Posted on 23 Sep, 2024 14:00.
Job Description
Responsibilities
- Implement and maintain ServiceNow Security Operations (SecOps) modules, including Vulnerability Management and Security Incident Response.
- Collaborate with security teams to define workflows and integrations with security tools.
- Develop automation scripts to streamline SecOps processes.
- Provide training and support for SecOps module users.
- Ensure compliance with security standards and best practices.
- Integrate SecOps with third-party security tools like Splunk and Qualys.
- Perform regular assessments of SecOps configurations and performance.
- Create reports and dashboards to track security incidents and vulnerabilities.
- Develop and maintain playbooks for incident response automation.
- Collaborate with IT teams to ensure seamless integration of SecOps with ITOM and ITSM modules.
- Conduct threat analysis and recommend mitigation strategies.
- Support the development of security policies and procedures.
- Provide ongoing maintenance and support for SecOps functionalities.
- Document all customizations, workflows, and integrations for SecOps modules.
- Conduct training sessions for stakeholders on using SecOps modules effectively.
Requirements
- 3+ years of experience in ServiceNow SecOps implementation and administration.
- Proficiency in ServiceNow scripting and integration techniques.
- Knowledge of cybersecurity concepts and tools.
- ServiceNow Certified Implementation Specialist - SecOps certification preferred.
- Strong analytical and problem-solving skills.
- Experience with security tools like Splunk, Qualys, and Tenable.
- Familiarity with REST APIs and JSON for integrations.
- Knowledge of ITIL and security frameworks like NIST and ISO 27001.
- Experience developing playbooks for automated incident response.
- Proficiency in scripting languages like Python and JavaScript.
- Ability to create detailed technical documentation.
- Excellent communication and stakeholder management skills.
- Bachelor's degree in Cybersecurity, IT, or related field.
- Experience with vulnerability scanning and remediation processes.
- Knowledge of cloud security principles and tools.