Senior Staff Product Security Engineer (AppSec)

| Chicago
Apply now
By clicking continue you agree to Built In’s Privacy Policy and Terms of Use.

Company

Work matters. It’s where we spend a third of our lives. And the workplace of the future is going to be a great place. We’re dedicated to bringing that to life for people everywhere. That’s why we put people at the heart of everything we do.

People matter. Our people have a passion for learning, building, and innovating. Whether you’re an engineer, a sales professional, a finance professional, or anything in-between, our roles aim to provide each person with meaningful impact and plenty of space to grow.

Team

Product Security is working at Shifting Left, allowing engineering teams and the company to be proactive with simplified integrated security testing.  This paradigm shift benefits developers and ServiceNow by codifying security activities at scale into their build pipelines ensuring toolchains are easily automated with continuous monitoring and feedback.

Role

As a security engineer on the ServiceNow Product Security Team, you will be responsible in identifying security vulnerabilities within customer-facing software products. You will work with internal development teams to review source code and audit custom functionality built on top of the ServiceNow platform. You will have the opportunity to develop tooling, plan security projects, and be a security advocate. A key part of this position is to effectively communicate issues to the application owners, provide meaningful remediation recommendations, and validate that they have been resolved.

What you get to do in this role:

  • Perform software auditing services to internal teams to discover, communicate, and recommend remediation activities for software vulnerabilities.
  • Provide architecture design input, evaluate threats and document risk
  • Proactively research new attack vectors that may affect ServiceNow.
  • Research and implement automated code security quality gates in a CI/CD lifecycle
  • Research security topics which are a risk to ServiceNow
  • Be an advocate for security for development teams and participate in a security champions program
  • Work with third-party vendors on security testing

In order to be successful in this role, we need someone who has:

  • 10+ years prior experience securing enterprise products.
  • 2-5 years of experience of web application security auditing including code review
  • 1+ years of experience in threat modeling and threat modeling tools
  • In-depth knowledge of common web application vulnerabilities (OWASP Top Ten)
  • Strong understanding of web and mobile application security assessment techniques
  • Developer level proficiency in at least one language - Python, Java, or JavaScript preferred
  • Knowledge of static and dynamic security analysis tools
  • Knowledge of the Security Development Lifecycle (SDLC)
  • Ability to deliver technical reports and communicate technical concepts to both non-technical business users as well as technical stakeholders.
  • A passion for security

 

 

 

ServiceNow is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, national origin, age, disability, gender identity, or veteran status. If you are an individual with a disability and require a reasonable accommodation to complete any part of the application process, or are limited in the ability or unable to access or use this online application process and need an alternative method for applying, you may contact us at (408) 501-8550, or [email protected] for assistance.

Read Full Job Description
Apply now
By clicking continue you agree to Built In’s Privacy Policy and Terms of Use.

Technology we use

  • Engineering
  • Product
    • JavaLanguages
    • JavascriptLanguages
    • RubyLanguages
    • SqlLanguages
    • jQueryLibraries
    • ReactLibraries
    • ReduxLibraries
    • AngularJSFrameworks
    • Maria DBDatabases
    • MySQLDatabases
    • OracleDatabases
    • Google AnalyticsAnalytics
    • PiwikAnalytics
    • Adobe AnalyticsAnalytics
    • BalsamiqDesign
    • IllustratorDesign
    • InVisionDesign
    • PhotoshopDesign
    • SketchDesign
    • ServiceNowManagement

Location

Before COVID, we were in a new building on Lake and Racine in the West Loop. Right now we're physically distanced but trying to stay social connected!

An Insider's view of ServiceNow

What’s the vibe like in the office?

You make decisions every day that help people. My work makes a big difference, and that’s satisfying.

Medha

Senior Application Developer

What projects are you most excited about?

I wanted to work at a growing company. We're focused, customer-centric, and you can't beat the platform.

Olum

Project Manager

What are some things you learned at the company?

Our purpose is empowering. The company's putting a lot into the culture, the employees - they're investing in us.

Marina

Creative Director

What is your vision for the company?

Amazing products that create great employee and customer experiences and make work, work better, is our passion.

CJ

Chief Product Officer

What is your vision for the company?

Taking a long-range view, we've got the spirit of a start-up and the resources to deliver with high quality.

Preetam

Software Engineer

What are ServiceNow Perks + Benefits

ServiceNow Benefits Overview

We make work better for people—including our own. From work environments that help us do our best work, to benefits and a culture that encourage employees to stay healthy, happy, engaged, and growing, we keep our people at the center of everything we do.

Culture
Volunteer in local community
Full-time employees get 20 hours per year to volunteer with the non-profit of their choice.
Friends outside of work
Eat lunch together
Daily stand up
Open door policy
Team owned deliverables
Team based strategic planning
Group brainstorming sessions
Pair programming
Open office floor plan
Diversity
Dedicated Diversity/Inclusion Staff
Diversity manifesto
Someone's primary function is managing the company’s diversity and inclusion initiatives
Health Insurance & Wellness Benefits
Flexible Spending Account (FSA)
Disability Insurance
Dental Benefits
Vision Benefits
Health Insurance Benefits
Life Insurance
Onsite Gym
Retirement & Stock Options Benefits
401(K)
401(K) Matching
Starting in 2019
Company Equity
Employee Stock Purchase Plan
Purchase company stock at a 15% discount semi-annually
Performance Bonus
Match charitable contributions
Child Care & Parental Leave Benefits
Generous Parental Leave
Starting in 2019 - 20 weeks for birthing parent, 12 weeks for non-birthing parent
Remote Work Program
Work remotely on occasion as needed.
Adoption Assistance
Vacation & Time Off Benefits
Unlimited Vacation Policy
Generous PTO
Paid Volunteer Time
Starting in 2019 - 20 hours a year starting in 2019
Paid Holidays
Paid Sick Days
Perks & Discounts
Beer on Tap
With an in house craft beer geek procuring
Casual Dress
Commuter Benefits
Pre-tax contribution plan for commuter expenses - transit and parking
Company Outings
Site social activities periodically
Free Daily Meals
Free breakfast offered daily
Game Room
Shuffle board, pool table, table games and more!
Stocked Kitchen
Some Meals Provided
Happy Hours
Every Thursday!
Professional Development Benefits
Job Training & Conferences
LinkedIn Learning access, numerous internal training programs, conference attendance options
Tuition Reimbursement
Up to $5,250 reimbursed annually for qualified expenses
Diversity Program
Lunch and learns
Continuing Education stipend
We offer $5000 annualy for continuing education.
Online course subscriptions available
Paid industry certifications
More Jobs at ServiceNow54 open jobs
All Jobs
Finance
Data + Analytics
Design + UX
Dev + Engineer
Operations
Product
Project Mgmt
Sales
Content
Sales
new
Remote
Project Mgmt
new
Remote
Product
new
Chicago
Developer
new
Chicago
Project Mgmt
new
Chicago
Developer
new
Chicago
Content
new
Remote
Developer
new
Chicago
Data + Analytics
new
Chicago
Project Mgmt
new
Chicago
Developer
new
Chicago
Design + UX
new
Chicago
Operations
new
Chicago
Developer
new
Chicago
Design + UX
new
Chicago
Project Mgmt
new
Remote
Developer
new
Remote
Data + Analytics
new
Chicago
Data + Analytics
new
Chicago
Data + Analytics
new
Chicago
Developer
new
Remote
Project Mgmt
new
Chicago
Project Mgmt
new
Remote
Operations
new
Chicago
Project Mgmt
new
Remote
Apply now
By clicking continue you agree to Built In’s Privacy Policy and Terms of Use.
Save jobView ServiceNow's full profileSee more ServiceNow jobs