PEEK IT · 2 hours ago
Hiring: Full-time ServiceNow VR Developer (Hybrid from Jersey City, NJ or Tampa, FL)
Peek IT is a boutique consulting firm dedicated to driving business value through exceptional IT operations. They are seeking a highly qualified ServiceNow Vulnerability Response (SVR) Model Developer to elevate security operations and strengthen the vulnerability management program.
Information Technology & Services
Responsibilities
Configure and customize the ServiceNow Vulnerability Response (VR) module to support vulnerability identification, prioritization, remediation, and reporting across the enterprise
Design and implement workflows, business rules, client scripts, Script Includes, and Flow Designer automations that support the full VR lifecycle
Integrate VR with external vulnerability scanners and the CMDB to automate ingestion, correlation, and enrichment of vulnerability data
Configure MID Servers, data sources, authentication profiles, and API connections to support secure and reliable vulnerability data ingestion
Develop automation for vulnerability assignment, remediation tracking, SLA enforcement, and exception/false-positive management
Create custom dashboards, reports, and Performance Analytics indicators to visualize vulnerability KPIs, trends, and remediation performance
Build and maintain custom SVR scoring models, including exploitability scoring, asset criticality weighting, business impact logic, and threat intelligence enrichment
Ensure accurate vulnerability-to-asset and asset-to-service mapping by optimizing CMDB relationships and service dependency models
Integrate VR with SIEM/SOAR platforms, patch management tools, and threat intelligence feeds to enhance prioritization and automate remediation workflows
Conduct data quality validation, identify correlation gaps, and implement corrective actions to improve the accuracy of vulnerability records
Perform model testing, simulation, and tuning to ensure scoring logic produces accurate and actionable prioritization results
Collaborate with Security Operations, Infrastructure, DevOps, and Application teams to drive remediation outcomes and reduce vulnerability backlogs
Support risk acceptance workflows, compensating controls, and governance processes aligned with frameworks such as NIST, CIS, ISO 27001, SOC2, and PCI-DSS
Lead requirements workshops, design sessions, and stakeholder reviews to ensure VR capabilities align with business needs
Produce clear technical documentation, runbooks, and knowledge-transfer materials to support long-term operational success
Participate in Agile ceremonies, contribute to sprint planning, and ensure timely delivery of VR enhancements and integrations
Ensure VR implementation complies with security policies, audit requirements, and regulatory obligations
Qualification
Required
5–9 years of hands-on development experience on the ServiceNow platform, including scripting, configuration, and module customization
2+ years of direct experience implementing the ServiceNow Vulnerability Response (VR) module, including end-to-end lifecycle configuration
Ability to configure and customize the VR module to support vulnerability identification, prioritization, remediation, and reporting
Experience designing workflows, business rules, client scripts, Script Includes, and integrations supporting the VR lifecycle
Proven ability to integrate VR with external vulnerability scanners and the CMDB to automate ingestion and correlation of vulnerability data
Experience configuring MID Servers, data sources, authentication profiles, and API connections for secure vulnerability data ingestion
Ability to develop automation for vulnerability assignment, remediation tracking, SLA enforcement, and exception or false‑positive management
Experience creating custom dashboards, reports, and Performance Analytics indicators for vulnerability KPIs and trends
Strong understanding of ServiceNow CMDB, Discovery, ITSM processes, and service dependency mapping
Experience integrating with vulnerability scanners such as Qualys, Tenable, Rapid7, Prisma Cloud, or similar tools
Proficiency with JavaScript, Glide API, Flow Designer, Integration Hub, and REST/SOAP integrations
ServiceNow Certified System Administrator (CSA) or equivalent foundational certification
Strong understanding of vulnerability management concepts, including CVE, CVSS, CWE, exploitability scoring, and threat intelligence enrichment
Experience building or tuning custom VR scoring models, including asset criticality weighting and business impact logic
Ability to analyze and improve vulnerability‑to‑asset and asset‑to‑service mapping to ensure accurate service impact analysis
Experience integrating VR with SIEM/SOAR platforms, patch management tools, or threat intelligence feeds
Hands-on experience with data quality validation, correlation troubleshooting, and improving ingestion accuracy
Ability to create and maintain technical documentation, runbooks, and operational procedures for VR processes
Experience working in Agile environments, participating in sprint planning, backlog refinement, and iterative delivery
Strong communication skills with the ability to collaborate across Security Operations, Infrastructure, DevOps, and Application teams
Company
PEEK IT
Peek IT is a boutique consulting firm that helps organizations unlock business value through operational IT excellence.
Funding
Current Stage
Early StageCompany data provided by crunchbase