Get more replies from employers
Send a job-specific resume in minutes.
Vanguard seeks a Software Supply Chain SME to act as the technical authority securing end-to-end software supply chain risk across the SDLC. You will set security standards, integrate SBOM and artifact signing controls, and lead governance while partnering with AppSec, DevSecOps, and engineering teams to reduce supply chain risk.
You will own tooling strategy for SCA and CI/CD security, drive remediation workflows, and deliver governance metrics to leadership.
The Software Supply Chain SME serves as the technical authority responsible for securing the end-to-end software supply chain, ensuring the integrity, provenance, and risk posture of all code, dependencies, and artifacts across the SDLC. This role defines and enforces security standards, integrates controls within CI/CD pipelines, and leads enterprise initiatives such as SBOM adoption, artifact signing, and open-source risk management. The SME partners with AppSec, DevSecOps, and engineering teams to embed secure development practices, drive vulnerability remediation, and enhance developer enablement—while providing governance, metrics, and strategic guidance to reduce supply chain risk at scale.
Vanguard is not offering visa sponsorship for this position.