Lead Strategic Services Consultant (Application Security)
Black Duck Software, Inc. · Burlington, MA (Remote)
Posted 29 days ago
or apply directly on Black Duck Software, Inc.'s site. We never take the application ourselves.
Is this posting real?
- This role has been open
- 29 days Black Duck Software, Inc.'s roles stay open a median of 45 days
- Reposted
- No
- Salary listed
- No 8% of Black Duck Software, Inc.'s roles list one
- Ghost-job risk at Black Duck Software, Inc.
- high 32 stale, 5 reposted of 60 open
- Hiring momentum
- 99 roles opened in the last 90 days ↑ up vs. the prior 90 days
- Last confirmed on the employer's board
- 2026-09-17
Measured from postings appearing on and disappearing from Black Duck Software, Inc.'s own greenhouse board since 2026-08-03. Full hiring picture for Black Duck Software, Inc..
About this role
The Lead Strategic Services Consultant will engage with clients to enhance their DevSecOps and CI/CD pipeline configurations, focusing on application security. Responsibilities include conducting maturity assessments, developing strategic roadmaps, facilitating workshops, and delivering presentations to executive teams. The role combines technical expertise with strategic consulting to align security initiatives with organizational goals.
- benefits
- 1/5
- freshness
- 4/5
- career value
- 4/5
- role clarity
- 4/5
- pay transparency
- 0/5
Scored from the posting itself — how clearly the role is described, how much it says about pay and benefits, and how recently it was listed. Not a judgement of Black Duck Software, Inc. as an employer.
What you need
- US Citizenship or GC with 3 years of US residency and ability to pass a background check
- 5–8+ years of experience in application security, software assurance, or product security consulting
- Application Security and Vulnerability Management skills
- Gitlab CI/CD, Python, AWS, Grafana
- Working knowledge of frameworks such as BSIMM, NIST SSDF or OWASP SAMM
- Proven experience developing or executing maturity models, capability assessments, or multi-year roadmaps for AppSec, Product Security, or DevSecOps programs
Nice to have
- Prior consulting experience with a Big Four, boutique AppSec consultancy, or internal software security governance team
- Experience in software supply chain risk management (SSCRM), AI/ML assurance, or DevSecOps pipeline design
- Experience developing software and functioning within secure development lifecycles (SDLCs)
- Industry certifications such as CEH, CISSP, CISM
Worth weighing
- Pay range provided is $123,500 — $185,000 USD
- Role requires a combination of hands-on technical work and strategic consulting, which may appeal to candidates looking for diverse responsibilities
- No specific benefits or perks mentioned beyond equal opportunity employment statement
Summarised from Black Duck Software, Inc.'s posting. Read the full original.
Listed by Black Duck Software, Inc. on their greenhouse job board, last confirmed open on 2026-09-17. PitchMeAI is not the employer.
More roles at Black Duck Software, Inc.
- Sr. Sales Development RepresentativeTokyo, JP
- Senior Agile Delivery ManagerUS-Remote
- Marketing Operations ManagerUS Remote or Hybrid
- Implementation ConsultantBengaluru, India
- Implementation ConsultationSingapore
- Implementation ConsultantSingapore
- Lead Technical Account ManagerBangalore
- Lead Sales Engineer - Enterprise/CommercialAtlanta, Burlington, US (non-CA) Off-Site Office