ServiceNow Security Operations (SecOps) Developer
HCL Poland
⚲ Kraków, Prądnik Czerwony
Opis stanowiska
Nasze wymagania: Strong hands-on experience with ServiceNow Security Operations (SecOps), including Security Incident Response and Vulnerability Response. In-depth knowledge of security incident management, vulnerability management lifecycle, threat intelligence, and SOC operations. Proven experience integrating ServiceNow with security tools such as SIEM, scanners, and identity platforms. Proficiency in ServiceNow configuration and scripting (Flow Designer, Business Rules, Script Includes, Reporting). Demonstrated stakeholder engagement skills across Security, IT, and Risk functions. ServiceNow Certified System Administrator (CSA) – Mandatory Certified Implementation Specialist – Security Incident Response (CIS-SIR) Certified Implementation Specialist – Vulnerability Response (CIS-VR) Mile widziane: Additional security certifications such as ITIL, CISSP, or CISM are highly preferred. CTA / CMA certifications for candid O projekcie: The ServiceNow Security Operations (SecOps) Developer will play a pivotal role in designing, implementing, and customizing advanced security workflows within the ServiceNow platform. This role is crucial for strengthening HCLTech’s security posture by integrating industry-leading security tools and automating response processes. The successful candidate will contribute to enterprise-wide security operations, driving efficiency, collaboration, and risk mitigation while supporting strategic business goals. Zakres obowiązków: Design and implement ServiceNow Security Operations (SecOps) solutions, leveraging platform best practices and out-of-the-box capabilities. Configure and optimize core SecOps modules, including Security Incident Response (SIR), Vulnerability Response (VR), and Threat Intelligence. Integrate ServiceNow with security tools such as SIEM, SOAR platforms, vulnerability scanners, and threat intelligence feeds to create robust end-to-end security workflows. Automate alert triage, enrichment, prioritization, and remediation processes across security and IT teams. Enable risk-based prioritization by utilizing CMDB context and business impact analysis. Develop and maintain security dashboards, KPIs, and executive reports to track incident trends, vulnerability posture, and response effectiveness. Collaborate closely with SOC, IT, Risk, and Compliance teams to ensure seamless alignment of security operations with enterprise processes. Participate in pre-sales activities, solution workshops, and architecture discussions as needed. Oferujemy: Life insurance Private medical care MultiSport Card Subsidies for glasses Subsidies for language courses Christmas and holiday bonuses