Templar Shield Logo

Templar Shield

ServiceNow Agentic AI Developer - IT/OT SecOps (Now Assist, VR, SIR, TI, SPC) - Texas

Posted 4 Hours Ago
Be an Early Applicant
Remote
Hiring Remotely in USA
Mid level
Remote
Hiring Remotely in USA
Mid level
Develops agentic AI automations on ServiceNow for Security Incident Response, Vulnerability Response, Threat Intelligence, Security Posture Control, and OT security. Builds Now Assist experiences, multi-agent workflows, prompts, guardrails, vector retrieval pipelines, dashboards, integrations, and scripted automations. Supports intelligent triage, enrichment, remediation, incident correlation, AI governance, auditability, and human oversight across IT and OT environments.
The summary above was generated by AI

This is a remote position.

ServiceNow Agentic AI Developer  -  IT/OT SecOps (Now Assist, VR, SIR, TI, SPC)  Remote  -  U.S.

 

Templar Shield is building the next generation of intelligent cybersecurity operations on the ServiceNow platform. We’re looking for a developer who can fuse ServiceNow SecOps expertise with the emerging world of agentic AI—creating adaptive, intelligent automations that help SOC and OT security teams respond faster, remediate smarter, and strengthen security posture across complex environments.

This role is ideal for someone excited by the idea of blending scripting, AI orchestration, SecOps logic, and operational technology workflows into one unified automation engine.

 

About Templar Shield

Templar Shield is a boutique, high-performance consulting firm and ServiceNow Elite Partner specializing in Cybersecurity, SecOps, Integrated Risk Management, OT Security, and AI Governance. Our clients span critical infrastructure, energy, utilities, telecom, financial services, healthcare, and public sector—industries where downtime is expensive and security is mission-critical.

Our Agentic AI practice builds autonomous and semi-autonomous capabilities using Now Assist, AI Control Tower, vector search, multi-agent workflows, and advanced security integrations to transform both IT and OT security operations.

 

Role Overview

The ServiceNow Agentic AI Developer (SecOps) designs, builds, and deploys AI-driven automations across the ServiceNow SecOps suite:

  • Security Incident Response (SIR)
  • Vulnerability Response (VR)
  • Threat Intelligence (TI)
  • Security Posture Control (SPC)
  • OT Security Incident Response & Risk Workflows

You will create agentic workflows that perform intelligent triage, automated enrichment, natural-language incident summarization, dynamic remediation guidance, and AI-driven correlation across IT and OT environments.

This is a hands-on development role involving scripting, prompt engineering, orchestration logic, integration development, and security domain knowledge.

 

Key Responsibilities

Agentic AI & Now Assist Development

  • Build Now Assist experiences for SecOps modules—AI-generated incident summaries, enrichment narratives, vulnerability prioritization recommendations, remediation instructions, and posture evaluation.
  • Implement multi-agent patterns:
     -  Retrieval agents for evidence collection
     -  Orchestration agents for triage and decision routing
     -  Evaluator agents for accuracy, quality, and confidence checks
     -  Task agents for automated assignments and follow-through
  • Configure LLM-backed prompts, guardrails, vector search logic, and agent coordination.

ServiceNow SecOps Module Development

  • Customize and extend SIR, VR, TI, and SPC to support advanced security workflows.
  • Build logic for automatic correlations between incidents, vulnerabilities, TI indicators, OT telemetry, and risk conditions.
  • Create dashboards, workspace UI enhancements, and automated flows for SOC and OT teams.
  • Implement custom scoring models, enrichment jobs, remediation tasks, and integrations with security tools.

Integration, Automation & Scripting

  • Build or extend integrations with SIEM, SOAR, EDR/XDR, vulnerability scanners, OT monitoring platforms, asset-discovery tools, and threat-intelligence feeds.
  • Develop Glide scripts, Script Includes, Flow Designer actions, and IntegrationHub spokes.
  • Implement vector-based retrieval pipelines for AI-powered enrichment.
  • Ensure execution speed, reliability, and operational safety of all automations.

AI Governance, Logging & Secure Development

  • Embed auditability, explainability, output-evaluation logic, and human-override patterns.
  • Implement model-behavior logging and AI guardrail configurations to satisfy frameworks such as NIST AI RMF, ISO 42001, and emerging U.S. state AI rules.
  • Document prompts, agent configurations, and decision trees for transparency.


Requirements

Required Qualifications

  • 3 - 6 years of ServiceNow development experience in SecOps, IRM, or custom apps.
  • Strong JavaScript development skills (Script Includes, GlideRecord, GlideAjax, business rules, etc.).
  • Hands-on experience with at least two SecOps modules: SIR, VR, TI, SPC.
  • Familiarity with Now Assist, LLM APIs, GenAI patterns, vector search, or AI orchestration frameworks.
  • Experience integrating ServiceNow with security tools such as Splunk, QRadar, Sentinel, CrowdStrike, Tenable, Qualys, Rapid7, Claroty, Nozomi, or other OT security tools.
  • Ability to design and build workflow automations with Flow Designer and IntegrationHub.
  • Knowledge of security operations fundamentals—incident response, threat intel, triage, vuln management, MITRE ATT&CK, zero trust, or OT/ICS security.

 

Preferred / Nice-to-Have

  • Experience with OT/ICS protocols, SCADA systems, historian logs, or industrial cybersecurity tools.
  • ServiceNow certifications:
     -  CSA, CAD
     -  CIS-SecOps, CIS-SIR, CIS-VR
  • Understanding of NIST 800-53, NIST 800-82, CIS Controls, NERC CIP, TSA pipeline/aviation, ISO 27001, or ISO 62443.
  • Experience with machine-learning pipelines, Python, or API-driven data engineering.
  • Experience building retrieval-augmented generation (RAG) or multi-agent systems.


Benefits

What We Offer

  • Competitive compensation + performance bonus
  • Fully remote, flexible work environment
  • Employer-paid health, dental, vision, and life insurance
  • 401(k) with company match
  • Dedicated ServiceNow + cybersecurity + AI training and certification budget
  • Cutting-edge projects in IT/OT security and autonomous SOC operations
  • A collaborative team that encourages experimentation and new ideas

How to Apply

Email your résumé and a short description of one security automation you built—LLM-based or traditional—to [email protected], using the subject line:Agentic AI Developer  -  SecOps  -  [Your Name]



Similar Jobs

13 Minutes Ago
Remote or Hybrid
146K-256K Annually
Senior level
146K-256K Annually
Senior level
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Lead response and remediation for critical security incidents, coordinating global teams and executive communications. Develop and maintain incident command protocols, playbooks, and procedures; facilitate tabletop exercises; conduct investigations; track incident metrics; and support post-incident reviews and root cause analyses. The role also improves and automates major security incident processes while communicating risks, decisions, milestones, and blockers to technical and executive stakeholders.
Top Skills: Ai-Powered ToolsMitre Att&CkServicenowWorkflow Automation
18 Minutes Ago
Easy Apply
Remote
United States
Easy Apply
148K-248K Annually
Expert/Leader
148K-248K Annually
Expert/Leader
Cloud • Security • Software • Cybersecurity • Automation
Leads GitLab’s Department of War regional sales organization, managing, recruiting, and coaching Account Executives while driving new and expansion revenue. Responsibilities include forecasting, MEDDPICC-based deal inspection, complex federal procurement, executive negotiations, partner and distributor engagement, FedRAMP go-to-market strategy, and land-and-expand growth. The role collaborates cross-functionally with Renewals, Customer Success, Product, and Marketing in an all-remote environment and travels as needed for customer and team engagements.
Top Skills: CRMDevsecopsFedrampGitlabMarketing AutomationSalesforce
28 Minutes Ago
In-Office or Remote
Home, TN, USA
125K-155K Annually
Senior level
125K-155K Annually
Senior level
Greentech • Real Estate • Social Impact • Energy • Industrial • Solar • Renewable Energy
Administer and optimize enterprise AVEVA PI environments supporting real-time power infrastructure and control center operations. Configure OT data collection and integrations from SCADA, DCS, RTUs, PLCs, and related systems. Lead architecture improvements, troubleshooting, infrastructure maintenance, modernization, automation, telemetry feeds, project onboarding, documentation, and stakeholder coordination. Develop solutions using Python, PowerShell, and .NET while mentoring junior team members and supporting Operations Engineering.
Top Skills: .NetAspentech Osi MonarchAveva ConnectAveva Pi SystemDcsDnp3Ge WindscadaIgnitionAzureMicrosoft Hyper-VMicrosoft Sql ServerModbusMySQLOpcOrionlxPi AdaptersPi Asset FrameworkPi CollectivesPi ConnectorsPi Data ArchivePi InterfacesPi VisionPi Web ApiPlcsPostgresPowershellPythonRtusScadaSel RtacTcp/IpVMware

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account