Haystack
← Back to Jobs
Remote
Technology
KR

ServiceNow SecOps Technical Consultant

K-Tek Resourcing LLCUnited States🇺🇸United StatesPosted Sep 26, 2026

Why This Role Stands Out

This hybrid role offers a fantastic opportunity to deepen your expertise in ServiceNow SecOps, designing and implementing critical security solutions for a reputable company. If you possess a CIS-SecOps certification and a passion for developing robust security workflows, you'll thrive in this position. Don't miss out on the chance to contribute to cutting-edge security technology and advance your career.

Quick Overview

Seniority
Mid Senior
Work mode
Remote
Location
United States
Posted
4 days ago
SOAPScrumSplunkAgileJavaScriptRESTStakeholder Management

Job Description

Title: ServiceNow SecOps Technical Consultant
Location: USA remote
 
Job Description:

Look for senior technical consultants with 1 CSA and 2 CIS active certifications

ServiceNow SecOps Technical Consultant JD:

  • Mandatory requirement to have active CIS-SecOps Certification

Experience Required:

4–10 Years (Minimum 3+ of hands-on experience in ServiceNow Security Operations (SecOps) implementation and development.

Key Responsibilities:

  • Design, develop, and implement ServiceNow Security Operations (SecOps) solutions based on business and security requirements.
  • Configure and customize SecOps modules, including:
    • Security Incident Response (SIR)
    • Vulnerability Response (VR)
    • Threat Intelligence
    • Configuration Compliance
    • Security Posture Control (SPC)
  • Develop and maintain:
    • Business Rules
    • Client Scripts
    • UI Policies
    • Script Includes
    • Flow Designer / Workflow configurations
    • Notifications and Security Workflows
  • Configure and automate security incident lifecycle management.
  • Implement vulnerability management processes, remediation workflows, and exception management.
  • Integrate ServiceNow SecOps with security tools such as:
  • Microsoft Defender, Sentinel, CrowdStrike, Qualys, Tenable, Rapid7, Splunk, QRadar
  • Develop REST/SOAP integrations and leverage IntegrationHub spokes.
  • Collaborate with Cyber Security, SOC, GRC, Infrastructure, and Operations teams to implement security use cases.
  • Support threat intelligence ingestion, enrichment, and correlation activities.
  • Design security orchestration and automation workflows.
  • Participate in security workshops, requirement gathering, and solution design discussions.
  • Perform unit testing, SIT, UAT, deployment, and post-production support.
  • Maintain technical documentation, knowledge articles, and solution design documents.
  • Ensure compliance with ServiceNow best practices, security standards, and HCL delivery methodologies.

Required Skills & Qualifications:

  • Strong hands-on development experience on the ServiceNow platform.
  • Mandatory implementation experience in ServiceNow SecOps.
  • Expertise in:
    • Security Incident Response (SIR)
    • Vulnerability Response (VR)
    • Threat Intelligence
    • Security Posture Control
  • Strong knowledge of:
    • JavaScript
    • Glide APIs
    • Business Rules
    • Client Scripts
    • Script Includes
    • ACLs
    • Flow Designer
    • Integration Hub
  • Experience integrating ServiceNow with enterprise security and SIEM tools.
  • Strong understanding of:
    • Cyber Security Operations
    • Vulnerability Management
    • Incident Response
    • Threat Intelligence
    • Security Compliance
  • Knowledge of security frameworks and standards:
    • NIST
    • ISO 27001
    • CIS Controls
    • MITRE ATT&CK
    • SOC Framework
  • Experience with CMDB, Discovery, and Service Mapping concepts.
  • Understanding of ServiceNow data model and platform architecture.
  • Experience in troubleshooting, debugging, and performance optimization.
  • Strong communication and stakeholder management skills.
  • Ability to work directly with customers, security teams, and architects.

Preferred Experience:

  • Experience implementing Security Incident Response and Vulnerability Response modules.
  • Experience integrating:
    • Microsoft Sentinel
    • Defender XDR
    • CrowdStrike
    • Qualys
    • Rapid7
    • Tenable
    • Splunk
    • QRadar
  • Experience in Security Orchestration, Automation, and Response (SOAR) use cases.
  • Experience with CMDB, Discovery, Service Mapping, and asset context integration.
  • Experience implementing risk-based vulnerability prioritization.
  • Experience developing custom integrations and security workflows.
  • Experience in Agile/Scrum delivery methodology.
  • Experience working with global SOC and Cyber Security teams.

Similar jobs