GSSC Application Security Manager | Leader
Listed on 2026-02-13
-
IT/Tech
Cybersecurity, IT Consultant, Security Manager
Company Description
It all started in sunny San Diego, California in 2004 when a visionary engineer, Fred Luddy, saw the potential to transform how we work. Fast forward to today — Service Now stands as a global market leader, bringing innovative AI‑enhanced technology to over 8,100 customers, including 85% of the Fortune 500®. Our intelligent cloud‑based platform seamlessly connects people, systems, and processes to empower organizations to find smarter, faster, and better ways to work.
But this is just the beginning of our journey. Join us as we pursue our purpose to make the world work better for everyone.
The Service Now Security Organization (SSO)
The Service Now Security Organization (SSO) delivers world‑class, innovative security solutions to reduce risk and protect the company and our customers. We enable our customers to migrate their most sensitive data and workloads to the cloud, accelerating our business so that we are the most trusted SaaS provider. We create an environment where our employees are proud to work and can make a positive impact.
TeamOverview
The Global Security Support Center – Application Security (GSSC App Sec) team is a globally distributed organization responsible for delivering Service Now’s Customer Penetration Testing and Security Findings (CPT & SF) program. The team evaluates, triages, and escalates customer‑identified security vulnerabilities that impact Service Now products. GSSC App Sec also partners closely with teams across the Security Organization (SSO) to support customer escalations, major security incidents, and strategic security initiatives.
The team operates with a strong focus on representing the voice of the customer and reducing risk across the organization.
GSSC App Sec is a sub‑team within the broader Global Security Support Center (GSSC), aligned under Customer Security and Trust (CST) as part of the Security Organization (SSO).
Role SummaryThis role is responsible for managing the GSSC App Sec team and ensuring effective execution of the CPT & SF program. The position requires a combination of technical application security expertise and strong leadership capabilities. The ideal candidate consistently demonstrates integrity, quality, precision, and exceptional communication skills.
Key Responsibilities- Lead, coach, develop, and support the GSSC App Sec team while effectively delegating workload
- Own the CPT & SF program end‑to‑end, driving continuous improvements and ensuring the broader GSSC team executes efficiently
- Refine and mature team processes to enhance operational excellence and program scalability
- Collaborate with internal security and engineering teams to drive resolution of identified security vulnerabilities
- Act as the escalation point for complex or high‑priority customer security findings
- Engage directly with customers to understand key security concerns and communicate how Service Now mitigates their risks
- Provide leadership with clear and timely communication regarding program status, metrics, risks, and emerging trends
- Support major security incident response efforts by advocating for the customer perspective and contributing recommendations that promote secure and customer‑centric decision‑making
- Experience in leveraging or critically thinking about how to integrate AI into work processes, decision‑making, or problem‑solving. This may include using AI‑powered tools, automating workflows, analyzing AI‑driven insights, or exploring AI’s potential impact on the function or industry.
- 6 to 10 years in leadership or similar experience with education
- Experience leading teams, large programs, or major initiatives
- Strong written and verbal communication skills, with the ability to engage both technical and executive audiences
- Proven ability to ruthlessly prioritize and delegate in support of urgent business needs
- Deep application security expertise, including proficiency with the OWASP Top 10, security testing methodologies, and security risk rating frameworks
- Location requirements – placeholder (add specifics as needed)
- Relevant industry certifications: CISSP, CISM, CSSP, CEH, OSCP
- Bachelor’s degree
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).