Full-Time

Senior Agile Delivery Manager

Enterprise Applications, BizApps

Black Duck

Black Duck

1,001-5,000 employees

Open source risk management and audits

Compensation Overview

$113k - $150k/yr

Remote in USA

Remote

Bachelor's

Category
Project & Program Management
Required Skills
Agile
Quality Assurance (QA)
Salesforce
JIRA
Risk Management
SCRUM
Confluence
DevOps

Get referred to Black Duck

See people who can refer or advise you

Requirements
  • A Bachelor's degree in Business, Information Technology, Computer Science, Information Systems, Engineering, Project Management, or a related field.
  • Five to seven years of relevant experience, including three or more years in product management, business systems, IT operations, project management, or Agile delivery.
  • Experience working with cross-functional technical teams, including Engineering, Product, Quality Assurance, DevOps, Information Technology, Business Systems, Operations, and business stakeholders.
  • Experience using enterprise delivery, backlog management, documentation, and reporting tools such as Jira, Confluence, and Smartsheet.
  • Strong understanding of Agile/Scrum methodologies and software development lifecycle practices.
  • Knowledge of project management, change management, and governance frameworks.
  • Ability to manage competing priorities in a fast-paced environment.
  • Experience identifying and mitigating project risks, dependencies, and delivery challenges.
Responsibilities
  • Lead technology delivery across cross-functional teams, ensuring alignment with business objectives, timelines, dependencies, and delivery commitments.
  • Drive sprint planning activities by balancing business priorities, technical dependencies, resource availability, and team capacity.
  • Partner with Product Owners, business stakeholders, and technical teams to identify and resolve requirements gaps, dependencies, risks, design challenges, and backlog prioritization decisions.
  • Coordinate across teams to identify, communicate, escalate, and resolve project risks, issues, blockers, and delivery trade-offs.
  • Ensure adherence to project management, Agile/Scrum, software development lifecycle, change management, and governance standards while improving delivery effectiveness and operational efficiency.
  • Lead capacity and resource planning for projects, enhancements, operational requests, maintenance activities, and defect remediation.
  • Develop, maintain, and analyze project metrics, dashboards, and reporting to provide visibility into delivery performance, risks, dependencies, capacity, and overall execution health.
  • Proactively assess delivery risks, backlog trends, dependency impacts, and execution challenges, while recommending mitigation strategies and corrective actions.
  • Provide guidance and mentorship on Agile delivery and project management best practices.
  • Support Salesforce and integrated application delivery initiatives.
  • Support Lead to Opportunity, Quote to Fulfillment, and Customer Experience workflow areas.
  • Coordinate DevOps pipeline activities related to Quality Assurance readiness, demonstrations, deployments, and business-facing training.
  • Maintain Jira dashboards and reporting related to team capacity, sprint velocity, and backlog health.
Desired Qualifications
  • Certified ScrumMaster certification.
  • Professional Scrum Master certification.
  • Project Management Professional certification.
  • SAFe Scrum Master certification.
  • Other relevant Agile or Project Management certifications.

Black Duck Software helps organizations manage open source risk by offering Software Composition Analysis (SCA) and Open Source Audits. Its products scan software to find security vulnerabilities and license compliance issues in open source components and provide fixes. The Open Source Audits support due diligence for mergers and acquisitions and internal audits. Revenue comes from licenses for the tools plus professional services for audits and consultations. The platform relies on a large database of open source components, vulnerabilities, and licenses to enable fast, accurate analysis. The goal is to help security, development, and legal teams ensure software is secure and legally compliant throughout the software development lifecycle and during M&A.

Company Size

1,001-5,000

Company Stage

Acquired

Total Funding

$87.5M

Headquarters

Burlington, Massachusetts

Founded

2002

Get referred to Black Duck

See people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • Polaris scan volumes rose over 100% in early 2026, signaling demand acceleration.
  • CRA deadlines beginning September 11, 2026 expand Black Duck’s compliance-selling window.
  • The 2026 OSSRA report showed 107% higher vulnerabilities per codebase, boosting urgency.

What critics are saying

  • Aikido, Snyk, and GitHub Advanced Security commoditize Black Duck’s developer workflows by 2026.
  • Black Duck still carries legacy on-prem complexity, slowing wins against faster SaaS competitors.
  • If AI-native rivals own open-source governance, Clearlake and Francisco Partners face a stranded asset.

What makes Black Duck unique

  • Black Duck’s 2026 Gartner Leader status validates its enterprise supply-chain security depth.
  • Its BDSA enrichment offsets NIST’s April 2026 NVD deprioritization.
  • ContextAI and Signal fuse deterministic analysis with AI governance for regulated codebases.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

Dental Insurance

Vision Insurance

Flexible Work Hours

Professional Development Budget

Paid Vacation

Growth & Insights and Company News

Headcount

6 month growth

0%

1 year growth

-1%

2 year growth

48%
PR Newswire
Sep 8th, 2026
Black Duck joins Anthropic's Project Glasswing to secure critical software with AI

Black Duck has joined Anthropic's Project Glasswing, an industry initiative aimed at securing critical software infrastructure using advanced AI for defensive cybersecurity. The application security company will apply Mythos, Anthropic's AI system, across its full security portfolio. This will combine AI-accelerated vulnerability discovery with remediation workflows, risk-based prioritisation, and compliance-driven governance. "AI is transforming the economics and speed of vulnerability discovery and exploit development," said Dipto Chakravarty, Black Duck's Chief Product & Technology Officer. He explained that pairing Mythos with Black Duck's existing capabilities will enable faster risk reduction whilst maintaining the transparency and auditability required by enterprise security teams. Black Duck specialises in application security, combining deterministic analysis with AI reasoning to identify and fix security issues in code written by developers, generated by AI, or assembled from open source.

PR Newswire
Jul 14th, 2026
Black Duck launches AI-powered Coverity with EU CRA compliance features

Black Duck has launched new AI-powered features for its Coverity static analysis solution, designed to support modern development workflows and emerging regulatory compliance requirements. The updates include AI-assisted vulnerability triage, support for the EU Cyber Resilience Act (CRA), and analysis capabilities for Rust 1.92. Coverity's AI features run on customers' own large language models, allowing organisations to maintain control over code and scan data processing — a requirement for regulated industries with strict data governance policies. The solution now offers streamlined navigation and improved issue filtering to help teams manage large volumes of security findings more efficiently. According to Chief Product & Technology Officer Dipto Chakravarty, the enhancements combine deterministic precision with AI speed whilst maintaining auditability. All announced capabilities are now generally available for customer deployment. Existing Coverity customers receive these AI-powered features whilst retaining the deterministic, auditable scan results required by regulated industries.

PR Newswire
Jun 16th, 2026
Black Duck launches AI-powered security tools to combat surge in software vulnerabilities

Black Duck has announced significant enhancements to its Polaris Platform, designed to help organisations defend against AI-driven cyberattacks and manage the surge in supply chain vulnerabilities. The updates focus on three areas: eliminating application security testing gaps, preparing for increased vulnerability disclosures, and automating remediation pipelines. The enhancements address threats from sophisticated AI models that enable attackers to exploit multiple vulnerabilities rapidly. Polaris scan volumes have increased over 100% in the first five months of 2026 as organisations accelerate security testing. New capabilities include improved vulnerability detection, rapid response tools for supply chain components, and AI-enabled application security features. Black Duck expects vulnerability disclosures to exceed 50,000 in 2026, potentially reaching 200,000 by 2028, as maintainers use AI to identify and patch security flaws.

PR Newswire
Mar 23rd, 2026
Black Duck launches Signal, AI-powered security solution for AI-generated code

Black Duck has launched Signal, an AI-powered application security solution designed to secure AI-generated code in autonomous development workflows. The platform uses an agentic AI architecture where specialised agents analyse vulnerabilities, validate exploitability and recommend fixes. Signal is powered by ContextAI, Black Duck's application security model containing over 20 years of security intelligence. This enables the system to assess risk with higher accuracy than solutions built solely on general-purpose AI models. The platform integrates directly into modern software development through model context protocol and APIs that support AI coding assistants and automated pipelines. CEO Jason Schmitt said AI is "actively authoring software", and Signal brings intelligence and governance to that reality. The solution is now generally available and will be showcased at RSA Conference in San Francisco from 23–26 May.

PR Newswire
Feb 12th, 2026
Black Duck expands Polaris integrations for automated DevSecOps across GitHub, GitLab, Azure DevOps, and Bitbucket

Black Duck has launched enhanced integrations for its Polaris Platform across major source code management systems including GitHub, GitLab, Azure DevOps and Bitbucket. The updates enable automated repository onboarding, continuous monitoring and event-based scanning for enterprises managing thousands of code repositories. The enhancements allow organisations to automatically onboard repositories without manual configuration and trigger scans during pull requests. The platform includes Black Duck Signal for AI-powered security insights and Code Sight, an IDE plugin providing real-time feedback to developers. The integrations support customisable scanning options and automatically synchronise security policies and user access controls across repositories. The features are immediately available to existing customers through Polaris Platform settings, aiming to streamline DevSecOps operations at enterprise scale.