





Senior, niche supply-chain security role with strong company brand reduces applicant density.
Role requires deep supply-chain security and DevSecOps expertise, limiting cross-industry transferability.
Explicit 11-14 years plus mandatory DevSecOps and supply-chain security skills make hiring filters strict.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Own and execute software supply chain security strategy focused on secure deployment of open source artifacts across the enterprise.
Partner with Engineering leads to implement DevSecOps and Application Security principles and onboard teams to security tools and processes.
Develop, maintain, and improve supply chain security documentation, reporting, and tooling in alignment with project goals.
11 to 14 years of combined experience in development, CI/CD, software supply chain security, and application security.
Bachelor's degree in Computer Science, Information Technology, Information Security, Engineering, or related discipline.
Experience with application security tooling, build and release management, artifact cache management (e.g., JFrog Artifactory), and CI/CD automation.
Hybrid work setup: expected to work from office 4 days per week; standard business hours with global stakeholder flexibility.
Hands-on expertise with Java, .Net, Python, Node.js development and cloud platforms like Azure and AWS.
Experienced in managing secure software supply chains including artifact sourcing, locking down dependencies, and continuous security assessments.
Proven ability to influence engineering teams to adopt security best practices and integrate DevSecOps processes without formal authority.