ServiceNow IRM Developer

ANSI LOGIC LLC
New York, NY, United States
about 1 month ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Compensation
$103,938.0 - $125,174.0
Working hours
Regular working hours
Languages
English
Job source

Tech stack

Computer-Aided Design Application Programming Interfaces (APIs) Cyber Security Data Migration OAuth PCI Data Security Standards Simple Object Access Protocol (SOAP) Software Engineering Client Side Scripting Restful APIs Servicenow

Job description

  • Configure and extend ServiceNow IRM across Policy and Compliance, Risk Management, Audit Management, and Vendor Risk Management.
  • Build against the IRM data model: sn_grc_item, sn_grc_profile, sn_grc_profile_type, sn_grc_issue, sn_grc_indicator, sn_grc_indicator_template, sn_grc_indicator_result, sn_compliance_policy, sn_compliance_control, sn_compliance_authority_document, sn_compliance_citation, sn_compliance_control_test, sn_risk_risk, sn_risk_advanced_risk, sn_audit_engagement.
  • Design entity and profile structures that scale, instead of flattening attributes onto custom fields.
  • Deliver ITSM configuration across incident, problem, change_request, sc_req_item, sc_task, and cmdb_ci.
  • Build data migration pipelines using sys_data_source, sys_import_set_row, sys_transform_map, sys_transform_entry, and Robust Transform Maps.
  • Run field rationalisation and data model reviews before build starts, and defend the model when business pressure pushes toward custom field sprawl.
  • Write Business Rules, Script Includes, Flow Designer flows, Integration Hub spokes, ACLs, UI Policies, and Client Scripts to platform standards.
  • Build continuous control monitoring: indicators, indicator templates, control tests, and automated evidence collection.
  • Integrate via Table API, Import Set API, Scripted REST APIs, and OAuth 2.0.
  • Support UAT, cutover, and hypercare through to steady state.

Requirements

  • 4+ years hands-on ServiceNow development, including 2+ years on IRM or legacy GRC.
  • Strong server-side and client-side scripting: GlideRecord, GlideAggregate, GlideAjax, Script Includes, Business Rules, Flow Designer.
  • Working command of sys_dictionary, sys_dictionary_override, sys_choice, ACL design, and table extension behaviour.
  • REST and SOAP integration experience, both inbound and outbound.
  • Ability to read a control framework such as SOX, NIST CSF, ISO 27001, PCI DSS, or CMMC, and translate it into platform configuration.
  • Clear written English and the confidence to run a working session with a client directly., * Required: ServiceNow Certified System Administrator (CSA), currently active.
  • Plus at least one active Certified Implementation Specialist credential in Risk and Compliance, Third Party Risk Management, and or IT Service Management.
  • Submit your ServiceNow certification transcript or Credly profile links with your application.

Preferred

  • Hands-on data migration from a legacy GRC platform into ServiceNow. Archer, MetricStream, LogicGate, OpenPages, or LockPath. Tell us what you moved and what broke.
  • Experience with certified migration accelerators such as Precision Bridge Archer Migrator.
  • Audit Management delivery for an internal audit function, including engagement planning and working papers.
  • TPRM or Vendor Risk implementation experience.
  • Additional credentials: CAD, CTA, CMA, or CIS in Discovery, ITOM, or SecOps.
  • Regulated industry exposure, particularly financial services.
  • Domain separation, scoped application development, and Now Assist experience.

Work authorisation

You must be authorised to work in the United States without current or future visa sponsorship. ANSI Logic does not provide sponsorship for this role.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:48 min

Balancing developer self-service with strict compliance requirements

Amir Friedman Amir Friedman +2 · World Congress 2025

2:59 min

The danger of adopting default REST APIs

Stefan Priebsch · World Congress 2021

56 sec

Integrating automated approval workflows into the portal

Markus Eisele Markus Eisele · World Congress 2025

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

3:34 min

Approaching language models as scalable synchronous rest APIs

Patrick Koss Patrick Koss · World Congress 2025

2:27 min

Establishing a simulated technical environment for the workflow demo

Tobias Dunn-Krahn · LIVE

Videos

See all

Related articles

See all