Sr Software Engineer - Product Security

ServiceNow
Petah Tikva,Posted 9 March 2026

Job Description

ServiceNow’s Product Security organization is building a dedicated Security R&D function — a software engineering team that builds security capabilities with the same engineering standards as ServiceNow’s product organization. We are looking for a Senior Security Engineer to join this team as a core builder. Security R&D operates in two complementary modes: open contribution to product engineering — writing code alongside product teams where security expertise adds value — and developing its own security capabilities , including internal tooling, externally facing product features, AI-powered security automation, and third-party integrations. This is a new team being stood up in Petah Tikva, Israel, co-located with ServiceNow’s AI Security Research team. You will be part of the founding engineering team, with the opportunity to shape the technical culture from the ground up. This role reports to the Sr. Engineering Manager, Security R&D. What You Will Do Write Code That Secures the Platform Develop security tooling, automation, and services as part of the Security R&D team’s core engineering output. Contribute code to ServiceNow product engineering codebases, working alongside product teams to embed security capabilities directly into the platform. Build integrations with AI-powered services — both in-house and third-party — to automate and scale security workflows. Write clean, tested, production-quality code that meets enterprise standards for reliability and performance. Collaborate and Learn Work alongside senior engineers and the AI Security Research team, learning the security domain while contributing strong software engineering fundamentals. Participate in code reviews, design discussions, and sprint ceremonies, contributing to the team’s engineering culture from day one. Partner with product engineering teams during open contribution engagements, building relationships through quality work. Grow Your Impact Develop deep expertise in security engineering and AI security as a member of a team that operates at the cutting edge of both fields. Take increasing ownership of components and features as you ramp up, with a clear path to broader technical leadership. Stay curious about emerging AI/ML technologies and contribute ideas for how Security R&D can leverage them. To be successful in this role, you have: 5+ years of professional software engineering experience building production systems. Bachelor’s degree in Computer Science, Engineering, or a related technical field. Strong hands-on proficiency in Python and Java. You are a software engineer first — writing production code is what you do. Solid understanding of software engineering fundamentals: data structures, algorithms, system design, testing, and CI/CD practices. Experience building services or applications in cloud environments with an understanding of scalability and reliability principles. Collaborative mindset — you thrive in team environments, contribute to shared codebases, and communicate effectively with other engineers. Passion for next-generation AI technologies and a desire to work at the intersection of software engineering and security. Deep security or AI expertise is not required — we will invest in your growth in both areas Preferred Any exposure to security concepts — application security, secure coding practices, vulnerability management, or security tooling. Familiarity with AI/ML concepts, LLMs, or experience integrating AI services into applications. Experience with container/Kubernetes environments or cloud-native development (AWS preferred). Experience in a SaaS or enterprise software environment. Demonstrated learning agility — a track record of quickly ramping up in new technical domains. What Makes This Role Unique Builder-led culture: Security R&D is defined by engineering output, not advisory reviews. We build production security capabilities with the same discipline as product engineering. Dual op ... (truncated, view full listing at source)