Remote Position08.03.26
AI SCORE 8.5

Contract Subject Matter Expert (SME) - Secure Software Assessor - Remote

$120K–$150K/year

About the Role

We are seeking a highly skilled Contract Subject Matter Expert (SME) - Secure Software Assessor - Remote to join our dynamic team. In this role, you will leverage your expertise in secure software assessment to contribute to critical projects that enhance software security across various platforms. As a remote position, this role offers flexibility while allowing you to engage with peers in the cybersecurity field.

What You'll Do

  • Conduct thorough assessments of software security, utilizing Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST) methodologies.
  • Provide expert guidance on secure coding practices and software composition analysis (SCA) to ensure compliance with industry standards.
  • Collaborate with development teams throughout the Software Development Lifecycle (SDLC) to integrate security measures effectively.
  • Engage in risk assessment and management activities, applying frameworks such as NIST RMF to identify and mitigate vulnerabilities.
  • Participate in educational initiatives to promote awareness of cybersecurity best practices within the organization.

Requirements

  • Proven experience as a Subject Matter Expert (SME) in secure software assessment.
  • Strong knowledge of DevSecOps principles and practices.
  • Familiarity with OWASP guidelines and secure coding standards.
  • Experience with cloud platforms such as AWS and tools like Terraform and Kubernetes.
  • Relevant certifications such as CISSP or GCSA are highly desirable.

Nice to Have

  • Experience in AI and data labeling projects.
  • Background in educational technology or manufacturing workforce development.
  • Knowledge of white-box testing methodologies.

What We Offer

  • Flexible work arrangement that promotes work-life balance.
  • Opportunity to contribute to assessment validation and cybersecurity initiatives.
  • Engagement with a network of professionals in the cybersecurity field.
  • Competitive salary with potential for growth based on performance.
  • Access to ongoing training and professional development resources.
Why This Job8.5 of 10

This remote Contract Subject Matter Expert (SME) role offers a unique opportunity to leverage your expertise in secure software assessment while enjoying flexible working conditions.

Salary Range
Required
0/1
Optional
0/1
Bonus
0/1

Who Will Succeed Here

Proficient in Secure Software Assessment methodologies, particularly SAST (Static Application Security Testing) and DAST (Dynamic Application Security Testing), with hands-on experience using tools like SonarQube and OWASP ZAP.

Strong familiarity with DevSecOps principles and practices, demonstrating the ability to integrate security into CI/CD pipelines using tools like Jenkins and GitLab CI, ensuring security is a core component of the development lifecycle.

Possesses a proactive mindset in risk management, able to identify potential security vulnerabilities in cloud environments (specifically AWS) and container orchestration (Kubernetes), and provide actionable remediation strategies.

Learning Resources

OWASP Secure Coding Practicesguide

Career Path

Contract Subject Matter Expert (SME) - Secure Software Assessor - Remote(Now)Lead Security Engineer - Remote(1-2 years)Director of Security Strategy - Remote(3-5 years)

Market Overview

Market Size 2024
$3.2B
Annual Growth
12.5%
AI Adoption
45%
Investment
+60%
Labour Demand
+25%
Avg Salary
$150K

Skills & Requirements

Required
Secure Software AssessmentSASTDAST
Growing in Demand
Cloud SecurityContainer SecurityThreat Modeling
Declining
Static Code Analysis Tools (e.g., Fortify 4.x)Manual Penetration Testing

Domain Trends

Rise of Automated Security Tools
The adoption of automated SAST and DAST tools is increasing, with a projected growth rate of 25% by 2025 as organizations seek to streamline secure software development.
Integration of DevSecOps Practices
Over 70% of organizations are implementing DevSecOps methodologies, emphasizing the need for security at every stage of the software development lifecycle.
Shift to Cloud-Native Security
With 60% of enterprises moving to cloud environments, there is a growing demand for secure coding practices tailored for cloud-native applications, particularly in AWS and Kubernetes.

Industry News

Loading latest industry news...

Finding relevant articles from the last 6 months

All job postings are automatically gathered by algorithms. We do not review or verify listings, be careful when applying and do not sign-in with iCloud or Google services.