Search

Checkmarx SME (Security Scanning & Application Security)Charlotte, NC (Hybrid)

PublishedPublished: 6/14/2022
Technology

Job Description

Role : Checkmarx SME (Security Scanning & Application Security)

\n

Location : Charlotte, NC (Hybrid)

\n

Long Term

\n


\n

Job Summary

\n

We are seeking a Checkmarx Subject Matter Expert (SME) with strong experience supporting and optimizing Checkmarx-based application security programs. This is not a Checkmarx implementation role. The ideal candidate will have hands-on experience using Checkmarx in enterprise environments, advising development and security teams, interpreting scan results, and driving remediation best practices.

\n


\n

Key Responsibilities

\n

    \n
  • Act as the Checkmarx SME for application security initiatives.
  • \n

  • Review and analyze Checkmarx scan results and recommend remediation strategies.
  • \n

  • Support vulnerability triage, prioritization, and risk assessment activities.
  • \n

  • Work closely with application development, DevSecOps, and security teams.
  • \n

  • Establish best practices for SAST usage and secure coding.
  • \n

  • Assist in policy tuning, rule optimization, and false positive reduction.
  • \n

  • Provide guidance on integrating Checkmarx into SDLC and CI/CD pipelines.
  • \n

  • Support audits, security assessments, and compliance initiatives.
  • \n

  • Create dashboards, reports, and vulnerability metrics for leadership.
  • \n

\n


  • \n

    Required Qualifications

    \n

      \n
    • 8+ years of Application Security experience.
    • \n

    • 5+ years of hands-on experience with Checkmarx.
    • \n

    • Strong understanding of SAST methodologies.
    • \n

    • Experience supporting vulnerability management programs.
    • \n

    • Knowledge of secure coding practices across Java, .NET, Python, or similar technologies.
    • \n

    • Experience working with CI/CD tools and DevSecOps processes.
    • \n

    • Strong stakeholder communication skills.
    • \n

    \n


  • \n

    Preferred Qualifications

    \n

      \n
    • Experience with Checkmarx One or Checkmarx SAST platforms.
    • \n

    • Security certifications such as CSSLP, CISSP, Security+, or similar.
    • \n

    • Experience with additional security tools such as Veracode, Fortify, SonarQube, or Snyk.
    • \n

Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...