ServiceNow SecOps Staffing & Recruiting | Kaladesi
Start a search
Kaladesi / ServiceNow specialties

SecOps staffing

ServiceNow
SecOps staffing.

Find ServiceNow SecOps people who understand the response operation behind the signals: architects, incident response and exposure specialists, developers, product owners, and integration talent screened by practitioners.

Full-timeContractContract-to-hire

01 — The specialty

A pile of alerts is not a security operation.

SecOps connects security signals, business context, accountable owners, repeatable response, and remediation work. We look for people who can turn findings and incidents into coordinated action across the SOC, IT, risk, application, and cloud teams.

AREA/01

Security Incident Response

Alert ingestion, triage, enrichment, prioritization, Security Analyst Workspace, playbooks, evidence, containment, recovery, major incidents, and post-incident review.

AREA/02

Exposure and vulnerability response

Vulnerability Response and Unified Security Exposure Management, scanner findings, asset matching, risk-based prioritization, remediation ownership, exceptions, and closure evidence.

AREA/03

Threat intelligence

Threat feeds, observables, indicators, enrichment, scoring, hunting, MITRE ATT&CK context, and intelligence that changes incident or exposure priorities.

AREA/04

Security ecosystem integration

SIEM, EDR, scanners, cloud, containers, code, firewalls, CMDB, change, and orchestration connections that carry security work across team boundaries.

02 — Practitioner screening

Security workflow quality shows up in the handoffs.

Real SecOps ownership appears when tool data is incomplete, asset context is disputed, response crosses teams, and remediation competes with production priorities. We look for the decisions that made the workflow trustworthy under pressure.

QUESTION/01

What made a finding actionable?

We ask how scanner or alert data was normalized, matched to assets, enriched with threat and business context, prioritized, assigned, and governed through remediation.

QUESTION/02

What crossed the security and IT boundary?

We look for the tasks, changes, approvals, exceptions, ownership rules, and escalation paths used to move response work beyond the security team.

QUESTION/03

How did the playbook behave under pressure?

We follow triage, investigation, containment, communications, evidence, recovery, and review to understand where automation helped and where human judgment remained essential.

03 — Roles we place

The right SecOps seat, clearly defined.

We recruit across permanent, contract, and contract-to-hire needs. The search starts with the security use cases, source tools, asset context, response boundaries, and operational outcomes the person must own.

SECOPS/01

SecOps Architect

Security operating model, solution design, integrations, data authority, automation, governance, and technical direction.

SECOPS/02

Security Incident Response Specialist

Triage, investigation, playbooks, Security Analyst Workspace, major incidents, evidence, response coordination, and metrics.

SECOPS/03

Vulnerability / Exposure Specialist

Scanner data, CMDB matching, risk prioritization, remediation ownership, exceptions, campaigns, closure, and exposure reduction.

SECOPS/04

SecOps Developer

Security workflows, workspaces, integrations, automation, enrichment, reporting, and maintainable platform extensions.

SECOPS/05

Platform / Product Owner

Roadmap, governance, intake, adoption, stakeholder alignment, service health, and measurable security outcomes.

SECOPS/06

Integration / Automation Specialist

SIEM, EDR, scanners, cloud, threat feeds, CMDB, change, orchestration, and response-tool connections.

04 — Start the conversation

Tell us what the security operation must improve.

On the first call, we’ll give you an honest view of search difficulty, candidate availability, and likely timing. If the brief is still broad, we’ll help separate platform responsibilities from security-operations ownership.

Looking for your next SecOps role? Introduce yourself confidentially.