Here is a project brief I have been asked to share by a company that operates across Europe, USA and Australia.
Seems to me like a great opportunity for an active member of the OWASP/SAMM community :)
Ping me if your company (or you) want to respond, and I'll put you in touch with them.
--------
Project brief:
Our e-commerce security maturity is of critical importance to us and our valued customers.
Through this RfP process, we are approaching the App/InfoSec community to invite responses from Europe-based AppSec consultants and businesses who are interested in engaging with our Group Security team to delivery an acute assessment of our individual team's security maturity.
We welcome responses from those well versed in the OWASP SAMM methodology, and have full-stack technical experience of auditing complex e-commerce environments and practices. Experience in producing board-level written reports and visualisations of data collected is highly desired. The data is to be collected using the Owasp Maturity Model tool.