Senior Staff Information Security Engineer

ServiceNow

ServiceNow

IT
Atlanta, GA, USA
Posted 6+ months ago

Company Description

It all started in sunny San Diego, California in 2004 when a visionary engineer, Fred Luddy, saw the potential to transform how we work. Fast forward to today — ServiceNow stands as a global market leader, bringing innovative AI-enhanced technology to over 8,100 customers, including 85% of the Fortune 500®. Our intelligent cloud-based platform seamlessly connects people, systems, and processes to empower organizations to find smarter, faster, and better ways to work. But this is just the beginning of our journey. Join us as we pursue our purpose to make the world work better for everyone.

Job Description

The ServiceNow Security Organization delivers world-class, innovative security solutions to reduce risk and protect the company and our customers. We enable our customers to migrate their most sensitive data and workloads to the cloud, accelerating our business so that we are the most trusted SaaS provider. We create an environment where our employees are proud to work and can make a positive impact.

Team

This position reports to the Director, Security Engineering. The Enterprise Security Engineering team targets building state-of-the-art technology that will help reduce the risk surrounding the sensitive assets of the company with the least impact possible on operations, acts as guidance and facilitator to the security operations teams and helps shifting Security perception from blocker to enabler by building a relationship of trust with the other teams.

Role

The Senior Staff Information Security Engineer will serve as a technical subject matter expert within the Infrastructure Security team, responsible for engineering solutions that secure ServiceNow’s core enterprise infrastructure. This includes network, server, authentication systems, certificates, and operational tooling. You will drive strategic initiatives that prevent threats, reduce operational risk, and enhance resilience across infrastructure services.

What you get to do in this role:

  • Define and execute the technical strategy for securing infrastructure, aligned to risk and business needs
  • Lead efforts to harden network and server infrastructure against unauthorized access, misconfigurations, and malware
  • Architect and implement scalable and automated security controls across authentication, system configurations, and monitoring pipelines
  • Drive secure deployment and management of on-prem containerized environments (e.g., Kubernetes)
  • Establish controls and visibility to manage certificate lifecycle and prevent expiration-related risks
  • Champion operational excellence through automation, outage reduction, and service resilience improvements
  • Represent Infrastructure Security in architecture reviews, incident response, and compliance initiatives
  • Mentor and develop other engineers, influencing secure engineering practices across teams
  • Stay current with industry threats, trends, and mitigation techniques related to infrastructure security

Qualifications

To be successful in this role you have:

Required Skills:

  • Experience in leveraging or critically thinking about how to integrate AI into work processes, decision-making, or problem-solving. This may include using AI-powered tools, automating workflows, analyzing AI-driven insights, or exploring AI's potential impact on the function or industry.
  • Master’s degree in computer science; engineering, or information technology or equivalent industry experience
  • 10+ years of relevant hands-on engineering experience
  • Deep experience with operating system and server security (Linux, Windows)
  • Advanced knowledge of enterprise networking and secure network architectures
  • Proficiency in scripting and automation (Python, Bash, Go, etc.)

Desirable Skills:

  • Experience in working with web and database services (REST APIs, JSON, XML, SQL)
  • Experience in working with Splunk and SPL (or other SIEM/Log management systems)
  • Experience in working with cryptography (PKI, TLS, VPNs, secure credential management, disk encryption, certificate and code signing)
  • Experience with infrastructure-as-code and configuration management tools such as Puppet and Ansible to automate system hardening and policy enforcement.
  • Experience in working with hardware virtualization (bare metal servers, storage, load balancing, virtual networking using VMware, Citrix, Hyper-V, etc.)
  • Planning hardware and software system upgrades and configuration changes
  • Automating operations and capacity planning
  • System performance tuning and service monitoring
  • System and software debugging experience with strong troubleshooting skills
  • Familiarity with regulatory and industry certifications (FedRAMP, NIST 800-53, NIST CSF, SOC 2, SOX and GDPR)
  • Ability to analyze and assess complex problems quickly and efficiently
  • Growth mindset approach: hungry and humble with the ability to lead and train others
  • Ability to thrive in a dynamic, driven, fast-paced environment

#SecurityJobs

Not sure if you meet every qualification? We still encourage you to apply! We value inclusivity, welcoming candidates from diverse backgrounds, including non-traditional paths. Unique experiences enrich our team, and the willingness to dream big makes you an exceptional candidate!

Additional Information

Work Personas

We approach our distributed world of work with flexibility and trust. Work personas (flexible, remote, or required in office) are categories that are assigned to ServiceNow employees depending on the nature of their work. Learn more here.

Equal Opportunity Employer

ServiceNow is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, creed, religion, sex, sexual orientation, national origin or nationality, ancestry, age, disability, gender identity or expression, marital status, veteran status, or any other category protected by law. In addition, all qualified applicants with arrest or conviction records will be considered for employment in accordance with legal requirements.

Accommodations

We strive to create an accessible and inclusive experience for all candidates. If you require a reasonable accommodation to complete any part of the application process, or are unable to use this online application and need an alternative method to apply, please contact [email protected] for assistance.

Export Control Regulations

For positions requiring access to controlled technology subject to export control regulations, including the U.S. Export Administration Regulations (EAR), ServiceNow may be required to obtain export control approval from government authorities for certain individuals. All employment is contingent upon ServiceNow obtaining any export license or other approval that may be required by relevant export control authorities.

From Fortune. ©2024 Fortune Media IP Limited. All rights reserved. Used under license.