Staff Business Systems Analyst – Security Programs
Location: Various Locations (based on Work Persona eligibility)
About ServiceNow
It all started in sunny San Diego in 2004 when visionary engineer Fred Luddy set out to transform the way we work. Today, ServiceNow is a global leader in AI-enhanced, cloud-based platforms that help over 8,100 customers — including 85% of the Fortune 500® — streamline and simplify how they work. Our purpose? To make the world work better for everyone.
The ServiceNow Security Organization (SSO)
The SSO delivers world-class, innovative security solutions to reduce risk and protect our customers. We enable migration of sensitive data to the cloud while accelerating trust, creating an environment where our teams make a meaningful impact.
The Role
As a Staff Business Systems Analyst – Security Programs, you will partner with Security, Compliance, IT, and Engineering stakeholders to enhance governance, streamline risk workflows, and improve internal controls through scalable system solutions.
You’ll lead cross-functional initiatives and ensure our systems support evolving regulatory and risk requirements while enhancing the security posture of the organization.
What You’ll Do
- Translate stakeholder objectives into detailed functional requirements and user stories.
- Gather requirements across security domains like risk management, vendor security, audit automation, and data protection.
- Perform gap analyses to identify and implement system-driven security improvements.
- Conduct data analysis to validate requirements and track KPIs such as SLA, incident volumes, and audit closures.
- Lead cross-functional security initiatives within systems like GRC, IRM, Vendor Risk, SecOps, and Policy Management.
- Coordinate operational activities across multiple security-related projects.
- Act as liaison between Security, IT, and Engineering teams.
- Guide user acceptance testing and resolve implementation issues.
- Support change management through training materials, documentation, and live sessions.
- Track and resolve security-related issues, including audit findings and risk acceptance workflows.
- Serve as Scrum Master, leading sprint ceremonies and agile delivery cycles for security projects.
Technical & Analytical Skills
- Experience using or integrating AI to automate workflows or support decision-making.
- Familiarity with GRC, IRM, SecOps, or vendor risk tools — especially within the ServiceNow ecosystem.
- Proficient in modeling workflows using tools like Visio, Lucidchart, or Miro.
- Ability to write functional specifications, user stories, and use cases tailored to InfoSec needs.
- Strong data analysis skills using SQL, Excel, Tableau, or Power BI.
- Understanding of embedding security into SDLC/Agile/DevOps cycles.
- Process improvement experience using Lean or Six Sigma principles.
- Agile & Scrum proficiency, including backlog grooming, planning, and iterative delivery.
Soft Skills
- Collaborates effectively across technical and non-technical teams.
- Communicates complex security topics in a clear, simple manner.
- Strong attention to detail, particularly with audit and compliance data.
- Adaptability and critical thinking under changing security and compliance needs.
- Comfort with ambiguity and competing priorities.
Qualifications
- 8+ years of Business Systems Analysis experience, with 3+ years in Security, GRC, or Risk/Compliance roles.
- Experience working directly with InfoSec teams or delivering security/compliance system implementations.
- Proven success managing cross-functional projects within SaaS or cloud environments.
- Demonstrated ability to lead audits and remediation efforts.
Preferred:
- Bachelor’s degree in Information Systems, Cybersecurity, Computer Science, or a related field.
- Certifications such as CISA, CRISC, CISSP, CGEIT, or PMP.
- Knowledge of security standards and frameworks: ISO 27001, NIST, SOC 2, FedRAMP, PCI-DSS.
Additional Information
Work Personas
ServiceNow supports a distributed world of work through Work Personas: Flexible, Remote, or Required-in-Office. Eligibility may depend on distance from a ServiceNow office. Learn more about our approach here.
Equal Opportunity Employer
ServiceNow is proud to be an Equal Opportunity Employer. We consider all qualified applicants regardless of race, color, religion, gender, gender identity, sexual orientation, national origin, veteran or disability status, and other legally protected characteristics. Applicants with arrest or conviction records will also be considered in accordance with applicable law.
Accessibility
We are committed to creating an inclusive and accessible application process. If you need assistance or accommodation, please contact us at: [email protected]
Export Control Regulations
Certain positions may require access to controlled technology and compliance with export control regulations. All employment is contingent upon ServiceNow obtaining required licenses or approvals.
Ready to Join Us?
If you’re ready to help shape the future of security at one of the world’s most innovative SaaS companies, apply now and make the world work better for everyone.