Overview
Skills
Job Details
Job Title:Sr. ServiceNow Security & Compliance Solution Architect/Developer
Location: Washington, DC
Job Type: Contract (Only W2)
About the Role:
We are seeking a highly experienced Senior ServiceNow Security & Compliance Solution Architect/Developer with over 12 years of IT experience and deep expertise in designing, developing, and optimizing enterprise-grade security, risk, and compliance solutions on the ServiceNow platform. You will serve as the key architect and technical lead in advancing our security operations, GRC, and automation strategies through scalable, secure, and compliant ServiceNow solutions.
Key Responsibilities:
Lead the architecture, design, and implementation of ServiceNow Security Operations (SecOps) and GRC modules across enterprise environments.
Architect and develop solutions for modules such as:
Security Incident Response (SIR)
Vulnerability Response (VR)
Threat Intelligence
Policy and Compliance Management
Risk and Audit Management
Define roadmaps and strategies for integrating external security platforms (e.g., Qualys, Rapid7, Splunk, CrowdStrike, Tenable) with ServiceNow using REST/SOAP APIs, MID servers, and orchestration workflows.
Collaborate with CISOs, InfoSec, compliance officers, and audit teams to design automated, regulatory-compliant workflows (e.g., SOX, ISO 27001, NIST 800-53, GDPR, FedRAMP).
Champion best practices in secure coding, data protection, and access controls (ACLs) within ServiceNow.
Provide leadership in platform governance, DevSecOps, CI/CD pipeline integration, and tenant-aware configurations.
Lead and mentor a team of developers and analysts; conduct code reviews and performance optimizations.
Deliver dashboards, analytics, and performance indicators for real-time visibility and executive reporting.
Drive platform upgrades, patching, and instance management to ensure continuity and security.
Required Qualifications:
12+ years of overall IT experience, with 5+ years in ServiceNow development and architecture.
Deep hands-on experience with ServiceNow Security Operations and GRC Suite.
Expertise in scripting: JavaScript, Glide APIs, Flow Designer, Business Rules, Script Includes, Client Scripts.
Solid understanding of ITSM, CMDB, and process alignment with security and risk.
Proven experience with integrating security tools (e.g., Tenable, Rapid7, CrowdStrike, Qualys, etc.)
Strong knowledge of security frameworks: NIST, ISO, CIS, COBIT, PCI DSS.
Expertise in platform-level security: encryption, ACLs, secure token management, data segregation, and audit trails.
Preferred Certifications:
ServiceNow Certified Implementation Specialist SecOps
ServiceNow Certified Implementation Specialist GRC
ServiceNow Certified Application Developer
ServiceNow Certified System Administrator
Any relevant security certification: CISSP, CISM, CISA, CEH (nice to have)
Soft Skills & Leadership:
Strong leadership and architectural thinking
Excellent communication and stakeholder management skills
Experience leading large-scale ServiceNow implementations across multi-geo environments
Ability to influence security strategy and drive cross-functional collaboration