Senior Business Systems Analyst | Security Programs at Servicenow
Orlando, FL 32826, USA -
Full Time


Start Date

Immediate

Expiry Date

09 Nov, 25

Salary

0.0

Posted On

09 Aug, 25

Experience

3 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Balance, Reporting, Functional Specifications, Agile, Grc, Scrum, Tableau, Work Processes, Risk, Soft Skills, Data Analysis, Visio, Decision Making, Sprint Planning, Power Bi, Business Systems Analysis, Six Sigma, Excel, User Stories, Security, Critical Thinking

Industry

Information Technology/IT

Description

Company Description
It all started in sunny San Diego, California in 2004 when a visionary engineer, Fred Luddy, saw the potential to transform how we work. Fast forward to today — ServiceNow stands as a global market leader, bringing innovative AI-enhanced technology to over 8,100 customers, including 85% of the Fortune 500®. Our intelligent cloud-based platform seamlessly connects people, systems, and processes to empower organizations to find smarter, faster, and better ways to work. But this is just the beginning of our journey. Join us as we pursue our purpose to make the world work better for everyone.
Job Description

TECHNICAL & ANALYTICAL SKILLS

  • Experience in leveraging or critically thinking about how to integrate AI into work processes, decision-making, or problem-solving. This may include using AI-powered tools, automating workflows, analyzing AI-driven insights, or exploring AI’s potential impact on the function or industry.
  • Security and Risk Platforms – Familiarity with GRC, IRM, SecOps, or vendor risk tools, ideally within the ServiceNow ecosystem.
  • Business Process Modeling – Document and optimize security workflows using tools like Visio, Lucid, or Miro.
  • Requirements Documentation – Write functional specifications, security user stories, and use cases tailored to InfoSec needs.
  • Data Analysis & Reporting – Use SQL, Excel, Tableau, or Power BI to support risk reporting, compliance KPIs, and audit metrics.
  • SDLC & Secure Development Awareness – Understand how to embed security into Agile/DevOps cycles and development pipelines.
  • Process Improvement – Apply Lean or Six Sigma principles to enhance security workflows.
  • Agile & Scrum – Strong facilitation of sprint planning, backlog grooming, and iterative delivery in a security context.
    Qualifications

SOFT SKILLS

  • Strong collaboration between technical and non-technical security stakeholders.
  • Ability to simplify complex security and compliance concepts for business partners.
  • High attention to detail in handling audit and risk data.
  • Critical thinking and problem-solving under evolving security requirements.
  • Ability to manage ambiguity and balance competing priorities across risk, compliance, and delivery.

EXPERIENCE AND EDUCATION

  • 8 or more years of experience in Business Systems Analysis, with at least 3 years supporting security, GRC, or risk/compliance domains.
  • Demonstrated experience working with InfoSec teams, GRC platforms (ideally ServiceNow), or leading audits and remediation projects.
  • Experience delivering technical solutions in cross-functional environments, preferably within a SaaS or cloud enterprise.
  • Proven success as a project or Scrum lead on security or compliance-related initiatives.
Responsibilities
  • Partner with security and compliance stakeholders to understand objectives, workflows, and pain points; translate these into detailed functional requirements and user stories.
  • Conduct and facilitate requirements gathering for projects related to risk management, security tooling, audit automation, vendor security, and data protection.
  • Perform gap analyses and identify opportunities for security process improvements using data and systems expertise.
  • Conduct data analysis to validate requirements, support metrics, and monitor post-implementation effectiveness (e.g., SLA, security incident volume, audit closure rates).
  • Lead cross-functional initiatives that span enterprise systems (e.g., GRC, Risk, Vendor Risk, Policy, IRM, SecOps), ensuring security and compliance requirements are embedded early in the lifecycle.
  • Coordinate operational activities for multiple security-related projects simultaneously.
  • Serve as a key liaison between Security, IT, and Engineering teams.
  • Facilitate User Acceptance Testing for security tooling and workflow changes, guiding testers and resolving technical issues.
  • Support change management activities, including the creation of training materials, process documentation, and operational support (e.g., office hours).
  • Facilitate documentation, update, or deprecation of internal security policies and standards as required.
  • Track security-related issues, defects, and findings across tools; gather evidence and ensure timely resolution or risk acceptance.
  • Act as Scrum Master using Agile methodologies, leading sprint ceremonies and tracking delivery of security enhancements.
Loading...