View All Jobs 147868

Senior Staff Product Security Engineer | Secure Configuration

Lead security instance hardening and vulnerability remediation initiatives for ServiceNow products
San Diego, California, United States
Senior
$197,800 – 346,200 USD / year
yesterday
ServiceNow

ServiceNow

A cloud-based platform that provides solutions for IT service management, automating business processes, and workflow optimization.

Senior Staff Product Security Engineer | Secure Configuration

It all started in sunny San Diego, California in 2004 when a visionary engineer, Fred Luddy, saw the potential to transform how we work. Fast forward to today — ServiceNow stands as a global market leader, bringing innovative AI-enhanced technology to over 8,100 customers, including 85% of the Fortune 500®. Our intelligent cloud-based platform seamlessly connects people, systems, and processes to empower organizations to find smarter, faster, and better ways to work. But this is just the beginning of our journey. Join us as we pursue our purpose to make the world work better for everyone.

This role requires a minimum of 2 days per week in the San Diego, CA - Kirkland, WA - Santa Clara, CA or the Chicago, IL ServiceNow Offices. If you cannot meet this requirement, we ask that you please do not apply. Thank you.

The ServiceNow Security Organization (SSO) delivers world-class, innovative security solutions to reduce risk and protect the company and our customers. We enable our customers to migrate their most sensitive data and workloads to the cloud, accelerating our business so that we are the most trusted SaaS provider. We create an environment where our employees are proud to work and can make a positive impact.

The Role:

As a Senior Staff Product Security Engineer, you will lead strategic initiatives that shape secure product development and customer enablement. You will drive cross-functional collaboration, influence engineering and product management practices, and deliver scalable security guidance that empowers customers to reduce risk from insecure configurations.

What you'll do:

  • Participate in instance hardening management activities, including reviewing new product settings to build security recommendations and documenting these settings to ensure ServiceNow instance owners can ensure highest level of security of their instances.
  • Maintain the set of hardening settings to ensure their relevance and accuracy.
  • Perform security audits to discover, communicate, and recommend remediation activities for vulnerabilities.
  • Contribute to the deprecation of security-impactful feature flags and support customer migration efforts to maintain a secure posture.
  • Partner with Product Management to improve workflows that enable customers to adopt secure configurations more easily.

To be successful in this role, you have:

  • Experience in leveraging or critically thinking about how to integrate AI into work processes, decision-making, or problem-solving. This may include using AI-powered tools, automating workflows, analyzing AI-driven insights, or exploring AI's potential impact on the function or industry.
  • A passion for security and problem solving.
  • 12+ years of experience in product security with deep knowledge of security best practices, familiarity with ServiceNow architecture is a plus.
  • In-depth knowledge of common web application vulnerabilities (OWASP Top Ten) and knowledge of common application security control evaluation frameworks (OWASP ASVS) recommended.
  • Strong verbal communication skills with an emphasis on application remediation processes.
  • Ability to translate technical findings into actionable guidance.
  • Collaborative mindset to work with product and customer-facing teams.
  • Developer level proficiency in at least one language - Python, Java, or JavaScript preferred.
  • Knowledge of common compliance frameworks (e.g. FedRAMP, NIST 800-53, ISO 27001) preferred.
  • Would like to see BS/MS in Computer Science, Engineering, or a related discipline.

For positions in this location, we offer a base pay of $197,800 to $346,200, plus equity (when applicable), variable/incentive compensation and benefits. Sales positions generally offer a competitive On Target Earnings (OTE) incentive compensation structure. Please note that the base pay shown is a guideline, and individual total compensation will vary based on factors such as qualifications, skill level, competencies, and work location. We also offer health plans, including flexible spending accounts, a 401(k) Plan with company match, ESPP, matching donations, a flexible time away plan and family leave programs.

Compensation is based on the geographic location in which the role is located and is subject to change based on work location.

+ Show Original Job Post
























Senior Staff Product Security Engineer | Secure Configuration
San Diego, California, United States
$197,800 – 346,200 USD / year
Engineering
About ServiceNow
A cloud-based platform that provides solutions for IT service management, automating business processes, and workflow optimization.