Logo for ICONMA

ServiceNow OT Security / Vulnerability Response Solution Architect

Role overview

Qualifications

  • 4+ years of experience administering or engineering on the ServiceNow platform
  • Demonstrated experience building two-way integrations with Tanium, Qualys, Forescout, Maximo
  • Solid understanding of vulnerability management lifecycle concepts
  • Working knowledge of OT/ICS/SCADA environments

Responsibilities

  • Design and build bidirectional integrations between ServiceNow and various systems
  • Architect and automate the full vulnerability management lifecycle in ServiceNow
  • Build ServiceNow Flow Designer/Workflow automations for remediation tasks
  • Configure ServiceNow to automatically document all actions taken across the vulnerability lifecycle

About the company

ICONMA logo

ICONMA

Management Consulting

We provide Professional Staffing Services & Project-Based Solutions for a broad range of Fortune 500 organizations. ICONMA is a certified Woman-Owned staffing company and was founded in 2000. ICONMA’s corporate headquarters is in Troy, Michigan, and has 15+ locations worldwide. What makes ICONMA stand out in a fiercely competitive industry? *We provide integrated, full lifecycle services across a broad range of business and technical platforms. *No single company can duplicate our full range of staffing and permanent recruiting services nationwide. *Proven track record of attracting and retaining exceedingly skilled professional workers in a highly competitive market. SERVICES OFFERED Staff Augmentation (Contract, Contract to Hire, Direct Hire, Single Source) Data Analysis Project-Based Services & Solutions Hire Train Deploy Service Model Offshore Staff Augmentation Payroll Services AREAS OF EXPERTISE - Information Technology - Engineering - Business Professional - Accounting/Finance - Admin/Clerical/Call Center - Healthcare/Clinical/Scientific - Marketing/Creative mail linkedin@iconma.com Phone (888) 451-2519 Website http://www.iconma.com

Company details

Company typeLarge
IndustryManagement Consulting
Company size1001 - 5000

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Our client, a IT Services and Consulting company, is looking for a ServiceNow OT Security / Vulnerability Response Solution Architect for their Remote location.
 
Responsibilities:
  • Integration Architecture & Development
  • Design and build bidirectional integrations between ServiceNow and Tanium, Maximo, Forescout, and Qualys using REST/SOAP APIs, MID Servers, IntegrationHub spokes, and custom scripted APIs.
  • Ensure data integrity and synchronization for asset, configuration, and vulnerability data flowing between ServiceNow CMDB/CSDM and source systems.
  • Build and maintain integration error handling, retry logic, logging, and monitoring/alerting for all connected systems.
  • Map and normalize data schemas across platforms (e.g., Qualys QID to ServiceNow Vulnerable Item, Forescout device classification to CMDB CI, Tanium asset/patch data to CI attributes, Maximo asset/work order data to OT asset records).
  • Vulnerability Management Process Automation
  • Architect and automate the full vulnerability management lifecycle in ServiceNow: ingestion asset/CI correlation risk scoring/prioritization assignment remediation workflow verification closure.
  • Build ServiceNow Flow Designer/Workflow automations to orchestrate remediation tasks, approvals, exception/riskacceptance processes, and SLAbased escalations.
  • Configure automated ticketing and work order creation in Maximo for OT asset remediation, tied back to ServiceNow vulnerability records.
  • Implement automated network segmentation/containment triggers leveraging Forescout for highrisk or unpatchable OT assets.
  • Build logic to reconcile Tanium patch/configuration data with Qualys scan results to reduce false positives and validate remediation.
  • Documentation & Audit Trail
  • Configure ServiceNow to automatically document all actions taken (system and human) across the vulnerability lifecycle — including timestamps, source system, decision rationale, approvals, and remediation evidence — to support audit, compliance, and regulatory reporting (e.g., IEC 62443, NIST 80082).
  • Build reporting dashboards and performance analytics (MTTR, SLA compliance, risk exposure trends) using ServiceNow Performance Analytics/Reporting.
  • Maintain integration and workflow documentation, runbooks, and data flow diagrams.
  • OTSpecific Considerations
  • Apply OTappropriate remediation strategies (compensating controls, segmentation, virtual patching) when direct patching is not feasible due to safety, uptime, or vendor constraints.
  • Partner with OT engineering and plant/site teams to validate that automated actions do not disrupt production or safety systems.
  • Maintain a unified IT/OT asset and vulnerability inventory within the ServiceNow CMDB/CSDM.
  • Collaboration & Governance
  • Work with Security Operations, IT, OT Engineering, and Compliance teams to define workflow requirements, escalation paths, and risk acceptance criteria.
  • Support change management and testing (dev/test/prod) for all integration and workflow changes.
  • Provide subject matter expertise on ServiceNow Vulnerability Response and OT Security module capabilities and roadmap.
 
Requirements:
  • 4+ years of experience administering or engineering on the ServiceNow platform, including: Vulnerability Response (VR) and/or OT/IoT Security modules; Flow Designer / Workflow Editor; Integration Hub, REST/SOAP Message integrations, MID Server configuration; CMDB/CSDM data modeling.
  • Demonstrated experience building twoway integrations with two or more of the following: Tanium, Qualys, Forescout, Maximo (or comparable CMMS/EAM).
  • Solid understanding of vulnerability management lifecycle concepts: scanning, risk scoring (CVSS/VPR), prioritization, remediation SLAs, and exception management.
  • Working knowledge of OT/ICS/SCADA environments and the operational constraints that differentiate OT vulnerability management from traditional IT patching.
  • Experience with JavaScript (Glide API, Scripted REST APIs, Business Rules) for custom ServiceNow development.
  • Strong understanding of API authentication methods (OAuth2, mutual TLS, API keys) and secure integration design.
  • Excellent documentation skills and ability to translate technical workflows into auditready records.
  • Years of Experience:  17.00 Years of Experience
  • ServiceNow certifications: CSA (Certified System Administrator; CISVR (Vulnerability Response), or CISSecOps, OT Discovery and OT VM Certifications
 
Why Should You Apply?

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Solutions Architect Related jobs

Other jobs at ICONMA

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.