Under limited supervision, this role acts as strategic bridge between technical security controls and enterprise compliance and risk requirements as part of a ServiceNow IRM/GRC implementation team supporting the Global Security Office (GSO) and Enterprise Risk initiatives; with primary accountability for automating, designing, configuring, and sustaining scalable IRM capabilities while adhering to security frameworks within the ServiceNow platform. The position requires practical experience translating regulatory, risk, audit, and compliance requirements into production‑ready platform configurations, mappings, workflows, data models, and reporting analytics, not just advisory guidance, including requirements validation against user stories, UAT coordination, agile testing support, and release readiness. The role requires a strong analytical and problem‑solving approach to operationalize GRC lifecycles—including policy, compliance, risk, audit, and regulatory change management—and to clearly communicate complex IRM concepts and design decisions to both technical teams and business stakeholders, supported by stakeholder enablement through role‑based training, job aids, and awareness communications. Responsibilities include monitoring and evaluation of control, regulatory, and security processes to ensure assurance over global systems and data, leveraging advanced understanding of ServiceNow IRM/Audit functionality, CMDB and entity modeling fundamentals, and an in‑depth understanding of ServiceNow platform dependencies and integrations.Principle DutiesWork with functional and technical requirements to design and implement within ServiceNow Enterprise IRM Application and automate where possible.Support and mainta Enterprise IRM Application with scope, product, and operational changes/maintenance.Capture, support, and validate requirements to technical developers and move along deployment lifecycle including user acceptance testing and agile testing- assuring alignment between stories and stakeholders and taking processes into features/requirements for implementations.Understands dependencies as aligned to ServiceNow architectural requirements.Collaborate with compliance, security and risk professionals on projects related to compliance with regards to Security Frameworks (NIST CSF/SOX/DORA) and other regulations.Develop and administer just in time training and awareness campaigns for various IRM/GRC groups within the company. Provide process improvement recommendations to mitigate risk, meet business obligations, and regulatory requirements.Facilitates incoming audits and assessments, coordinates discussions with appropriate owners and business stakeholders, and follows up on any remediation activities identified to meet associated due dates to ensure timely completion.Participates ndards, controls, procedures, and security and privacy audits and assessments.The scope of routine activities and tasks department or division.Ability to structure, scope, and compile data to support reporting.Performs other duties as assigned.EducationBachelor’s degree or equivalent experience - RequiredMaster's degree or professional industry certification - PreferredWork Experience, Skills, And Abilities4+ years' relevant experience vacy, audit, controls and regulatory compliance, or related experience. - RequiredDeep understanding of ServiceNow platform and its capabilities, dependencies with proficiency in ServiceNow administration and development and architectural requirements with experience in Version(s) after Yokohama - RequiredServiceNow GRC framework and process administration (Regulatory Change Management a plus) - RequiredGeneral knowledge of business and technology operations; ability to work well within a team setting and maintain a high level of confidentiality - RequiredIntermediate knowledge of global standards and regulations regarding security, privacy, and fraud. - RequiredDemonstrated ability to learn and stay current on data privacy, data security, and fraud threats and vulnerabilities. - RequiredIntermediate organizational, planning and task management skills with high attention to detail; ability to adjust to changing priorities and work under tight timelines - RequiredIntermediate level of investigative, analytical and problem-solving skills; ability to set goals, communicate expected outcomes and liase with individuals across a variety of functions and levels - RequiredExcellent customer service skills; ability to balance multiple priorities, deadlines and deliverables while maintaining a positive attitude - RequiredIntermediate oral and written communication skills; ability to convey information in a clear and concise manner and provide regular proactive updates to team members, key stakeholders, and mid-level management - RequiredQuick to adapt to new methods; ability to be flexible when needed, take initiative and demonstrate accountability - RequiredInsurance/Reinsurance industry experience or certifications - PreferredInformation security, privacy, compliance, risk or audit professional certifications, such as SSCP, CIPP, CISA and Security+ - PreferredIntermediate understanding of domestic and global security & regulations - PreferredTechnical SkillsServiceNow Expertise as GRC Admin or GRC/IRM implementation analyst OR ServiceNow University GRC Integrated Risk Management (IRM) Implementer - RequiredStrong understanding of GRC Lifecycles management (Policy, Controls, Audit, Risk, Regulatory Change Management, Advance Risk and Advance Audit) - RequiredStrong understanding of Reporting, Dashboards, and workspace within ServiceNow - RequiredUnderstanding of Regulatory tool integrations with ServiceNowStrong understanding of Entities/CMDB within ServiceNow - RequiredMicrosoft Office application experience (Excel, Word, Visio, Teams, SharePoint) - RequiredFamiliarity with IT and security systems - RequiredKnowledge of applicable regulations such as Sarbanes-Oxley, DORA, NY DFS, GLBA, GDPR etc.- RequiredIT Control Frameworks including NIST CSF/P, NIST AI, COBIT, ITIL, ISO 27001/27002, CIS, etc. - PreferredKnowledge of risk assessment methods - PreferredInformation security, privacy, compliance, risk or audit professional certifications, such as SSCP and Security+ - PreferredExperience reviewing SOC1 and SOC2 attestations - PreferredProject management skills/experience - PreferredPower-BI Experience for reporting, queries and creating dashboards - PreferredWhat you can expect from RGAGaing colleagues around the world.Enjoy a respectful, welcoming environment that fosters individuality and encourages pioneering thought.Jo experience vast, endless career potential.Base pay varies depending on job-related knowledge, skills, experience and market location. RGA provides an annual bonus plan that includes all roles and some positions are eligible for participation in our long-term equity incentive plan. RGA also maintains a full range of health, retirement, and other employee benefits.We’re excited to get to know you and connect your unique skills with our global opportunities. To create a modern and seamless experience, we use artificial intelligence (AI) in parts of our preliminary screening process. This technology helps us personalize job recommendations, automate interview scheduling, evaluate candidates based solely on experience—without considering name, gender, or other personal details—and provide real-time answers through our chatbot. AI is used only during early screening and never makes hiring decisions. Your RGA recruiter will work closely with you every step of the way to ensure the process feels personal, thoughtful, and focused on you.