible for Granicus information security by appropriately preserving the Confidentiality, Integrity, and Availability (CIA) of Granicus information assets in accordance with the company's information security program
- Responsible for ensuring the data privacy of our employees and customers, their data, as well as taking all required privacy training in a timely manner, in accordance with company policies
Skills
- You have 3-6 years of related experience in various development roles
- You have a BA/BS in Engineering or a related field
- You have hands-on experience evaluating and applying AI tools, agents or automation technologies to solve business or operational challenges
- You demonstrate curiosity and continuous learning around emerging AI capabilities and their practical application within security and compliance functions
- You have hands-on experience identifying automation opportunities and building the solutions
- You communicate well with team members and customers
- You are adaptable and enjoy working in a fast-paced dynamic environment
- You demonstrate the ability to meet deadlines without compromising accuracy
Qualifications
Nice to Haves
- You have 3-6 years of related experience in various development roles
- You have a BA/BS in Engineering or a related field
- You have hands-on experience evaluating and applying AI tools, agents or automation technologies to solve business or operational challenges
- You demonstrate curiosity and continuous learning around emerging AI capabilities and their practical application within security and compliance functions
- You have hands-on experience identifying automation opportunities and building the solutions
- You communicate well with team members and customers
- You are adaptable and enjoy working in a fast-paced dynamic environment
- You demonstrate the ability to meet deadlines without compromising accuracy
Benefits
- Flexible Time Off – Take the time you need to rest, recharge, and live your life.
- Company-Wide Wellbeing Days – Paid days off to unplug and focus on your mental health.
- Work From Home Reimbursement – Support a productive home office environment.
- Multiple Health Plan Options – Including a 100% employer-paid plan.
- Employer HSA Contributions – When enrolled in a High-Deductible Health Plan.
- Fitness Reimbursement Program – Stay active, your way.
- On-Demand Mental Health Support – Access to Headspace and other wellness tools.
- Paid Parental Leave – For both birthing and non-birthing parents.
- Traditional & Roth 401(k) – With a generous company match.
- Life & AD&D Insurance – 100% employer-paid coverage for peace of mind.
- Online Learning Platforms – Fuel your professional development.
- Bonuses – Your contributions are valued and rewarded.
- Remote-first work environment