Hi ,
Role - ServiceNow SecOps Business Process Consultant
Location – North Carolina, US (Remote work is also fine, but the candidate must be able to go to the office when required)
Duration: 6+ Months Contract
ServiceNow SecOps Business Process Consultant – Job Description
Role Overview
The ServiceNow SecOps Business Process Consultant (BPC) is responsible for driving security operations transformation by aligning enterprise security processes with ServiceNow SecOps capabilities.
The role focuses on process consulting, requirement gathering, and functional solution design to enhance security visibility, risk mitigation, and incident response effectiveness.
Key Responsibilities
- Engage stakeholders to capture and document SecOps business requirements
- Translate requirements into functional designs and ServiceNow SecOps solutions
- Design and implement security processes:
- Security Incident Response (SIR)
- Vulnerability Response (VR)
- Threat Intelligence & Risk Management (derived from SecOps context in enterprise content)
- Drive end-to-end security workflow automation (detection → response → remediation)
- Conduct workshops, process assessments, and gap analysis (As-Is vs To-Be)
- Enable integration of third-party security tools (SIEM, scanners, threat feeds)
- Define security KPIs, SLAs, and governance frameworks
- Build dashboards and reports for security posture, vulnerabilities, and incident trends
- Collaborate with technical teams to ensure functional alignment during implementation
- Support pre-sales, demos, and security roadmap discussions
Required Skills & Experience
- 5–10+ years overall experience with 3–5 years in SecOps / Security consulting on ServiceNow (aligned to similar enterprise BPC roles)
- Strong understanding of:
- Security Incident Management
- Vulnerability Management
- Risk & Compliance (GRC/IRM exposure is beneficial)
- Experience in:
- Business process re-engineering
- Security workflow optimization & governance
- Strong stakeholder management across:
- Security teams (SOC)
- IT operations
- Risk & compliance teams
Technical & Functional Exposure
- Functional knowledge of:
- SecOps modules (SIR, Vulnerability Response)
- Understanding of:
- Flow Designer, Business Rules (functional level)
- Integrations with security tools (SIEM, scanners)
- Exposure to ITSM/ITOM integration for incident correlation & impact analysis
Certifications
- ServiceNow CSA9
- CIS–Security Incident Response (CIS-SIR) / CIS-VR(Mandatory)
- Security certifications (CEH, CISSP – added advantage)