ServiceNow Vulnerability Response Engineer
Openkyber
Role: Vulnerability Management Specialist
Location : Springfield, VA ( Springfield, Virginia: Minimum three (3) days per week in office, mandatory.
Duration: 12 months
Interview Process/# of Rounds: Targeting 1 round, but might go into 2
Additional Notes: Why the role is open: Standing up an internial AI practice.
Job Title: Contractor, Vulnerability Management
Reporting Relationship: Reports to the Practice Lead, Vulnerability Management
PRIMARY DUTIES
Strategy & Planning Support the execution and continuous improvement of the enterprise Vulnerability Management Program. Assist in developing vulnerability management standards, procedures, metrics, and reporting processes. Work with cybersecurity architecture and engineering teams to identify systemic security gaps and recommend remediation strategies. Provide subject matter expertise to project teams throughout project lifecycles to ensure security vulnerabilities are appropriately addressed. Participate in risk discussions and provide recommendations regarding remediation prioritization and compensating controls.
Acquisition & Deployment Support deployment, configuration, and optimization of vulnerability management and security assessment technologies. Assist with onboarding new environments, applications, and cloud services into the vulnerability management program. Support implementation and operation of Breach and Attack Simulation (BAS) capabilities to validate security controls and identify opportunities for improvement. Collaborate with cloud, infrastructure, and application teams to improve security posture and vulnerability visibility.
Operational Management Conduct vulnerability assessments across infrastructure, cloud, and application environments. Analyze, validate, and prioritize vulnerabilities based on risk, exploitability, business impact, and threat intelligence. Coordinate remediation activities with project teams, technical teams, managed service providers, and third-party vendors. Track remediation progress and escalate high-risk issues as required. Facilitate vulnerability review meetings and drive accountability for remediation commitments. Utilize ServiceNow to manage workflows, remediation tracking, exception management, and reporting activities. Generate operational and executive reporting that communicates vulnerability trends, risk exposure, remediation performance, and program effectiveness. Support audits, assessments, penetration tests, and regulatory reviews related to cyber security controls. Collaborate with Cyber Operations, Cyber Risk Management, Architecture, Infrastructure, and Application Delivery teams to ensure vulnerabilities are addressed in a manner that balances security, operational reliability, and project delivery objectives. Assist in validating remediation efforts and confirming closure of identified vulnerabilities. Support continuous improvement initiatives aimed at reducing organizational risk and improving security posture.
QUALIFICATIONS, SKILLS & ABILITIES
Technical Attributes
Required Experience 7+ years of cyber security, vulnerability management, or security operations experience. Demonstrated experience managing enterprise vulnerability remediation programs. Hands-on experience with Qualys Vulnerability Management. Experience with Breach and Attack Simulation (BAS) technologies. Experience with Microsoft security technologies, including: Microsoft Defender, Microsoft Cloud Security Posture Management (CSPM), Azure, Azure DevOps (ADO). Experience with ServiceNow workflow management and reporting. Experience supporting cloud security and vulnerability management initiatives. Experience working within large enterprise environments with diverse technology ecosystems. Strong understanding of vulnerability prioritization methodologies and risk-based remediation approaches. Knowledge of cybersecurity frameworks and industry best practices, including NIST.
Preferred Experience Experience supporting utility, critical infrastructure, energy, or industrial organizations. Experience leveraging threat intelligence to prioritize remediation activities. Experience supporting security assessments, penetration testing, and audit remediation programs. Familiarity with security operations, incident response, and defensive security technologies.
Personal Attributes Strong relationship-building and stakeholder engagement skills. Ability to work collaboratively with business, technical, and third-party teams. Capable of influencing and driving remediation activities without direct authority. Strong analytical and problem-solving abilities. Excellent verbal, written, and presentation skills. Ability to communicate technical security issues in business-friendly language. Strong organizational skills with the ability to manage multiple priorities simultaneously. Highly self-motivated with strong attention to detail. Team-oriented and committed to supporting enterprise objectives while maintaining security requirements.
EDUCATION Bachelor's degree in Computer Science, Information Technology, Cyber Security, Engineering, or a related field preferred. Equivalent combination of education and relevant professional experience will be considered.
WORK EXPERIENCE Minimum 7 years of experience in Cyber Security, Vulnerability Management, Security Operations, Infrastructure Security, or a related discipline. Demonstrated experience working with project delivery teams and enterprise technology stakeholders. Experience producing executive-level metrics, dashboards, and program reporting.
CERTIFICATIONS (Preferred) One or more of the following: CISSP, GIAC Vulnerability Management (if held), GIAC Security Essentials (GSEC), GIAC Continuous Monitoring Certification (GMON), Certified Information Security Manager (CISM), Microsoft Security Certifications, Microsoft Azure Security Engineer Associate (AZ-500), Qualys Certified Specialist certifications
Location : Springfield, VA ( Springfield, Virginia: Minimum three (3) days per week in office, mandatory.
Duration: 12 months
Interview Process/# of Rounds: Targeting 1 round, but might go into 2
Additional Notes: Why the role is open: Standing up an internial AI practice.
Job Title: Contractor, Vulnerability Management
Reporting Relationship: Reports to the Practice Lead, Vulnerability Management
PRIMARY DUTIES
Strategy & Planning Support the execution and continuous improvement of the enterprise Vulnerability Management Program. Assist in developing vulnerability management standards, procedures, metrics, and reporting processes. Work with cybersecurity architecture and engineering teams to identify systemic security gaps and recommend remediation strategies. Provide subject matter expertise to project teams throughout project lifecycles to ensure security vulnerabilities are appropriately addressed. Participate in risk discussions and provide recommendations regarding remediation prioritization and compensating controls.
Acquisition & Deployment Support deployment, configuration, and optimization of vulnerability management and security assessment technologies. Assist with onboarding new environments, applications, and cloud services into the vulnerability management program. Support implementation and operation of Breach and Attack Simulation (BAS) capabilities to validate security controls and identify opportunities for improvement. Collaborate with cloud, infrastructure, and application teams to improve security posture and vulnerability visibility.
Operational Management Conduct vulnerability assessments across infrastructure, cloud, and application environments. Analyze, validate, and prioritize vulnerabilities based on risk, exploitability, business impact, and threat intelligence. Coordinate remediation activities with project teams, technical teams, managed service providers, and third-party vendors. Track remediation progress and escalate high-risk issues as required. Facilitate vulnerability review meetings and drive accountability for remediation commitments. Utilize ServiceNow to manage workflows, remediation tracking, exception management, and reporting activities. Generate operational and executive reporting that communicates vulnerability trends, risk exposure, remediation performance, and program effectiveness. Support audits, assessments, penetration tests, and regulatory reviews related to cyber security controls. Collaborate with Cyber Operations, Cyber Risk Management, Architecture, Infrastructure, and Application Delivery teams to ensure vulnerabilities are addressed in a manner that balances security, operational reliability, and project delivery objectives. Assist in validating remediation efforts and confirming closure of identified vulnerabilities. Support continuous improvement initiatives aimed at reducing organizational risk and improving security posture.
QUALIFICATIONS, SKILLS & ABILITIES
Technical Attributes
Required Experience 7+ years of cyber security, vulnerability management, or security operations experience. Demonstrated experience managing enterprise vulnerability remediation programs. Hands-on experience with Qualys Vulnerability Management. Experience with Breach and Attack Simulation (BAS) technologies. Experience with Microsoft security technologies, including: Microsoft Defender, Microsoft Cloud Security Posture Management (CSPM), Azure, Azure DevOps (ADO). Experience with ServiceNow workflow management and reporting. Experience supporting cloud security and vulnerability management initiatives. Experience working within large enterprise environments with diverse technology ecosystems. Strong understanding of vulnerability prioritization methodologies and risk-based remediation approaches. Knowledge of cybersecurity frameworks and industry best practices, including NIST.
Preferred Experience Experience supporting utility, critical infrastructure, energy, or industrial organizations. Experience leveraging threat intelligence to prioritize remediation activities. Experience supporting security assessments, penetration testing, and audit remediation programs. Familiarity with security operations, incident response, and defensive security technologies.
Personal Attributes Strong relationship-building and stakeholder engagement skills. Ability to work collaboratively with business, technical, and third-party teams. Capable of influencing and driving remediation activities without direct authority. Strong analytical and problem-solving abilities. Excellent verbal, written, and presentation skills. Ability to communicate technical security issues in business-friendly language. Strong organizational skills with the ability to manage multiple priorities simultaneously. Highly self-motivated with strong attention to detail. Team-oriented and committed to supporting enterprise objectives while maintaining security requirements.
EDUCATION Bachelor's degree in Computer Science, Information Technology, Cyber Security, Engineering, or a related field preferred. Equivalent combination of education and relevant professional experience will be considered.
WORK EXPERIENCE Minimum 7 years of experience in Cyber Security, Vulnerability Management, Security Operations, Infrastructure Security, or a related discipline. Demonstrated experience working with project delivery teams and enterprise technology stakeholders. Experience producing executive-level metrics, dashboards, and program reporting.
CERTIFICATIONS (Preferred) One or more of the following: CISSP, GIAC Vulnerability Management (if held), GIAC Security Essentials (GSEC), GIAC Continuous Monitoring Certification (GMON), Certified Information Security Manager (CISM), Microsoft Security Certifications, Microsoft Azure Security Engineer Associate (AZ-500), Qualys Certified Specialist certifications
For applications and inquiries, contact:View email address on us.fitly.work
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the ServiceNow Vulnerability Response Engineer in Remote vacancy
- ...Technology / Cybersecurity Engineer Zermount is seeking a senior... ...decisions. Responsibilities include architecture reviews... ...NIST RMF/CSF, FISMA, FedRAMP, vulnerability management, cloud compliance... ...Tenable, Splunk, Sentinel, ServiceNow, Prisma Cloud, or similar tools...ServicenowFull timeRemote work
- ...The Role: As a Senior Cybersecurity Vulnerability Engineer, you will serve as a highly capable individual contributor responsible for designing, implementing, and improving... ...tooling such as Qualys, Tenable, Wiz, ServiceNow or comparable platforms. Strong understanding...ServicenowFull timeInterim roleLocal areaImmediate startWork from homeRelocation package
- ...TECHNOLOGY / CYBERSECURITY ENGINEER MILITARY FRIENDLY & PREFERRED... ...SaaS/product assessments, vulnerability management, emerging... ...secure adoption. Duties & Responsibilities Security Architecture Review... ..., Defender, Prisma Cloud, ServiceNow, or similar platforms....ServicenowFull timeRemote work
$64 - $69 per hour
....00 USD Hourly - $69.00 USD Hourly Description: ServiceNow Certificate Management Engineer We are not accepting C2C or 1099 arrangements. Location... ...within the ServiceNow platform. This role will be responsible for designing, configuring, and enhancing ServiceNow...ServicenowHourly payContract work- ...experienced Senior Cybersecurity Engineer to support design and... ...from day-to-day operational responsibilities and focuses instead on long... ...Security (MDM, MAM). Vulnerability Management (SAST, DAST, General... ...SaaS offerings such as ServiceNow, Salesforce, and D365....ServicenowRemote work
- ...Our client seeks a Security Engineer to help build and strengthen... ...threat correlation, and incident response capabilities throughout our... ...alerting Perform vulnerability triage and assignment Engage... ...), device/asset management, ServiceNow ~ Experience with...ServicenowWork at officeRemote work
- ...Senior Windows Systems Engineer Location: San Antonio, TX... ...playing a key role in patching, vulnerability management, and system... ...San Antonio, TX. Roles & Responsibilities: Windows Server Management... ...Manage change tickets through ServiceNow, aligning with ITIL...ServicenowWork from homeFlexible hours
- ...Role: Associate Systems Engineer - Lab Systems & OT Security... ...Directory, endpoint security, vulnerability remediation, access controls... ...site teams. Key Responsibilities Support Active Directory... ...and demand intake through ServiceNow or equivalent ITSM...ServicenowRemote work
- ...hiring Senior Cybersecurity Engineer - Tenable One)- Must be... ...spans both traditional IT vulnerability management and OT/IoT security... ...security operations team. Key Responsibilities Architecture Design... ...systems: CMDB/ITSM (ServiceNow), SIEM, ticketing, identity...ServicenowContract workLocal areaRemote work
- ...100% remote Cybersecurity Engineer (System Steward) to support... ...artifacts, assess system risks and vulnerabilities, and coordinate with system... ...the continental US. Responsibilities: Provide... ...Wireshark. ~ Experience with ServiceNow Continuous Authorization...ServicenowFull timeRemote work
$175k - $195k
Windows Systems Engineer (MTS) Location: Hybrid - Pleasanton... ...services customers. Key Responsibilities Administer Windows Servers... ...coverage, and remediate vulnerability scan findings against agreed... ...Jira Service Management, or ServiceNow Hybrid identity...ServicenowPermanent employmentFull timeWork at officeNight shift- ...Apply now: Security Response Manager, location is Remote. The start... ...investigation, detection engineering, and technical leadership to... .../ Defender for Endpoint ServiceNow Orca Experience with... ...response, identity security, vulnerability management, and threat...ServicenowContract workImmediate startRemote work
- ...Seeking a proactive and skilled full-time M365 Engineer to work remotely, responsible for managing governance across Microsoft 365 Copilot, Power Platform... ...deployment and ticket-based access management Ability to support ServiceNow catalogue design and approval workflows...ServicenowFull timeRemote work
$75 - $85 per hour
...position supports advancing the enterprise vulnerability management program across four... ...reduced exposure - Support emergency response for actively exploited vulnerabilities... ...on vulnerability management or security engineering - Direct implementation experience with...Hourly payContract workLocal areaRemote work2 days per week3 days per week- ...We are looking for a Cyber Security Engineer to join our Managed Security Services Team... ...accurate and timely manner. You will be responsible for working with different systems,... ...using enterprise ticketing systems such as ServiceNow. ~ Excellent problem solving and...ServicenowFull timeLocal areaRemote workWorldwide
$68.46k - $161.82k
...a Security Operations Center Engineer based in the United States. This role is responsible for protecting enterprise systems... ...represent genuine incidents, vulnerabilities, or other risks requiring... ...incidents. ~ Familiarity with ServiceNow, SIEM solutions, email...ServicenowFull timeRemote workNight shift- ...Vulnerability Management Engineer Hybrid At Cloudflare, we are on a mission to help build a better Internet. Today the company runs one of... ...Reporting to the Vulnerability Manager, the VM Engineer will be responsible for identifying, analyzing, and supporting the...Temporary workLocal areaFlexible hours
- ...and the financial world. About The role As a Vulnerability Management Engineer, you will support the identification, assessment, prioritization... ...properly prioritize their scope, impact and necessary response actions. Conduct security reviews of our products...Remote work
$75k - $125k
...Nelnet Cyber Security Vulnerability Operations TeamNelnet is a diversified and innovative company committed to enriching lives through... ...Operations (VO) team. Nelnet's Vulnerability Operations team is responsible for managing the attack surface and collaboration with...Contract workWork experience placementWork at officeRemote work3 days per week- ...Collaboration Engineer Remote 12 Months Role Summary: The Collaboration... ...(Collab Eng) Operations Engineer is responsible for day-to-day operations, incident management... ...and ticket management systems (ServiceNow/MyServices) • Monitoring and alerting...ServicenowWork at officeRemote work
- ...Manager of Network & Systems Engineering to lead a high-performing... ...staff, and events. Position Responsibilities: Team & Operational... ...Conduct regular reviews of vulnerability reports, patch compliance,... ...ticketing platforms (e.g., ServiceNow, Jira, or equivalent) ~...ServicenowFull timeContract workTemporary workPart timeSeasonal workWork at officeLocal areaFlexible hours
$91k - $120k
...valued every day. Cyber Operations Engineer III Job Summary: We are seeking... ...solutions that streamline incident response, vulnerability management, and security monitoring.... ...specifically in Palo Alto Cortex XSIAM and ServiceNow. · Proficiency in scripting and...ServicenowFull timeRemote workWork from homeFlexible hours- ...Business Process Engineer Opportunity PeopleTec is currently... ...processes in support of a ServiceNow implementation. This organization... ...within ServiceNow. Responsibilities Identify the appropriate... ...security incidents, vulnerability response, and remediation workflows...ServicenowLocal area
$118k - $176k
...Summary The Senior Controls Engineer, Operational Technology... ...a regional technical leader responsible for advancing the security,... ...cybersecurity knowledge to lead Threat Vulnerability Management (TVM) execution... ..., configuration management, ServiceNow or comparable work-...ServicenowFull timeFor contractorsWork at officeLocal areaRemote work- ...science, software development, network engineering, intelligence, surveillance, and... ...risks and recommend mitigations. Track vulnerability remediation efforts and maintain POA&M... ...Experience using JIRA, Confluence, ServiceNow, or similar collaboration and workflow...ServicenowFull timeWork at officeNight shift
- ...Senior Data Pipeline Engineer Location: Washington D.C. Area... ...pipelines that ingest asset, vulnerability, and configuration data... ...pipelines for scalability Key Responsibilities Serve as a leading... ...platforms (e.g., Tenable, Qualys, ServiceNow) Experience utilizing...ServicenowFull timeRemote work
- ...DESCRIPTION Job Title: Endpoint Engineer Reports To: Manager, Endpoint... ...the Role: Endpoint Engineers are responsible for designing, deploying, and managing... .... Experience and knowledge with ServiceNow and Freshservice (Freshworks) • Firm...ServicenowContract workRemote work
- ...Description We are looking for a Systems Engineer to support and advance enterprise... ...reliable workplace technology solutions. Responsibilities: • Build, administer, and enhance... ...activities. • Coordinate with ServiceNow stakeholders, IT leadership, security,...ServicenowLong term contractRemote work
- ...a Voice Over Internet Protocol (VOIP) Engineer. As a VoIP network engineer on our team... ...work. The VOIP Engineer responsibilities will include: Collaborate with... ...support trouble tickets and incidents using ServiceNow ~ Bachelor's degree ~ Active Secret...ServicenowFor contractorsRemote work
- ...Modernization Engineer Remote Electrosoft Services, LLC is an award-winning company... ...offer. Modernization Engineer Responsibilities and Duties: Supports Engineering... ...using Qlik Portal modernization using ServiceNow Assess solution architectures...ServicenowFor contractorsLocal areaRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to ServiceNow Vulnerability Response Engineer. Be the first to apply!




