drjobs Senior Manager Product Security | Secure Configuration

Senior Manager Product Security | Secure Configuration

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Orlando, FL - USA

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

**PLEASE NOTE This role requires a minimum of 2 days per week in the ServiceNow Office**

 

The ServiceNow Security Organization (SSO)

The ServiceNow Security Organization (SSO) delivers world-class innovative security solutions to reduce risk and protect the company and our customers. We enable our customers to migrate their most sensitive data and workloads to the cloud accelerating our business so that we are the most trusted SaaS provider. We create an environment where our employees are proud to work and can make a positive impact. 

The Team

The Secure Configuration team works closely with the development organization to drive a reduction of insecure product configuration. This team of Product Security engineers continuously analyze evolving product features/capabilities and determine criteria to achieve a hardened and secure configuration. Hardening baseline definitions are consumed by scanning capabilities and user enablement features to help system owners reduce security risk. 

The Role:

As a Sr. Manager of Product Security youll be responsible for overseeing a team that creates hardening guidance for upcoming ServiceNow product releases. This will require experience building business processes within software release lifecycles and an understanding of workflows related to Security Benchmarking. Youll work closely with Product Management and Development leaders to operationalize service hardening processes. 

What you get to do in this role:

  • Lead a team of experienced product security professionals focused on curating and developing hardening guidance that enables customers to reduce risk from insecure configuration 
  • Collaborate with software development leaders to optimize development lifecycle processes related to secure configuration 
  • Participate in security impactful feature-flag deprecation and customer migration efforts 
  • Work with Product Management teams to improve customer enablement workflows 

Qualifications :

In order to be successful in this role we need someone who has: 

  • Experience in leveraging or critically thinking about how to integrate AI into work processes decision-making or problem-solving. This may include using AI-powered tools automating workflows analyzing AI-driven insights or exploring AIs potential impact on the function or industry. 
  • 10 to 15 Years of experience in product security or development engineering team. 
  • Ideally 5 years of experience leading a product security or development engineering teams. 
  • 2 Years of experience with network and system security hardening including NIST STIG/SCAP and/or CIS Benchmark frameworks. 
  • In-depth knowledge of common web application vulnerabilities (OWASP Top Ten) and knowledge of common application security control evaluation frameworks (OWASP ASVS) recommended. 
  • Experience with Threat modeling and threat modeling tools recommended 
  • Strong verbal communication skills with an emphasis on application remediation processes 
  • Ability to deliver technical documentation and communicate technical concepts to both non-technical business users as well as technical stakeholders 
  • Excellent negotiation and conflict management skills 
  • Developer level proficiency in at least one language - Python Java or JavaScript preferred 
  • Knowledge of common compliance frameworks (e.g. FedRAMP NIST 800-53 ISO 27001) preferred. 
  • Degree in computer science / engineering informatics mathematics/statistics or equivalent work experience 

 

#SecurityJobs 

 


Additional Information :

Work Personas

We approach our distributed world of work with flexibility and trust. Work personas (flexible remote or required in office) are categories that are assigned to ServiceNow employees depending on the nature of their work and their assigned work location. Learn more here. To determine eligibility for a work persona ServiceNow may confirm the distance between your primary residence and the closest ServiceNow office using a third-party service.

Equal Opportunity Employer

ServiceNow is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race color creed religion sex sexual orientation national origin or nationality ancestry age disability gender identity or expression marital status veteran status or any other category protected by law. In addition all qualified applicants with arrest or conviction records will be considered for employment in accordance with legal requirements. 

Accommodations

We strive to create an accessible and inclusive experience for all candidates. If you require a reasonable accommodation to complete any part of the application process or are unable to use this online application and need an alternative method to apply please contact for assistance. 

Export Control Regulations

For positions requiring access to controlled technology subject to export control regulations including the U.S. Export Administration Regulations (EAR) ServiceNow may be required to obtain export control approval from government authorities for certain individuals. All employment is contingent upon ServiceNow obtaining any export license or other approval that may be required by relevant export control authorities. 

From Fortune. 2025 Fortune Media IP Limited. All rights reserved. Used under license. 


Remote Work :

No


Employment Type :

Full-time

Employment Type

Full-time

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.