Raleigh, NC, 27608, USA
18 hours ago
Senior Application Security Engineer
It all started in sunny San Diego, California in 2004 when a visionary engineer, Fred Luddy, saw the potential to transform how we work. Fast forward to today — ServiceNow stands as a global market leader, bringing innovative AI-enhanced technology to over 8,100 customers, including 85% of the Fortune 500®. Our intelligent cloud-based platform seamlessly connects people, systems, and processes to empower organizations to find smarter, faster, and better ways to work. But this is just the beginning of our journey. Join us as we pursue our purpose to make the world work better for everyone. The ServiceNow Security Organization delivers world-class, innovative security solutions to reduce risk and protect the company and our customers. We enable our customers to migrate their most sensitive data and workloads to the cloud, accelerating our business so that we are the most trusted SaaS provider. We create an environment where our employees are proud to work and can make a positive impact. This critical position values integrity, quality, expertise, precision, communication, and efficiency and is looking for security professionals with developing to established security backgrounds and excellent communications. As a Senior Application Security Engineer on the Global Security Support Center Application Security team, you will be responsible for investigating reported application security vulnerabilities. In this role you will work with customers, external security researchers, and developers to understand & document reported vulnerabilities. Success in this role requires web application security knowledge, analytical debugging skills, strong communication skills, and strong programming language proficiency. **What you get to do in this role:** + Investigate ServiceNow's products to discover, communicate, and recommend remediation activities for software vulnerabilities. + Help customers improve the security posture of their environments, prepare to pentest their environment, and deal with respective regulatory requirements. + Review, test, and confirm security findings reported by customers and ensure they fully understand the finding outcomes. + Report problems based on confirmed security findings. + Contribute to architecting roadmaps for ServiceNow's Customer Penetration Testing & Security Finding program + Aide in development efforts by testing the proposed solutions for confirmed vulnerabilities within the ServiceNow platform. **_This position requires passing a ServiceNow background screening, USFedPASS (US Federal Personnel Authorization Screening Standards). This includes a credit check, criminal/misdemeanor check and taking a drug test. Any employment is contingent upon passing the screening. Due to Federal requirements, only US citizens, US naturalized citizens or US Permanent Residents, holding a green card, will be considered._** **To be successful in this role you have:** + 4+ years of working in Cyber Security or adjacent role(s) + 3+ years of ServiceNow experience; ServiceNow's "Certified System Administrator" certification preferred + In-depth knowledge of common web application vulnerabilities (OWASP Top Ten) + Developer level proficiency in at least one language - Python, Java, or JavaScript preferred + A bachelor's degree in computer Science or equivalent project/work experience + A strong understanding of web (or mobile) application security assessment techniques + Excellent communication skills and can articulate complex issues to peers, executives, and customers + Strong interpersonal skills + The ability to perform and excel with little supervision; self-motivated and driven + Excellent collaboration skills; the ability to foster and feed off coworkers + Win As a Team attitude; are a great team player + A passion for security + Offensive Security OSWE and/or OSCP certification(s) a plus **\#SecurityJobs** _Not sure if you meet every qualification? We still encourage you to apply! We value inclusivity, welcoming candidates from diverse backgrounds, including non-traditional paths. Unique experiences enrich our team, and the willingness to dream big makes you an exceptional candidate!_ **Work Personas** We approach our distributed world of work with flexibility and trust. Work personas (flexible, remote, or required in office) are categories that are assigned to ServiceNow employees depending on the nature of their work. Learn more here (https://www.servicenow.com/content/dam/servicenow-assets/public/en-us/doc-type/other-document/careers/new-world-of-work-personas.pdf) . **Equal Opportunity Employer** ServiceNow is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, creed, religion, sex, sexual orientation, national origin or nationality, ancestry, age, disability, gender identity or expression, marital status, veteran status, or any other category protected by law. In addition, all qualified applicants with arrest or conviction records will be considered for employment in accordance with legal requirements. **Accommodations** We strive to create an accessible and inclusive experience for all candidates. If you require a reasonable accommodation to complete any part of the application process, or are unable to use this online application and need an alternative method to apply, please contact globaltalentss@servicenow.com for assistance. **Export Control Regulations** For positions requiring access to controlled technology subject to export control regulations, including the U.S. Export Administration Regulations (EAR), ServiceNow may be required to obtain export control approval from government authorities for certain individuals. All employment is contingent upon ServiceNow obtaining any export license or other approval that may be required by relevant export control authorities. From Fortune. ©2024 Fortune Media IP Limited. All rights reserved. Used under license.
Confirm your E-mail: Send Email