Enable job alerts via email!

Cyber Command Software Security Assurance Project Manager

Gilder Search Group

New York (NY)

Remote

Full time

4 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading company in New York is seeking a Cyber Command Software Security Assurance Project Manager for a 24-month contract, working 100% remotely. The role involves leading application security initiatives, guiding secure software development practices, and mitigating cyber threats in the city's digital infrastructure. Ideal candidates should have extensive experience in application security and the ability to communicate complex security concepts effectively.

Qualifications

  • At least 8 years of hands-on experience in application security.
  • Experience conducting security reviews of modern applications.
  • Strong knowledge of OWASP Top 10 and secure development practices.

Responsibilities

  • Perform application security services including risk assessments and architecture reviews.
  • Provide consultative guidance during the design and deployment phases.
  • Support secure software development lifecycle practices across the organization.

Skills

Security Risk Communication
Application Security
Secure Development Practices
Vulnerability Scanning
Threat Modeling

Tools

Security Testing Tools
Code Analysis Tools

Job description

Title: Cyber Command Software Security Assurance Project Manager

Labor Category: Project Manager 3

Job Type: Contract

Duration: 24 Months

Location: 100% Remote

Scheduled Work Hours: Normal business hours Monday-Friday Average 35 hours per week.

Rate: $80 - $90/Hour

Job Description/Justification:

We are looking for software security assurance project managers. These resources will be essential to protect sensitive data, ensure essential service continuity, and maintain public trust by proactively mitigating cyber threats and vulnerabilities in the City’s digital infrastructure.

SCOPE OF SERVICES

We seeks a Software Security Assurance Project Manager to support the adoption of secure-by-design practices into NYC agencies’ software development lifecycle through our Software Security Assurance Program (SSAP).

TASKS:

  • Perform application security services including risk assessments, architecture reviews, and code review for internal and third-party applications.
  • Coordinate with developers, project teams, and third-party vendors to assess and guide secure software development and integration
  • Provide consultative guidance during design, development, and deployment phase of new solutions
  • Review threat models, validate security controls, and ensure alignment with security policies
  • Review and interpret security testing reports and vulnerability findings, and assist with risk remediation strategies
  • Contribute improvements in existing AppSec process, workflows, and documentation
  • Participate in defining and expanding secure software development lifecycle practices across the organization
  • Support the development and refinement of policy and governance documents related to software security
  • Track and report on security metrics, status of findings, and overall risk trends · Support management of tools, resources, and schedules for security testing

MANDATORY SKILLS/EXPERIENCE Note: Candidates who do not have the mandatory skills will not be considered.

  • At least 8 years of hands-on experience in application security, secure software development, or security consulting
  • Experience conducting security reviews (code, design threat modeling, architecture) for modern applications (web, mobile, cloud-native)
  • Strong knowledge of secure development practices, OWASP Top 10, and relevant standards
  • Ability to communicate technical risks and recommendations clearly to technical and non-technical audiences
  • Familiarity with tools used in code analysis, vulnerability scanning, and security testing
  • Experience working cross-functionally with developers, engineers, and product team

DESIRABLE SKILLS/EXPERIENCE:

  • Experience working within or alongside DevOps/CI-CD environments
  • Familiarity with container security, API security, and cloud-native application architectures (AWS, Azure, GCP)
  • Experience supporting security governance or policy development
  • Experience with risk exception processes or helping define security risk tolerances
  • Experience in large, complex organizations or government/public sector environments
  • Experience with third-party risk assessments, vendor management, or SaaS reviews
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.