Job Summary:
We are seeking a highly skilled and certified Technical Consultant with hands-on experience implementing the Invicti ServiceNow Store application integrated with Application Vulnerability Response (AVR). The ideal candidate will be responsible for end-to-end implementation, configuration, and optimization of the Invicti integration within the ServiceNow platform, ensuring seamless vulnerability management workflows and compliance with security best practices.
Key Responsibilities:
- Lead the implementation of the Invicti ServiceNow Store application, ensuring alignment with client security and ITSM processes.
- Configure and customize the AVR module to support automated ingestion, triage, and remediation of application vulnerabilities.
- Integrate Invicti scan results into ServiceNow via MID Server or APIs, ensuring accurate and timely data synchronization.
- Develop and maintain custom workflows, business rules, script includes, and UI policies to support client-specific requirements.
- Collaborate with security, infrastructure, and application teams to ensure proper mapping of vulnerabilities to configuration items (CIs).
- Provide technical guidance and best practices for vulnerability lifecycle management using ServiceNow VR.
- Conduct knowledge transfer sessions and create documentation for end-users and administrators.
- Troubleshoot and resolve integration issues, ensuring high availability and performance of the solution.
Required Qualifications:
- ServiceNow VR Certification (mandatory).
- Proven experience implementing the Invicti ServiceNow Store application with AVR.
- Strong understanding of ServiceNow Security Operations (SecOps), especially Vulnerability Response and Application Vulnerability Response.
- Proficiency in JavaScript, REST APIs, and ServiceNow scripting.
- Experience with MID Server configuration, data sources, and integration troubleshooting.
- Familiarity with CVE, CWE, and vulnerability scoring systems (e.g., CVSS).
- Excellent communication and documentation skills.
Preferred Qualifications:
- Experience with other vulnerability scanners (e.g., Qualys, Tenable, Rapid7) and their ServiceNow integrations.
- ITIL Foundation Certification.
- Experience working in federal or regulated environments.