Role: ServiceNow Administrator – SecOps
Location: Penang
Job Summary
We are seeking an experienced ServiceNow Administrator with hands-on expertise in Security Operations (SecOps) to manage, support, and optimize our ServiceNow platform. The successful candidate will be responsible for ServiceNow platform administration, SecOps module configuration, workflow automation, integrations, and ongoing platform governance.
This role will work closely with Security Operations, GRC, Infrastructure, and ITSM teams to ensure efficient security workflows, vulnerability management, incident response, and compliance reporting across the organization.
Key Responsibilities
ServiceNow Platform Administration
- Administer and maintain ServiceNow environments (Development, Test, and Production) to ensure platform stability, performance, availability, and data integrity.
- Manage users, groups, roles, permissions, and access controls (ACLs).
- Monitor platform health, performance, logs, and system activity; proactively identify and resolve issues.
- Manage update sets, deployments, instance cloning activities, and environment promotions.
- Support ServiceNow upgrades, patches, and hotfix implementations, including testing and validation.
- Maintain platform governance, standards, documentation, and operational procedures.
- Ensure adherence to ServiceNow best practices and organizational security policies.
Security Operations (SecOps)
- Administer and support ServiceNow Security Operations modules, including:
- Security Incident Response (SIR)
- Vulnerability Response (VR)
- Threat Intelligence
- Security Case Management
- Configure and maintain security workflows, playbooks, SLAs, notifications, and automation.
- Support vulnerability data ingestion and remediation workflows from security scanning tools such as Qualys, Tenable, and Rapid7.
- Maintain integrations between ServiceNow and security technologies including SIEM, SOAR, vulnerability scanners, and related security platforms.
- Ensure accurate mapping of Configuration Items (CIs), assets, and security findings within the CMDB.
- Develop and maintain dashboards, reports, and Performance Analytics to support risk monitoring and remediation tracking.
- Support audit, compliance, and governance requirements by ensuring data quality, security controls, and reporting accuracy.
Configuration & Automation
- Configure and maintain Business Rules, UI Policies, Notifications, Scheduled Jobs, and Flow Designer workflows.
- Manage Service Catalog items and request workflows related to security access, onboarding, and tooling.
- Perform data imports, transformations, reconciliations, and integrations with internal and external systems.
- Troubleshoot and resolve platform, integration, workflow, and automation issues.
Collaboration & Support
- Act as the primary ServiceNow SecOps administrator and platform subject matter expert.
- Partner with Security Operations, Infrastructure, Risk & Compliance, and ITSM teams to support end-to-end security processes.
- Provide Level 2/Level 3 support for ServiceNow platform and SecOps-related incidents.
- Participate in platform roadmap discussions, enhancement initiatives, and continuous improvement programs.
- Support user training, knowledge transfer, and documentation activities where required.
Required Qualifications
- Minimum 3 years of hands-on ServiceNow Administration experience.
- Minimum 2 years of experience supporting ServiceNow Security Operations (SecOps) modules.
- Strong knowledge of:
- ServiceNow Platform Administration
- User, Group, Role, and ACL Management
- Update Sets and Deployment Processes
- Instance Management (DEV/TEST/PROD)
- CMDB Fundamentals
- Experience supporting Security Incident Response and Vulnerability Management processes.
- Working knowledge of ITIL practices and Security Operations concepts.
- Strong troubleshooting, analytical, communication, and documentation skills.
Preferred Qualifications
- ServiceNow Certified System Administrator (CSA).
- ServiceNow Certified Implementation Specialist – Security Operations (CIS-SecOps).
- Experience integrating ServiceNow with:
- Qualys
- Tenable
- Rapid7
- Splunk
- QRadar
- Other SIEM/SOAR platforms
- Experience with Discovery, Service Mapping, and CMDB administration.
- Experience working in regulated, security-focused, or compliance-driven environments.
- Familiarity with cybersecurity frameworks and vulnerability management practices.
Ideal Candidate Profile
This role is best suited for a ServiceNow Administrator or Platform Engineer who has experience supporting ServiceNow Security Operations modules and can manage platform administration, workflow automation, integrations, and security process enablement within an enterprise environment.