Key Responsibilities
- Design and implement secure authentication mechanisms using SAML 2.0, OAuth 2.0, LDAP, and Multi-Factor Authentication (MFA).
- Architect and manage Role-Based Access Control (RBAC) across ServiceNow modules, ensuring least-privilege access and separation of duties.
- Define and enforce Access Control Lists (ACLs) at the table, field, and record levels to protect sensitive data.
- Implement Scoped Application permissions to isolate functionality and restrict access to specific modules or components.
- Define and own User groups and locations in the platform.
- Develop and maintain user provisioning and de-provisioning workflows integrated with enterprise IAM systems.
- Monitor and audit login activity, session management, and access violations using native ServiceNow tools
- Collaborate with InfoSec and IAM teams to align ServiceNow access policies with enterprise security standards and compliance frameworks.
- Define and enforce compliance to security policies, standards, and best practices for the ServiceNow platform in alignment with ServiceNow recommended Platform security shared responsibility model.
- Ensure service now platform is compliant with internal and external infosec requirements and industry best practices
- Establish governance frameworks for secure development, data protection, and risk mitigation.
- Defining/Implement Service Now data classification, data retention & data discovery strategy in alignment with Ameriprise data management policies /standards
- Implement data encryption strategy at rest, in transit & encryption key management
-Determining the data collection, storage, usage, sharing, archiving, and destruction policy of data processed in ServiceNow instances.
- Monitor access patterns and system activity to identify potential security threats.
- Ensure and mature secure API management for integrations between ServiceNow and third-party security tools (e.g., Active Directory, CyberArk and Aveksa, Azure AD, RIM, IAM).
- Ensure secure data exchange and prevent unauthorized access to ServiceNow instances.
-Mentor platform engineers and developers on secure coding, identity management, and data handling best practices.
-Collaborate with cybersecurity, data, and infrastructure teams to ensure platform alignment with enterprise architecture.
-Lead technical design reviews, platform governance, and roadmap planning for platform security aspects
Required Skills & Qualifications:
Technical Expertise:
- ServiceNow Security: Deep understanding of ServiceNow Security design Components (ACLs , RBAC, etc.) and platform security best practices.
- Integration & Development: Experience with REST APIs, JavaScript, OAuth, and secure integration practices.
- Cloud Security: Understanding of SaaS security, encryption methods, and cloud-based security models.
Certifications
- Certified System Administrator (CSA)
- Knowledge of Service Now Data fundamental (CMDB and CSDM)
Preferred Qualifications:
- Experience securing large-scale ServiceNow implementations in regulated industries (finance, healthcare, government).
- Strong problem-solving, analytical, and communication skills to interact with technical and non-technical stakeholders.
- Knowledge of emerging security trends, zero trust architecture, and AI-driven security solutions.
Experience Required:
- 14-18 years of total IT experience, with 10+ years in ServiceNow& platform security architecture design, administration, or operations.

Keyskills: servicenow rest cloud security data security ai risk mitigation cybersecurity javascript identity and access management system administrator security engineering iam active directory compliance service now architecture azure