ServiceNow OT Security / Vulnerability Response Solution Architect

Iconma LLC
  • CA
    11 days ago

    Job Description

    Our client, a IT Services and Consulting company, is looking for a ServiceNow OT Security / Vulnerability Response Solution Architect for their Remote location.

    Responsibilities:

    • Integration Architecture & Development
    • Design and build bidirectional integrations between ServiceNow and Tanium, Maximo, Forescout, and Qualys using REST/SOAP APIs, MID Servers, IntegrationHub spokes, and custom scripted APIs.
    • Ensure data integrity and synchronization for asset, configuration, and vulnerability data flowing between ServiceNow CMDB/CSDM and source systems.
    • Build and maintain integration error handling, retry logic, logging, and monitoring/alerting for all connected systems.
    • Map and normalize data schemas across platforms (e.g., Qualys QID to ServiceNow Vulnerable Item, Forescout device classification to CMDB CI, Tanium asset/patch data to CI attributes, Maximo asset/work order data to OT asset records).
    • Vulnerability Management Process Automation
    • Architect and automate the full vulnerability management lifecycle in ServiceNow: ingestion asset/CI correlation risk scoring/prioritization assignment remediation workflow verification closure.
    • Build ServiceNow Flow Designer/Workflow automations to orchestrate remediation tasks, approvals, exception/riskacceptance processes, and SLAbased escalations.
    • Configure automated ticketing and work order creation in Maximo for OT asset remediation, tied back to ServiceNow vulnerability records.
    • Implement automated network segmentation/containment triggers leveraging Forescout for highrisk or unpatchable OT assets.
    • Build logic to reconcile Tanium patch/configuration data with Qualys scan results to reduce false positives and validate remediation.
    • Documentation & Audit Trail
    • Configure ServiceNow to automatically document all actions taken (system and human) across the vulnerability lifecycle - including timestamps, source system, decision rationale, approvals, and remediation evidence - to support audit, compliance, and regulatory reporting (e.g., IEC 62443, NIST 80082).
    • Build reporting dashboards and performance analytics (MTTR, SLA compliance, risk exposure trends) using ServiceNow Performance Analytics/Reporting.
    • Maintain integration and workflow documentation, runbooks, and data flow diagrams.
    • OTSpecific Considerations
    • Apply OTappropriate remediation strategies (compensating controls, segmentation, virtual patching) when direct patching is not feasible due to safety, uptime, or vendor constraints.
    • Partner with OT engineering and plant/site teams to validate that automated actions do not disrupt production or safety systems.
    • Maintain a unified IT/OT asset and vulnerability inventory within the ServiceNow CMDB/CSDM.
    • Collaboration & Governance
    • Work with Security Operations, IT, OT Engineering, and Compliance teams to define workflow requirements, escalation paths, and risk acceptance criteria.
    • Support change management and testing (dev/test/prod) for all integration and workflow changes.
    • Provide subject matter expertise on ServiceNow Vulnerability Response and OT Security module capabilities and roadmap.

    Requirements:

    • 4+ years of experience administering or engineering on the ServiceNow platform, including: Vulnerability Response (VR) and/or OT/IoT Security modules; Flow Designer / Workflow Editor; Integration Hub, REST/SOAP Message integrations, MID Server configuration; CMDB/CSDM data modeling.
    • Demonstrated experience building twoway integrations with two or more of the following: Tanium, Qualys, Forescout, Maximo (or comparable CMMS/EAM).
    • Solid understanding of vulnerability management lifecycle concepts: scanning, risk scoring (CVSS/VPR), prioritization, remediation SLAs, and exception management.
    • Working knowledge of OT/ICS/SCADA environments and the operational constraints that differentiate OT vulnerability management from traditional IT patching.
    • Experience with JavaScript (Glide API, Scripted REST APIs, Business Rules) for custom ServiceNow development.
    • Strong understanding of API authentication methods (OAuth2, mutual TLS, API keys) and secure integration design.
    • Excellent documentation skills and ability to translate technical workflows into auditready records.
    • Years of Experience: 17.00 Years of Experience
    • ServiceNow certifications: CSA (Certified System Administrator; CISVR (Vulnerability Response), or CISSecOps, OT Discovery and OT VM Certifications

    Why Should You Apply?

    • Health Benefits
    • Referral Program
    • Excellent growth and advancement opportunities

    Numbers & Facts

    LocationCA

    Skills

    • Application Programming Interface (API)unmatched
    • Authenticationunmatched
    • Automationunmatched
    • Change Managementunmatched
    • Computer Securityunmatched
    • Computerized Maintenance Management System (CMMS)unmatched
    • Data Modelingunmatched
    • Data Qualityunmatched
    • Documentationunmatched
    • Error Handlingunmatched
    • Establish Prioritiesunmatched
    • Health Planunmatched
    • IBM Maximo Asset Managementunmatched
    • Information Technology & Information Systemsunmatched
    • Information Technology Consultingunmatched
    • International Electro-Technical Commission (IEC)unmatched
    • Internet of Thingsunmatched
    • JavaScriptunmatched
    • Multiplatform/Cross-Platformunmatched
    • OAuthunmatched
    • Performance Analysisunmatched
    • Product Lifecycleunmatched
    • Product Testingunmatched
    • Production Systemsunmatched
    • REST (Representational State Transfer)unmatched
    • Regulatory Complianceunmatched
    • Regulatory Reportsunmatched
    • Reporting Dashboardsunmatched
    • Requirements Managementunmatched
    • Riskunmatched
    • SOAP (Simple Object Access Protocol)unmatched
    • SSL-TLS (Secure Socket Layer - Transport Layer Security)unmatched
    • Safety Systemsunmatched
    • Scripting (Scripting Languages)unmatched
    • Service Level Agreement (SLA)unmatched
    • ServiceNowunmatched
    • Software Patchesunmatched
    • Supervisory Control and Data Acquisition (SCADA)unmatched
    • Systems Administration/Managementunmatched
    • Testingunmatched
    • Trend Analysisunmatched
    • U.S. National Institute of Standards and Technology (NIST)unmatched
    • Virtual Machine (VM)unmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder