Servicenow Sec Ops Technical Consultant
💼 Full-time🗓 2026-07-25
Rewrite
## About the Role
We are seeking an experienced ServiceNow Security Operations (SecOps) Consultant to serve as a strategic advisor for our enterprise clients. In this critical role, you will bridge the gap between their cybersecurity strategy, risk management, and the implementation of ServiceNow's Security Operations solutions.
You will be responsible for analyzing our clients' existing incident response and vulnerability management processes, identifying opportunities to enhance security posture, accelerate response times, and reduce organizational risk. Your primary objective is to help clients achieve world-class, automated security workflows by leveraging the ServiceNow SecOps suite, specifically Security Incident Response (SIR) and Vulnerability Response (VR).
This is a leadership role that requires a deep understanding of security operations principles, strong business analysis skills, and the ability to guide senior stakeholders—including CISOs and Security Directors - through complex process and technology transformations.
## Key Responsibilities
- Lead Strategic Workshops: Facilitate high-level workshops with leaders from Security, IT Operations, and Risk teams to understand their challenges related to threat prioritization, incident response, and vulnerability lifecycle management.
- Process Design & Automation: Map current-state security workflows (e.g., incident triage, vulnerability scanning, remediation) and design optimized, future-state processes for SIR and VR automation within ServiceNow.
- Requirements Definition: Translate complex security and compliance objectives—such as mandatory incident reporting, SLA enforcement for vulnerability remediation, and integration with third-party security tools - into clear, actionable functional requirements and user stories.
- Value Realization & Roadmap: Develop compelling business cases, define value propositions, and create strategic roadmaps that articulate the tangible ROI of a SecOps program, focusing on Mean Time To Respond (MTTR) reduction and risk mitigation.
- ServiceNow SecOps Advisory: Advise clients on structuring their security data, configuration, and integrations (e.g., SIEM, scanning tools) to ensure effective prioritization, escalation, and automated workflow execution.
- Stakeholder Management: Act as the primary liaison between client security units and the technical implementation team, ensuring strategic alignment and managing expectations across all phases of the project.
- Organizational Change Management: Guide clients through the organizational and governance changes required for a successful SecOps program, including defining new incident response policies, playbooks, and user responsibilities.
- Best Practice Advisory: Serve as a trusted advisor, providing clients with industry best practices for security operations (e.g., NIST, ISO 27001), threat intelligence utilization, and continuous monitoring strategies.
## Required Qualifications & Skills
- Bachelor's degree in Computer Science, Cybersecurity, Business Administration, or a related field, or equivalent professional experience.
- 5+ years of experience in a security consulting, business analysis, or process improvement role with a focus on Security Operations or GRC (Governance, Risk, and Compliance).
- Certifications: ServiceNow Certified Implementation Specialist - Security Incident Response (CIS-SIR) and ServiceNow Certified Implementation Specialist - Vulnerability Response (CIS-VR).
- Strong understanding of security principles, threat landscapes, and the operational challenges related to Security Incident Response and Vulnerability Management.
- Proven experience facilitating workshops, gathering requirements, and mapping complex security processes.
- Excellent communication, presentation, and stakeholder management skills, with the ability to engage with senior security leadership (CISO level).
- Functional knowledge of the ServiceNow platform and the business value of core SecOps applications (SIR, VR).
## Preferred Qualifications & Skills
- Certifications: ServiceNow Certified System Administrator (CSA), CIS-Risk and Compliance, or other relevant cybersecurity certifications (e.g., CISSP, CISM, CEH).
- Deep understanding of ITIL/ITSM processes and how they intersect with security operations.
- Experience with other security platforms and concepts such as SIEM (Splunk, Sentinel), Threat Intelligence, and SOAR.
- Experience leading organizational change management (OCM) initiatives in a security context.
- ITIL v4 Foundation Certification.
- Experience working in a major consulting firm or as an internal process consultant.
Sourced via wellfound · Listed on CareerPlan, which tracks 70,000+ jobs from 20+ sources.