Senior Security and Compliance Engineer, Federal - Moveworks

ServiceNowMountain View, CA
Hybrid

About The Position

Moveworks, now part of ServiceNow, is seeking a Senior Security and Compliance Engineer, Federal to join their team. This role focuses on building and maintaining automation for FedRAMP Continuous Monitoring (ConMon) and reporting. The engineer will develop cloud-based solutions using AWS, Terraform, and Python to collect and track Key Security Indicators (KSIs) across various security tools. A key aspect of the role involves working with DevOps and Engineering to integrate compliance into the CI/CD pipeline, automating checks before deployment. The position also leverages AI and scripting to reduce manual effort in recurring security tasks, such as user access reviews, audit preparation, evidence collection, and ConMon reporting. Additionally, the role will contribute to data-driven compliance innovations, including automated POAM/OSCAL/eMass generation and KSI feeds, and will participate in FedRAMP working groups and community initiatives. This is an opportunity to be at the forefront of the AI transformation, backed by the global scale of ServiceNow.

Requirements

  • U.S. Citizenship
  • Secret Clearance (or eligibility to obtain)
  • 5+ years of experience in software development or scripting, with a focus on automation of Governance, Risk Management and Compliance (GRC)
  • Proficiency in Python, AWS services, Kubernetes (EKS), Linux, and Terraform
  • Experience with vibe-coding with Claude Code
  • Experience with one or more common compliance programs, Federal compliance program experience preferred
  • A Bachelor’s degree in Computer Science or a related field — or equivalent experience/certifications
  • A collaborative mindset with the ability to thrive in a fast-paced, growth-focused environment

Responsibilities

  • Build and maintain automation for FedRAMP Continuous Monitoring (ConMon) and reporting.
  • Develop cloud-based solutions using AWS, Terraform, and Python to collect and track Key Security Indicators (KSIs) across tools like Tenable, Wiz, and AWS Security Hub.
  • Work with DevOps and Engineering to embed compliance into the CI/CD pipeline, automating checks before deployment.
  • Leverage AI and scripting to reduce manual effort in recurring security tasks such as user access reviews, audit preparation, evidence collection and ConMon reporting.
  • Contribute to data-driven compliance innovations, including automated POAM/OSCAL/eMass generation and KSI feeds.
  • Participate in FedRAMP working groups and community initiatives.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service