About this Lead ServiceNow Architect - CMDB, VR & SIR role at TOMORROW HIRE
Work Type: Fully Remote
Compensation: $200,000–$250,000/yr. as W2, $110–$170/hr. as a 1099; negotiable for the right candidate
Industry Category: ServiceNow / Security Operations
Employment Type: Full-Time Contract — W-2, 1099, or C2C
Anticipated Period: October 10, 2026–September 12, 2027
Position Overview
Our client is seeking an architect-level Lead ServiceNow Architect to support the National Energy Technology Laboratory’s implementation of ServiceNow Security Operations.
This hands-on position will lead three sequential workstreams: maturing the Configuration Management Database and Common Service Data Model, implementing Vulnerability Response, and implementing Security Incident Response. The architect will also prepare documentation, manage project activities, and train staff.
Key Responsibilities
CMDB and CSDM
- Document CMDB and Configuration Data Management requirements.
- Define Configuration Item types, attributes, relationships, identification and reconciliation rules, lifecycles, and data-population methods.
- Review and implement the Common Service Data Model.
- Configure integrations and discovery schedules.
- Perform initial data-load reconciliation and iterative accuracy reviews.
- Develop CMDB health KPIs, reports, and dashboards.
- Connect the CMDB with ITSM Change Management, VR, SIR, Application Business Portfolio, and Asset Management.
- Configure forms and workspaces.
Vulnerability Response
- Install and configure ServiceNow Vulnerability Response.
- Integrate NVD, CWE, CISA KEV, and vulnerability scanners.
- Configure roles, permissions, CI lookup, assignment, grouping, remediation, and risk-calculation rules.
- Configure remediation SLAs, exception processes, notifications, reports, dashboards, and watch topics.
- Enable ITSM Change Management linkage and solution management.
Security Incident Response
- Install and configure ServiceNow Security Incident Response.
- Integrate Microsoft Azure Sentinel, Palo Alto Networks NGFW, Splunk, and inbound email.
- Configure incident-response processes aligned with NIST and SANS frameworks.
- Configure roles, permissions, assignment and escalation rules, severity calculations, risk scoring, and SLAs.
- Configure threat-intelligence feeds using STIX/TAXII and email sources.
- Develop playbooks, runbook knowledge content, notifications, reports, dashboards, workspaces, and the security incident catalog.
- Document the solution and train staff across all three workstreams.
Requirements
Minimum Qualifications
- At least three years of ServiceNow implementation experience.
- At least three years of ServiceNow architecture experience, including designing, developing, and customizing solutions.
- At least three years of hands-on CMDB/CSDM experience.
- At least three years implementing and configuring Vulnerability Response.
- At least three years implementing and configuring Security Incident Response.
- At least three years documenting CMDB requirements and defining CI scope and types.
- At least three years developing KPIs and metrics.
- At least three years configuring integrations and discovery schedules.
- At least three years of ITSM Change Management experience.
- Ability to write documentation, manage project activities, and train staff.
- Must be willing and able to complete customer-required background screening, DOE badging, and any applicable clearance process.
- Must be able to travel to Morgantown, West Virginia, for badging.
- Must be legally authorized to work in the United States without employer sponsorship, now or in the future.
Preferred Qualification
- Confidential clearance.
Benefits
Compensation
$200,000–$250,000 per year as a W2, negotiable for the right candidate.
$110–$170 per hour as a 1099; negotiable for the right candidate
Benefits for Eligible W-2 Employees
- Medical insurance
- Dental insurance
- Vision insurance
- 401(k)