Senior Technical Consultant - Risk & Security -ServiceNow (Global Role)
AtosMexico (any state) (Remote)
Atos is seeking an experienced ServiceNow Risk and Security Engineer to lead the technical design, configuration, implementation, integration, and continuous improvement of enterprise ServiceNow GRC/IRM and Security Operations solutions.
The role translates risk, regulatory, compliance, cybersecurity, incident response, vulnerability management, and operational requirements into secure, scalable, supportable, and upgrade-safe ServiceNow designs. This global role includes designing AI-powered solutions, intelligent workflows, and reusable accelerators.
Key Responsibilities
- Lead technical delivery from discovery and requirements through design, configuration, testing, deployment, hypercare, and transition to support.
- Configure ServiceNow GRC/IRM capabilities, including policy and compliance, risk, audit, operational risk, regulatory change, issues and remediation, indicators, attestations, evidence, and control testing.
- Configure ServiceNow Security Operations capabilities, including Security Incident Response, Vulnerability Response, Threat Intelligence, major security incident management, and phishing response.
- Provide technical and product design input to solution, technical, enterprise, security, and integration architects.
- Lead workshops with executives, CISOs, SOC leaders, risk and compliance teams, internal audit, legal, cybersecurity, IT operations, and technical stakeholders.
- Perform advanced ServiceNow configuration using tables, forms, fields, workspaces, roles, access controls, Flow Designer, playbooks, business rules, client scripts, UI policies, notifications, and scheduled processes.
- Develop and configure integrations using JavaScript, Glide APIs, REST/SOAP services, IntegrationHub, import sets, transform maps, authentication methods, and event-driven patterns.
- Integrate ServiceNow with identity, security, vulnerability, CMDB, asset, ERP, HR, SIEM, SOAR, endpoint, network detection, threat intelligence, cloud security, and application security platforms.
- Implement GRC/IRM workflows for risk assessment, control effectiveness, attestations, testing, evidence collection, regulatory obligations, issues, remediation, and continuous monitoring.
- Implement SecOps workflows for incident triage, investigation, containment, eradication, recovery, evidence capture, communications, and post-incident review.
- Configure risk-based vulnerability prioritization, remediation tasks, service-level targets, exceptions, deferrals, scanner synchronization, and executive reporting.
- Support testing, release planning, code review, deployment, validation, rollback, Automated Test Framework usage, production hypercare, knowledge transfer, and operational handover.
- Provide technical leadership to consultants, developers, analysts, administrators, and integration specialists.
- Support pre-sales activities, including discovery, solution shaping, demonstrations, estimates, proposals, statements of work, and customer presentations.
Mandatory Qualifications and Experience
- Current ServiceNow certification relevant to GRC/IRM or Security Operations.
- Proven experience implementing ServiceNow GRC/IRM and/or Security Operations in complex enterprise environments.
- Strong knowledge of ServiceNow architecture, data structures, workflows, security, reporting, integrations, CMDB alignment, and enterprise operating models.
- At least three Certified Implementation Specialist certificates.
- Extensive hands-on experience architecting and delivering ServiceNow solutions.
- Prior consulting experience and experience leading teams or supervising others.
- Strong ServiceNow configuration and development skills, including JavaScript, Glide APIs, REST APIs, IntegrationHub, import sets, and transform maps.
- Excellent written and verbal English, including the ability to lead workshops and present complex recommendations.
Expected Experience
- Typically eight or more years of cybersecurity, risk technology, security technology, or enterprise application experience.
- Five or more years of hands-on ServiceNow experience, including three or more years in ServiceNow GRC/IRM, SecOps, or related risk and security implementation work.
- Experience delivering at least two substantial end-to-end ServiceNow implementations in risk and security domains.
Working Arrangements
The role will be primarily remote, although on-site work may be required depending on customer and project needs. The candidate must participate in workshops, governance meetings, security exercises, critical delivery activities, priority incident activities, and critical deployments across global time zones.
Advanced English is required. The role is based in Mexico and may be performed from any state.