ServiceNow GRC Consultant
Role details
Job location
Tech stack
Job description
- Configure and manage application security controls within ServiceNow Continuous Authorization (CAM) and GRC modules
- Partner with application managers to ensure required controls are properly implemented and maintained
- Support a critical security plan initiative for enterprise applications within a broader cybersecurity program
- Translate security and governance requirements into functional ServiceNow controls in collaboration with technical teams
- Assist with governance, risk, and compliance activities aligned with frameworks such as NIST and SOC 2
- Collaborate cross-functionally with cybersecurity, application, and ServiceNow teams to ensure control effectiveness and alignment
Requirements
We are seeking a mid-level ServiceNow professional to support a Cyber Risk Management and Governance team in implementing and maintaining application security controls. This role plays a key part in a high-visibility security initiative, focusing on configuring and validating controls within ServiceNowâs Continuous Authorization (CAM) and GRC modules.
This is an excellent opportunity for someone with a strong ServiceNow background and an interest in cybersecurity, governance, and risk management within enterprise environments., * 4â7 years of hands-on experience with ServiceNow, with a focus on GRC and/or Continuous Authorization (CAM) modules
- Strong understanding of ServiceNow architecture and core platform capabilities
- Familiarity with security governance frameworks (e.g., NIST); exposure to SOC 2 is a plus
- Working knowledge of identity and access management concepts (e.g., Okta, MFA, Zero Trust)
- Strong analytical and problem-solving skills with a proactive, detail-oriented mindset
- Ability to communicate effectively with both technical and non-technical stakeholders
Benefits & conditions
- Standard background check required
- Timesheets managed via Vertex system
- NDA required prior to interview process
If you're a ServiceNow professional looking to deepen your impact in cybersecurity and governance, this role offers meaningful work on enterprise-level initiatives within a collaborative environment.