ServiceNow Consultant – SecOps/VR

Herndon, Virginia

  ServiceNow - Developer

Contract

Our client, a leading IT consulting firm, is hiring a ServiceNow Consultant with strong SecOps and Vulnerability Response (VR) expertise for a remote 3–6 month contract. The successful candidate will work on a greenfield project supporting a Cloud customer, including future on-prem integrations, while contributing to innovative initiatives that strengthen enterprise security and operational efficiency.

Responsibilities

  • Configure, enhance and optimize the ServiceNow Vulnerability Response (VR) module.

  • Develop workflows and automation to manage vulnerability triage, prioritization, assignment and remediation tracking.

  • Build custom dashboards, reports and metrics to track KPIs and SLA performance.

  • Implement and maintain correlation rules linking vulnerability items with CMDB configuration items (CIs).

  • Work closely with cybersecurity, infrastructure and application teams to align remediation processes with enterprise risk management objectives.

  • Customize and support SecOps modules, including Security Incident Response (SIR), VR and Threat Intelligence.

  • Integrate ServiceNow with external tools such as SIEM platforms, email security gateways and vulnerability scanners.

  • Design orchestration workflows to automate threat detection and response.

  • Develop scripts, business rules, notifications, and dashboards to enhance visibility of threats and vulnerabilities.

  • Administer and secure MID Servers to facilitate on-premises communication.

Skillset

  • Bachelor’s degree with at least 5 years of ServiceNow development experience, focused on Vulnerability Response (VR) and SecOps.

  • Extensive expertise in the SecOps and VR Suite modules.

  • Proven experience with REST APIs, IntegrationHub, data import sets, MID Server management and Orchestration.

  • Hands-on experience integrating ServiceNow with vulnerability and security tools such as Tenable, Qualys, Splunk and QRadar.

  • Strong understanding of cybersecurity principles, vulnerability lifecycle management and risk assessment.

  • Proficient in scripting using JavaScript, Glide API and PowerShell, with experience administering MID Servers.

  • Excellent analytical skills, attention to detail and ability to communicate effectively with stakeholders.

  • Relevant certifications e.g. CSA, CIS–VR, CIS–GRC, CIS–SecOps, Security+, GCIH are a bonus.

55633