Cyber
Deloitte Cyber understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful insights to help our clients navigate the ever-changing threat design and technology as we partner with clients to transform finance.
Position Summary
Level: Senior Consultant
As a Security Engineer III, you will support the design, implementation, and optimization of ServiceNow Security Operations solutions, with a focus on Vulnerability Response and related workflow automation. This role offers the opportunity to work with client stakeholders to improve vulnerability management processes, strengthen data quality, and drive scalable remediation outcomes across the enterprise.
Work you'll do
As a Security Engineer III on the Cyber Strategy & Transformation team, you will be responsible for…
- Designing and implementing ServiceNow Security Operations solutions, including data models, workflows, access controls, and application configurations
- Configuring and administering ServiceNow Vulnerability Response and Configuration Compliance modules, including source onboarding, assignment rules, service-level agreements, notifications, and remediation tasks
- Integrating ServiceNow with vulnerability scanners and other third-party tools, and validating data mapping, configuration item matching, schedules, and error handling
- Building automation using Flow Designer, Integration Hub, and Representational State Transfer application programming interfaces to support routing, approvals, escalations, enrichment, and remediation verification
- Partnering with client security, information technology, and operations stakeholders to run workshops, define requirements, create user stories, and align configurations to business risk and remediation processes
- Developing dashboards, documentation, update sets, and role-based access controls, while providing technical guidance to junior team members
The team
Cyber Strategy & Transformation teams develop and transform cyber programs in line with a client's strategic objectives, regulatory requirements, and risk appetite. They keep the enterprise a step ahead of the evolving threat landscape and give stakeholders confidence in the organization's cyber posture. Services include the design of cyber organization, governance, and risk assessments. Services also encompass Cybersecurity Assessments and Frameworks, Cyber Transformation Management, Technology Software and Asset Compliance Management, Third Party Risk Management, Cyber Risk and Compliance, Solution Design and Implementation, and Cyber Risk Analytics and Quantification Reporting.
Qualifications
Required:
- 4-8 years of ServiceNow administration, development, or platform experience
- 3+ years of ServiceNow Security Operations or Vulnerability Response implementation experience
- Experience implementing or operating ServiceNow Vulnerability Response
- Experience with vulnerability management lifecycle processes, including scan, triage, prioritization, remediation, and verification
- Experience with Configuration Management Database, asset data, configuration item matching, ownership, or criticality management
- Experience developing ServiceNow JavaScript using GlideRecord, Business Rules, Script Includes, or User Interface Policies
- Bachelor’s or master’s degree in information technology or a specified field
Preferred:
- ServiceNow Certified System Administrator certification
- ServiceNow Certified Application Developer certification
- ServiceNow Vulnerability Response or Security Operations certification
- Experience with Configuration Compliance, Threat Intelligence, Security Incident Response, Governance Risk and Compliance, or Integrated Risk Management modules
- Experience with performance tuning or large-scale data ingestion in ServiceNow
Location: Bengaluru/Hyderabad/Pune/Chennai
Shift Timings: General Shift