Summary
Join ServiceNow's Product Security team and play a key role in enhancing the security of our platform and applications. You will identify strategic security focus areas, lead security discussions with engineering teams, and participate in research to discover new attack vectors. Responsibilities include performing application security testing, auditing source code, identifying and recommending remediation for vulnerabilities. This role requires extensive experience in application security testing, coding proficiency, and a deep understanding of application security vulnerabilities and testing methodologies. The ideal candidate will also possess experience with AI integration and excellent communication skills.
Requirements
- Experience in leveraging or critically thinking about how to integrate AI into work processes, decision-making, or problem-solving. This may include using AI-powered tools, automating workflows, analyzing AI-driven insights, or exploring AIβs potential impact on the function or industry
- A passion for Security
- 10+ years of experience in an application security testing role
- Coding experience and developer proficiency in at least one language: Java, Python or Javascript
- In-depth knowledge of application security vulnerabilities and testing methodologies
- Experience with manual source code review in languages such as: Java, JavaScript, Python, Ruby or PHP
- Deep understanding of web application architecture and design principles
- Ability to communicate technical concepts to both non-technical business users as well as technical stakeholders is required
Responsibilities
- Identify the important strategic product security focus areas for the team
- Help lead security discussions with the other engineering teams
- Participate in research to identify new attack vectors and adopt new methodologies
- Perform application security testing on ServiceNow products
- Audit source code of the platform and applications
- Identify, communicate, and recommend remediation of Security Vulnerabilities
Preferred Qualifications
- Worked in a Product Security team is a plus
- Knowledge of ServiceNow Scripting is an advantage