GRC Engineer

3 Months ago • 3-5 Years • Software Development & Engineering

Job Summary

Job Description

Enphase Energy is seeking a GRC (Governance, Risk and Compliance) Engineer to join their Information Security (InfoSec) team. This role involves protecting Enphase's data and technology assets from cyber risks and threats. The GRC Engineer will be responsible for managing SOC2 Type2 audits, handling SOX ITGC audit activities including the new SEC Cyber Security Requirements, working with the Internal Audit Team to address IT control gaps, conducting security reviews, managing vulnerability management governance, identifying and reporting new IS risks, performing Vendor Security Reviews, creating, updating, and enforcing IS policies, creating and maintaining an information security dashboard, driving Identity and Access Management reviews, providing updates on IS compliance, and collaborating with various security teams. The ideal candidate will have strong experience in IS GRC focusing on regulatory compliance, understanding of security standards, and excellent data analysis skills.
Must have:
  • 3-5 years of experience in IS GRC.
  • In-depth understanding of security standards (ISO 27001, NIST CSF, etc.).
  • Bachelor's degree in related field.
  • Scored 70% and above in 10th, 12th, and Graduation.
  • Knowledge of Python or similar scripting language.
Good to have:
  • High degree of creativity and 'out-of-the-box' thinking.
  • Ability to execute multiple projects simultaneously.
  • Ability to share knowledge and collaborate.

Job Details

Enphase Energy is a global energy technology company and leading provider of solar, battery, and electric vehicle charging products. Founded in 2006, Enphase transformed the solar industry with our revolutionary microinverter technology, which turns sunlight into a safe, reliable, resilient, and scalable source of energy to power our lives. Today, the Enphase Energy System helps people make, use, save, and sell their own power. Enphase is also one of the fastest growing and innovative clean energy companies in the world, with approximately 68 million products installed across more than 145 countries.  
We are building teams that are designing, developing, and manufacturing next-generation energy technologies and our work environment is fast-paced, fun and full of exciting new projects.  
If you are passionate about advancing a more sustainable future, this is the perfect time to join Enphase! 
 
About the role: 
Enphase Energy’s Information Security (InfoSec) organization is a growing collaborative team focused on protecting Enphase’s data and technology assets from cyber risks and threats, internal and external, while driving a security culture into the business use of IT. This is our team mission, and we are passionate about it. The InfoSec organization provides information- and cyber-security services to Enphase’s businesses and our goal is to provide safe, secure, and resilient IT services to our stakeholders. 
A key part of achieving that goal is providing modern and comprehensive GRC (Governance, Risk and Compliance) to support Compliance Program areas, Legal and Regulatory processes, risks, and controls and provide oversight to ensure internal standards and applicable regulatory requirements are satisfied. Enphase’s IT Security GRC Team will perform periodic testing, monitoring, and validation of business controls for compliance with applicable laws and regulations. 
To achieve these objectives, the InfoSec organization is looking for a GRC expert to drive the GRC program. 
 
Key Responsibilities:  
  • Manage end-to-end Enphase SOC2 Type2 audit requirements and recurring compliance activities. 
  • Handling SOX ITGC audit activities including the new SEC Cyber Security Requirements. 
  • Work with the Internal Audit Team to address IT control gap and manage risk. 
  • Conduct security reviews of internal systems and identify areas of improvement. 
  • Manage the Governance part of Vulnerability Management. Collaborate with teams on vulnerability remediation. 
  • Identify and report new IS risks in the IS Risk Registers on a continuous basis. Report top risks to the management. 
  • Perform Vendor Security Review for new and existing vendors. Review Vendor agreements for Information Security related clauses. 
  • Create, Update, and enforce IS Policies and Procedures. Track policy compliance across the organization and conduct policy awareness sessions. 
  • Create and maintain an information security dashboard on in-house analytics tool. 
  • Drive Identity and Access Management review for critical apps. 
  • Provide periodic updates to internal stakeholders on adherence to IS compliance requirements 
  • Collaborate with SecOps, Security Engineering and Product Security Team to prioritize and address security gaps. 
 
Required Skill and Experience:  
  • 3-5 yrs of experience in IS GRC focusing on regulatory compliance. 
  • In depth understanding of security standards and frameworks (E.g. ISO 27001, NIST CSF, PCI DSS, SOX 404, SOC2, NIS2 and PCI DSS.   
  • Should be a Graduate – B.E/ B.Tech with specialization in Computer Science, IT, IS/Cyber Security, or relevant IT-related fields. 
  • Should have scored 70% and above in 10th, 12th, and Graduation.  
  • Knowledge of Python or similar scripting language. Knowledge of PySpark or SparkSQL is an added advantage. 
  • Excellent Data Analysis and Presentation skills using Microsoft Excel and PowerPoint. 
  • Certifications (Preferred): CompTIA Security+, CISA (not mandatory)
  • Highly responsive and proven professionalism in communication, interpersonal, analytical, and organizational skills. 
  • Ability to synthesize a variety of data points, problem-solve, and formulate comprehensive and effective execution and risk mitigation plans. 
  • Desired Skill and Experience: 
  • High degree of creativity and “out-of-the-box” thinking. 
  • Able to execute multiple projects simultaneously in fast-paced environments. 
  • Ability to share knowledge and collaborate by developing content and documentation for distribution to other team members, managers, and customers. 
  • Ability to work in a fast-paced, collaborative, and ever-changing global environment. 
  • Takes responsibility and achieves results. 
  • Must be extremely flexible and able to manage multiple tasks and priorities on very tight deadlines. 
  • Outstanding organization skills. 
 

Similar Jobs

Fliff - CRM Analyst

Fliff

Philadelphia, Pennsylvania, United States (On-Site)
11 Months ago
dun bradstreet - People Operations Associate

dun bradstreet

Frankfurt Am Main, Hessen, Germany (Hybrid)
3 Months ago
Capgemini - Finance Controller

Capgemini

Pune, Maharashtra, India (On-Site)
2 Months ago
Side - Freelance Japanese to English Translator

Side

Tokyo, Japan (Hybrid)
3 Weeks ago
Capgemini - Financial Controller

Capgemini

Kolkata, West Bengal, India (On-Site)
1 Month ago
Enphase Energy - Engineer - Customer Service - German

Enphase Energy

Bengaluru, Karnataka, India (On-Site)
1 Month ago
Thales - Senior Sales Engineer

Thales

United States (Remote)
1 Month ago
blend - Manager Data Engineering

blend

Montevideo, Montevideo Department, Uruguay (Remote)
1 Week ago
Extreme Inc. - Embedded (Gaming Machine) Engineer

Extreme Inc.

Aichi, Japan (On-Site)
2 Years ago
PayPal - Staff Software Development Manager

PayPal

Bengaluru, Karnataka, India (Hybrid)
2 Weeks ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

CAE - Project Planning Engineer

CAE

Moose Jaw, Saskatchewan, Canada (On-Site)
1 Year ago
Tesla - Real Estate Specialist - Utilities

Tesla

North Holland, Netherlands (On-Site)
4 Months ago
Activate Games - Team Lead (Store Supervisor)

Activate Games

Winnipeg, Manitoba, Canada (On-Site)
3 Weeks ago
PhonePe - Linguist

PhonePe

Bengaluru, Karnataka, India (On-Site)
1 Month ago
oni - Materials Coordinator

oni

Oxford, England, United Kingdom (On-Site)
1 Month ago
Tesla - Inside Sales Advisor

Tesla

Manchester, England, United Kingdom (On-Site)
4 Months ago
fluence - Engineer, RMDC

fluence

Bengaluru, Karnataka, India (On-Site)
1 Month ago
Ruselle Investments - Accountant I

Ruselle Investments

Mumbai, Maharashtra, India (On-Site)
1 Month ago
Capco - Project Planning and Management Analyst

Capco

Rio De Janeiro, Brazil (Hybrid)
1 Month ago

Get notifed when new similar jobs are uploaded

Jobs in Bengaluru, Karnataka, India

Capgemini - Strategy & Transformation Consultant

Capgemini

Kolkata, West Bengal, India (On-Site)
1 Week ago
PwC - IFS-Operate-Data Analytics- Associate-Kolkata

PwC

Kolkata, West Bengal, India (On-Site)
9 Months ago
Yahoo - Sr Production Engineer

Yahoo

Bengaluru, Karnataka, India (Hybrid)
1 Month ago
Syniverse - Sr Operations Engineer

Syniverse

Hyderabad, Telangana, India (On-Site)
3 Weeks ago
Google - Senior Software Engineer, Google Cloud

Google

Bengaluru, Karnataka, India (On-Site)
6 Months ago
Enphase Energy - Staff Engineer-Mechanical

Enphase Energy

Bengaluru, Karnataka, India (On-Site)
3 Weeks ago
Interactive Brokers - Software Engineer

Interactive Brokers

Mumbai, Maharashtra, India (Hybrid)
1 Month ago
Dentsu - Senior Manager – Digital Analytics Implementation

Dentsu

Mumbai, Maharashtra, India (On-Site)
3 Weeks ago
Unity - Lead, Credit Collections Specialist

Unity

Bengaluru, Karnataka, India (On-Site)
2 Months ago
Luxoft - Senior Back End Developer

Luxoft

Bengaluru, Karnataka, India (On-Site)
7 Months ago

Get notifed when new similar jobs are uploaded

Software Development & Engineering Jobs

Qualcomm - RDC FTE Sr Engineer

Qualcomm

Bengaluru, Karnataka, India (On-Site)
2 Weeks ago
caliogo - Senior Software Engineer 2

caliogo

Hyderabad, Telangana, India (On-Site)
4 Months ago
Nagarro - Associate Staff Engineer, Hybris

Nagarro

India (Remote)
8 Months ago
Ramboll3 - Engineer for district heating and cooling projects

Ramboll3

Aarhus, Denmark (On-Site)
2 Months ago
Google - Lead CPU RTL Engineer, Silicon

Google

Poughkeepsie, New York, United States (On-Site)
6 Months ago
Rockstar Games - Manager, Data Engineering

Rockstar Games

New York, United States (On-Site)
1 Month ago
rivos - Accelerator Design Verification Engineer

rivos

Santa Clara, California, United States (Hybrid)
3 Years ago
Nagarro - SAP Cloud Senior Project Manager

Nagarro

Germany (Remote)
3 Months ago
Tesla - Process Engineer, Laser Welding Application

Tesla

Brandenburg, Germany (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

About The Company

Bengaluru, Karnataka, India (On-Site)

's-Hertogenbosch, North Brabant, Netherlands (On-Site)

Bengaluru, Karnataka, India (On-Site)

Tokyo, Japan (On-Site)

Bengaluru, Karnataka, India (On-Site)

Bengaluru, Karnataka, India (Hybrid)

Bengaluru, Karnataka, India (On-Site)

Christchurch, Canterbury, New Zealand (On-Site)

Christchurch, Canterbury, New Zealand (On-Site)

View All Jobs

Get notified when new jobs are added by Enphase Energy

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug