Lead the design and security operations of a Microsoft 365 GCC High environment, ensuring compliance with CMMC and NIST controls while overseeing security architectures and operations.
Company Description
It all started in sunny San Diego, California in 2004 when a visionary engineer, Fred Luddy, saw the potential to transform how we work. Fast forward to today - ServiceNow stands as a global market leader, bringing innovative AI-enhanced technology to over 8,100 customers, including 85% of the Fortune 500®. Our intelligent cloud-based platform seamlessly connects people, systems, and processes to empower organizations to find smarter, faster, and better ways to work. But this is just the beginning of our journey. Join us as we pursue our purpose to make the world work better for everyone.
Job Description
About the team:
We are the backbone of Microsoft-powered collaboration at ServiceNow. Our team owns and manages the organization's Microsoft infrastructure - spanning Outlook, SharePoint, OneDrive, Microsoft Teams, and the broader collaboration ecosystem - ensuring employees have the tools, access, and experience they need to work seamlessly.
Beyond keeping the lights on, we take a strong stance on security and governance within the Microsoft environment. From access controls and data policies to compliance frameworks, we ensure our collaboration platforms are not just productive - but safe, compliant, and built to scale.
Whether it's enabling the workforce through modern collaboration tools or safeguarding the integrity of our Microsoft ecosystem, the DT Collaboration team sits at the intersection of productivity and trust.
About the role:
We are seeking a senior individual contributor to lead the technical design, implementation, and ongoing security operations of a Microsoft 365 GCC High environment supporting Controlled Unclassified Information (CUI). This role is accountable for implementing and evidencing compliance with CMMC Level 2, DFARS 7012, and NIST 800-171 controls.
The engineer will act as the technical owner of the GCC High enclave, partnering with Security, Legal, and IT to ensure audit readiness and successful certification by May 2026.
This role requires independent execution, deep security expertise, and the ability to translate regulatory requirements into enforceable technical controls.
The impact you'll make:
Architecture & Tenant Build
Compliance Implementation (CMMC/NIST 800-171)
Security Operations
Cross-Functional Leadership (IC4 Scope)
Qualifications
Extras:
Additional Information
Work Personas
We approach our distributed world of work with flexibility and trust. Work personas (flexible, remote, or required in office) are categories that are assigned to ServiceNow employees depending on the nature of their work and their assigned work location. Learn more here . To determine eligibility for a work persona, ServiceNow may confirm the distance between your primary residence and the closest ServiceNow office using a third-party service.
Equal Opportunity Employer
ServiceNow is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, creed, religion, sex, sexual orientation, national origin or nationality, ancestry, age, disability, gender identity or expression, marital status, veteran status, or any other category protected by law. In addition, all qualified applicants with arrest or conviction records will be considered for employment in accordance with legal requirements.
Accommodations
We strive to create an accessible and inclusive experience for all candidates. If you require a reasonable accommodation to complete any part of the application process, or are unable to use this online application and need an alternative method to apply, please contact [email protected] for assistance.
Export Control Regulations
For positions requiring access to controlled technology subject to export control regulations, including the U.S. Export Administration Regulations (EAR), ServiceNow may be required to obtain export control approval from government authorities for certain individuals. All employment is contingent upon ServiceNow obtaining any export license or other approval that may be required by relevant export control authorities.
From Fortune. ©2025 Fortune Media IP Limited. All rights reserved. Used under license.
It all started in sunny San Diego, California in 2004 when a visionary engineer, Fred Luddy, saw the potential to transform how we work. Fast forward to today - ServiceNow stands as a global market leader, bringing innovative AI-enhanced technology to over 8,100 customers, including 85% of the Fortune 500®. Our intelligent cloud-based platform seamlessly connects people, systems, and processes to empower organizations to find smarter, faster, and better ways to work. But this is just the beginning of our journey. Join us as we pursue our purpose to make the world work better for everyone.
Job Description
About the team:
We are the backbone of Microsoft-powered collaboration at ServiceNow. Our team owns and manages the organization's Microsoft infrastructure - spanning Outlook, SharePoint, OneDrive, Microsoft Teams, and the broader collaboration ecosystem - ensuring employees have the tools, access, and experience they need to work seamlessly.
Beyond keeping the lights on, we take a strong stance on security and governance within the Microsoft environment. From access controls and data policies to compliance frameworks, we ensure our collaboration platforms are not just productive - but safe, compliant, and built to scale.
Whether it's enabling the workforce through modern collaboration tools or safeguarding the integrity of our Microsoft ecosystem, the DT Collaboration team sits at the intersection of productivity and trust.
About the role:
We are seeking a senior individual contributor to lead the technical design, implementation, and ongoing security operations of a Microsoft 365 GCC High environment supporting Controlled Unclassified Information (CUI). This role is accountable for implementing and evidencing compliance with CMMC Level 2, DFARS 7012, and NIST 800-171 controls.
The engineer will act as the technical owner of the GCC High enclave, partnering with Security, Legal, and IT to ensure audit readiness and successful certification by May 2026.
This role requires independent execution, deep security expertise, and the ability to translate regulatory requirements into enforceable technical controls.
The impact you'll make:
Architecture & Tenant Build
- Lead GCC High tenant design and deployment
- Define secure architecture for:
- Entra ID (Azure AD)
- Exchange Online
- SharePoint/OneDrive
- Teams
- Intune
- Defender Suite
- Purview Compliance
- Establish Zero Trust and least-privilege administrative model
- Design CUI boundary protections and data segmentation
Compliance Implementation (CMMC/NIST 800-171)
- Map CMMC practices to technical controls and configurations
- Develop and maintain:
- System Security Plan (SSP)
- Control narratives
- Evidence repository
- POA&M
- Implement:
- MFA/Conditional Access
- Device compliance & endpoint hardening
- Logging/monitoring/SIEM integration
- DLP & data classification
- Incident response workflows
- Lead readiness reviews and assessment preparation with C3PAOs
Security Operations
- Own security baselines and tenant hardening
- Manage vulnerability remediation lifecycle
- Oversee incident investigations and root cause analysis
- Establish monitoring, alerting, and audit logging standards
- Drive continuous improvement of controls
Cross-Functional Leadership (IC4 Scope)
- Serve as technical authority for GCC High security decisions
- Provide guidance to operations engineers and offshore support
- Partner with Legal/Compliance on regulatory interpretation
- Present risk posture and compliance metrics to leadership
- Mentor junior engineers (without direct management responsibility)
Qualifications
- U.S. Person (citizen or permanent resident) - required for GCC High/CUI access.
- 6-10+ years Microsoft 365/Azure security engineering experience.
- Hands-on implementation of GCC High or FedRAMP/DoD environments.
- Direct experience with:
- CMMC or NIST 800-171 control implementation
- Intune & endpoint security
- Entra ID Conditional Access/PIM
- Defender suite
- Purview (DLP/eDiscovery/Insider Risk)
- Experience preparing for security audits or assessments.
- Strong technical documentation skills.
Extras:
- CISSP, CISM, or Security+
- Microsoft SC-100, SC-200, SC-300, MS-102
- Gov/DoD contracting environment experience
Additional Information
Work Personas
We approach our distributed world of work with flexibility and trust. Work personas (flexible, remote, or required in office) are categories that are assigned to ServiceNow employees depending on the nature of their work and their assigned work location. Learn more here . To determine eligibility for a work persona, ServiceNow may confirm the distance between your primary residence and the closest ServiceNow office using a third-party service.
Equal Opportunity Employer
ServiceNow is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, creed, religion, sex, sexual orientation, national origin or nationality, ancestry, age, disability, gender identity or expression, marital status, veteran status, or any other category protected by law. In addition, all qualified applicants with arrest or conviction records will be considered for employment in accordance with legal requirements.
Accommodations
We strive to create an accessible and inclusive experience for all candidates. If you require a reasonable accommodation to complete any part of the application process, or are unable to use this online application and need an alternative method to apply, please contact [email protected] for assistance.
Export Control Regulations
For positions requiring access to controlled technology subject to export control regulations, including the U.S. Export Administration Regulations (EAR), ServiceNow may be required to obtain export control approval from government authorities for certain individuals. All employment is contingent upon ServiceNow obtaining any export license or other approval that may be required by relevant export control authorities.
From Fortune. ©2025 Fortune Media IP Limited. All rights reserved. Used under license.
Top Skills
Azure
Cmmc
Defender Suite
Entra Id
Intune
Microsoft 365
Nist 800-171
Purview Compliance
ServiceNow Austin, Texas, USA Office
201 West 5th Street, 11th Floor, Austin, TX, United States, 78701
Similar Jobs at ServiceNow
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
As a Solution Consultant, you'll drive revenue growth in the Energy sector by leading deal strategies, developing C-level relationships, delivering solution demonstrations, and continuously learning about product innovations.
Top Skills:
Ai-Powered ToolsServicenow
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
The Security Solution Consultant at ServiceNow leads customer engagements by providing expertise in Security Operations, contributing to sales campaigns, and developing innovative solutions to enhance customer security architecture.
Top Skills:
IdsIpsIso27035Nist 800-61SansSecurity Incident ResponseServicenowSIEMThreat IntelligenceThreat Intelligence FrameworksVulnerability Response
Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
The role involves leading workshops, designing AI-enhanced demonstrations, advising customers on AI practices, and managing Proof of Concept engagements.
Top Skills:
App Engine StudioFlow DesignerGenaiIntegrationhubLlmsMicrosoft DynamicsSalesforceServicenowWorkday
What you need to know about the Austin Tech Scene
Austin has a diverse and thriving tech ecosystem thanks to home-grown companies like Dell and major campuses for IBM, AMD and Apple. The state’s flagship university, the University of Texas at Austin, is known for its engineering school, and the city is known for its annual South by Southwest tech and media conference. Austin’s tech scene spans many verticals, but it’s particularly known for hardware, including semiconductors, as well as AI, biotechnology and cloud computing. And its food and music scene, low taxes and favorable climate has made the city a destination for tech workers from across the country.
Key Facts About Austin Tech
- Number of Tech Workers: 180,500; 13.7% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Dell, IBM, AMD, Apple, Alphabet
- Key Industries: Artificial intelligence, hardware, cloud computing, software, healthtech
- Funding Landscape: $4.5 billion in VC funding in 2024 (Pitchbook)
- Notable Investors: Live Oak Ventures, Austin Ventures, Hinge Capital, Gigafund, KdT Ventures, Next Coast Ventures, Silverton Partners
- Research Centers and Universities: University of Texas, Southwestern University, Texas State University, Center for Complex Quantum Systems, Oden Institute for Computational Engineering and Sciences, Texas Advanced Computing Center

