Description :
We are looking for an experienced ServiceNow GRC professional responsible for implementing, configuring, and maintaining the Governance, Risk, and Compliance (GRC) modules within the ServiceNow platform. The role involves working closely with stakeholders to design and deliver scalable solutions aligned with organizational risk and compliance objectives.
Key Responsibilities :
- Implement and configure ServiceNow GRC modules including :
1. Policy and Compliance Management
2. Risk Management
3. Audit Management
4. Vendor Risk Management (VRM)
5. Business Continuity Management (BCM) (optional)
Work with business stakeholders to gather and analyze requirements, and translate them into ServiceNow configurations and workflows.Design and develop custom applications, UI policies, client / server scripts, business rules, and data integrations as needed.Maintain and enhance existing ServiceNow GRC implementations to align with organizational compliance frameworks (e.g., ISO 27001, SOC 2, NIST, GDPR).Integrate GRC with other ServiceNow modules such as IRM, SecOps, ITSM, and CMDB.Develop and maintain dashboards, reports, and indicators to track risk posture and compliance status.Ensure adherence to best practices, ServiceNow standards, and governance processes.Provide technical expertise during upgrades, patches, and new feature releases.Support user training, documentation, and troubleshooting.Required Skills & Qualifications :
Bachelors degree in Computer Science, Information Systems, or related field.3+ years of hands-on experience with ServiceNow GRC / IRM implementation and configuration.Strong understanding of risk, compliance, and audit management frameworks (ISO, NIST, SOX, GDPR, etc.).Experience with ServiceNow Studio, Flow Designer, IntegrationHub, and Data Import / Export.Knowledge of JavaScript, Glide API, and ServiceNow scripting.Excellent analytical, communication, and stakeholder management skills.ServiceNow Certified System Administrator (CSA) and Certified Implementation Specialist GRC / IRM preferred.Good to Have :
Experience integrating ServiceNow GRC with third-party systems (e.g., Archer, OneTrust, or Splunk).Familiarity with Security Operations (SecOps) modules like Vulnerability Response and Incident Response.Exposure to ServiceNow reporting and Performance Analytics (PA).(ref : hirist.tech)