Principal Engineer, AI Security Governance | Endpoint Security Engineering

    United States
    Full-Time
    Senior (7+ yrs)
    Engineering & Development
    Posted on August 12, 2026

    About SSO

    The ServiceNow Security Organization (SSO) delivers world-class, innovative security solutions to reduce risk and protect the company and our customers. We enable our customers to migrate their most sensitive data and workloads to the cloud, accelerating our business so that we are the most trusted SaaS provider. We create an environment where our employees are proud to work and can make a positive impact.


    Team
    This position reports to the Director, Endpoint Security Engineering (ESE) and anchors the AI Security Governance Program — a board-visible, auditor-facing program spanning five control pillars (AI visibility & inventory, prompt & response protection, agent architecture & control, shadow AI & access control, and compliance & audit) and the enterprise AI risks reported to the Audit Committee. The team builds state-of-the-art controls that reduce risk to the company’s most sensitive AI-connected assets with the least possible impact on operations, and shifts the perception of security from blocker to enabler.


    Role
    As Principal Engineer for AI Security Governance, you will own the technical strategy, architecture, and hands-on delivery of the program end to end. You will set direction across two governance tracks — enterprise-wide AI traffic and ServiceNow platform AI — and personally build and mature the controls that enforce it. 

    This is a senior individual-contributor role: you will lead through technical authority, architecture, and mentorship rather than direct-report management, and you will be a driving force in ServiceNow’s internal AI transformation, moving the security function from manual effort toward AI-automated operations.


    What you get to do in this role:

    • Own the vision, strategy, and roadmap for the AI Security Governance Program across all five control pillars
    • Architect controls across both the enterprise-AI and platform-AI tracks, keeping the two governance paths distinct and defensible
    • Deploy, configure, and mature security controls hands-on — including AI detection and response, data security posture management (DSPM/AISPM), and data-path controls for unmanaged access
    • Drive the shift from manual security operations to AI-automated workflows, building automation into every control rather than staffing around it
    • Close the highest-severity gaps in AI data protection, agent permissions, and shadow AI
    • Author and sustain the risk narrative and technical materials for CISO, board, and Audit Committee audiences to a standard of precision that never overclaims
    • Provide technical leadership and mentorship to engineers and cross-functional partners, and bring data to every decision
       

    Company:  ServiceNow

    Provides a cloud-based platform for automated business workflows and digital transformation solutions.
    10001+ employees
    Software & IT Services
    HQ: United States