1

Freelance Source Code Auditor Jobs in Massachusetts

You'll also need: • 5+ years of practical application security work experience, preferably including some or all of the following: source code auditing, penetration testing, product assessments ...

Data Engineer

North Reading, MA · On-site

$119K - $143K/yr

... Code: Utilize tools like Terraform to support reproducible, version-controlled environment ... Own the health and optimization of 40+ source datasets, managing sync schedules and expanding ...

Data Engineer

North Reading, MA · On-site

$117K - $140K/yr

... source systems into Google BigQuery. • Own the health and optimization of 40+ source datasets ... as-code and Looker Studio (or similar BI tools) to ensure gold-tier data yields performant ...

Take ownership of SKU and BOM accuracy, acting as the gatekeeper for our "single source of truth ... low-code environments). * Excellent communication skills, with the ability to translate "supply ...

Sr Database Developer

Woburn, MA · On-site

$135K - $150K/yr

Enter codes to create development database, reviewing application design specifications and ... Version control in Git workflow, all DB changes in source control Compensation Our salary range for ...

Sr Database Developer

Woburn, MA · On-site

$135K - $150K/yr

Enter codes to create development database, reviewing application design specifications and ... Version control in Git workflow, all DB changes in source control Compensation Our salary range for ...

... codes. * Develop people: coach team members and co-source resources, raise the technical bar, and ... Strong command of risk-based auditing: technology risk assessment, planning driven by risk, and ...

next page

Showing results 1-20

Freelance Source Code Auditor information

What are the key skills and qualifications needed to thrive as a freelance source code auditor?

To thrive as a Freelance Source Code Auditor, you need a strong background in programming languages, secure coding practices, and vulnerability assessment, often supported by a degree in computer science or relevant certifications like OSCP or CEH. Familiarity with automated code analysis tools, version control systems, and security frameworks is typically required. Attention to detail, analytical thinking, and clear communication are crucial soft skills for identifying issues and conveying findings to clients. These skills ensure accurate detection of security flaws and effective collaboration, ultimately safeguarding clients' software assets.

What are some common challenges faced by freelance source code auditors when working with clients remotely?

Freelance Source Code Auditors often encounter challenges such as limited access to client systems, incomplete documentation, and varying coding standards across projects. Effective communication is essential to clarify requirements and expectations, especially when collaborating with geographically dispersed development teams. Additionally, managing multiple clients and staying updated on the latest security threats and compliance standards can require strong organizational and time-management skills.

What is the difference between Freelance Source Code Auditor vs Freelance Software Developer?

AspectFreelance Source Code AuditorFreelance Software Developer
CredentialsKnowledge of security protocols, coding languages, and code review toolsProficiency in programming languages, software design, and development tools
Work EnvironmentRemote or on-site, focusing on code review and security testingRemote or on-site, developing and deploying software applications
Industry UsageCybersecurity, blockchain, fintech, and software firmsTech startups, software companies, and freelance platforms
Search & Comparison IntentUnderstanding security-focused code review rolesSeeking software development freelance opportunities

While both roles involve working with code, a Freelance Source Code Auditor specializes in reviewing and securing existing codebases to identify vulnerabilities, whereas a Freelance Software Developer creates and maintains software applications. The choice depends on whether you want to focus on security analysis or software creation.

What is a freelance source code auditor?

A freelance source code auditor is an independent professional who reviews and analyzes software source code to identify security vulnerabilities, coding errors, and compliance issues. They work with clients on a project or contract basis rather than as full-time employees. Their main goal is to ensure that the code is secure, efficient, and follows best practices, often providing detailed reports and recommendations for improvements. Freelance source code auditors may specialize in specific programming languages or industries and often work remotely. Their expertise helps organizations mitigate risks and maintain high-quality software.

What are popular job titles related to Freelance Source Code Auditor jobs in Massachusetts?

For Freelance Source Code Auditor jobs in Massachusetts, the most frequently searched job titles are:

What job categories do people searching Freelance Source Code Auditor jobs in Massachusetts look for?

The top searched job categories for Freelance Source Code Auditor jobs in Massachusetts are:

What cities in Massachusetts are hiring for Freelance Source Code Auditor jobs?

Cities in Massachusetts with the most Freelance Source Code Auditor job openings:

Security Research Architect

Veracode

Burlington, MA • On-site

Full-time

Re-posted 24 days ago


Job description

The Research Architect for Dynamic Application Security Testing (DAST) is responsible for overseeing the security capabilities of Veracode's dynamic scanner offerings.
Responsibilities
• Conduct research and development for automating web application attacks.
• Conduct research for improving techniques for detection of vulnerabilities.
• Develop attack signatures for specific classes of vulnerabilities.
• Define developer focused specifications for new attacks.
• Work with management to set priorities and goals for Veracode's DAST offerings.
• Keep up to date with the latest features in web browsers, web application development techniques, and web application vulnerabilities.
• Develop test cases to demonstrate vulnerabilities and ensure products' ability to identify them in an automated fashion.
• Actively engage with the security research community through speaking at industry conferences, publishing independent research, posting on the Veracode blog, and other means.
Skills & Requirements
This is a deeply technical role that requires significant knowledge around modern web development technologies and practices. You not only understand common web vulnerabilities, but understand how to find them in an automated fashion. You will need to follow upcoming trends and how they may have implications for security. It's also crucial that you're an effective communicator, as you'll collaborate frequently with engineers to guide them in implementing the specifications you create. You'll also need:
• 5+ years of practical application security work experience, preferably including some or all of the following: source code auditing, penetration testing, product assessments, vulnerability research, reverse engineering, and related pursuits.
• 3+ years of software development experience.
• Deep understanding of web browsers (i.e. security features, DOM, JavaScript, etc.).
• Deep understanding of common client side and server side web application vulnerabilities and how to exploit them (e.g. SQL injection, cross-site scripting, etc.).
• Ability to learn new programming languages and/or technologies quickly and independently
• Ability to balance novelty of attacks with the restrictions automation demands.
• Experience with automated application security testing products (SAST, DAST, etc.) a plus.
• Genuine enthusiasm, not just aptitude, for application security. Up to 20% of your time will be allocated for independent research, and this means you'll need interesting, relevant project ideas.
• Prototyping ability - the skill to hack something together quick and dirty to solve a problem and demonstrate feasibility.
• Excellent attention to detail, quality, and customer satisfaction. Consulting experience a plus.
• Strong analytical, organizational, and technical writing skills.
• B.S. in Computer Science or equivalent industry experience.
  • Apply
  • View All Jobs

Careers
Veracode was founded by world-class security experts - and it continues to attract top problem solvers in the industry. We take pride in the diverse and electrifying culture our employees create. With personnel located across the United States and around the world, we boast a new and exciting approach to how we do business. Our collaborative environment fosters learning and growth within our employees through friendly discussions, hackathon projects and everyday interactions.
At Veracode, we offer a fundamentally different approach to application-layer security - one that's simpler and more scalable than legacy on-premises approaches. Our subscription-based service combines a powerful, cloud-based platform with deep security expertise and best practices for managing enterprise-wide governance programs so that enterprises can speed their innovations to market - without sacrificing security. It's all of these things combined with a little food and a lot of fun that make Veracode a great place to work.