> Markdown version of [/jobs/ext/1409824-servicenow-irm-developer](https://www.wearedevelopers.com/jobs/ext/1409824-servicenow-irm-developer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # ServiceNow IRM Developer - **Company:** ANSI LOGIC LLC - **Location:** New York, NY, United States - **Experience:** Experienced - **Salary:** $103,938.0 - $125,174.0 - **Contract:** Permanent contract - **Skills:** Computer-Aided Design, Application Programming Interfaces (APIs), Cyber Security, Data Migration, OAuth, PCI Data Security Standards, Simple Object Access Protocol (SOAP), Software Engineering, Client Side Scripting, Restful APIs, Servicenow - **Published:** July 23, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=d085b23e3305c1a8 ## About the Role * 4+ years hands-on ServiceNow development, including 2+ years on IRM or legacy GRC. * Strong server-side and client-side scripting: GlideRecord, GlideAggregate, GlideAjax, Script Includes, Business Rules, Flow Designer. * Working command of sys_dictionary, sys_dictionary_override, sys_choice, ACL design, and table extension behaviour. * REST and SOAP integration experience, both inbound and outbound. * Ability to read a control framework such as SOX, NIST CSF, ISO 27001, PCI DSS, or CMMC, and translate it into platform configuration. * Clear written English and the confidence to run a working session with a client directly., * Required: ServiceNow Certified System Administrator (CSA), currently active. * Plus at least one active Certified Implementation Specialist credential in Risk and Compliance, Third Party Risk Management, and or IT Service Management. * Submit your ServiceNow certification transcript or Credly profile links with your application. Preferred * Hands-on data migration from a legacy GRC platform into ServiceNow. Archer, MetricStream, LogicGate, OpenPages, or LockPath. Tell us what you moved and what broke. * Experience with certified migration accelerators such as Precision Bridge Archer Migrator. * Audit Management delivery for an internal audit function, including engagement planning and working papers. * TPRM or Vendor Risk implementation experience. * Additional credentials: CAD, CTA, CMA, or CIS in Discovery, ITOM, or SecOps. * Regulated industry exposure, particularly financial services. * Domain separation, scoped application development, and Now Assist experience. Work authorisation You must be authorised to work in the United States without current or future visa sponsorship. ANSI Logic does not provide sponsorship for this role. ## Description * Configure and extend ServiceNow IRM across Policy and Compliance, Risk Management, Audit Management, and Vendor Risk Management. * Build against the IRM data model: sn_grc_item, sn_grc_profile, sn_grc_profile_type, sn_grc_issue, sn_grc_indicator, sn_grc_indicator_template, sn_grc_indicator_result, sn_compliance_policy, sn_compliance_control, sn_compliance_authority_document, sn_compliance_citation, sn_compliance_control_test, sn_risk_risk, sn_risk_advanced_risk, sn_audit_engagement. * Design entity and profile structures that scale, instead of flattening attributes onto custom fields. * Deliver ITSM configuration across incident, problem, change_request, sc_req_item, sc_task, and cmdb_ci. * Build data migration pipelines using sys_data_source, sys_import_set_row, sys_transform_map, sys_transform_entry, and Robust Transform Maps. * Run field rationalisation and data model reviews before build starts, and defend the model when business pressure pushes toward custom field sprawl. * Write Business Rules, Script Includes, Flow Designer flows, Integration Hub spokes, ACLs, UI Policies, and Client Scripts to platform standards. * Build continuous control monitoring: indicators, indicator templates, control tests, and automated evidence collection. * Integrate via Table API, Import Set API, Scripted REST APIs, and OAuth 2.0. * Support UAT, cutover, and hypercare through to steady state. ## Related Videos - [Applying Agile Principles to Incident Management ](https://www.wearedevelopers.com/videos/101-applying-agile-principles-to-incident-management) - [Rest API Antipatterns](https://www.wearedevelopers.com/videos/100208-rest-api-antipatterns) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [REST In Peace: Why LLMs Can't CRUD](https://www.wearedevelopers.com/videos/100272-rest-in-peace-why-llms-can-t-crud) - [AI in Production: applied AI & enterprise use cases](https://www.wearedevelopers.com/videos/100130-ai-in-production-applied-ai-enterprise-use-cases) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Why Attend a Developer Event in 2026?](https://www.wearedevelopers.com/magazine/688-why-attend-a-developer-event-in-2026) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [What Makes WeAreDevelopers World Congress Different From Every Other Tech Event?](https://www.wearedevelopers.com/magazine/701-what-makes-wearedevelopers-world-congress-different-from-every-other-tech-event) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)