* malware analysis (how does this malware work, how can it be detected, can we somehow decrypt data affected by this ransomware, are there any leads to who wrote this malware, etc)
* vulnerability research (finding and exploiting vulnerabilities in closed source software)
* assessment of closed source software (how secure is it, how does it work, does it have undocumented apis and how can those be used, etc.)
there is likely also a small market for analysis of competitor software, but I haven't seen this openly advertised yet.
I saw a company making addons for Microsoft Office, peculiar example of reverse engineering job not in security field https://www.think-cell.com/en/career/jobs/reverse.html
Not the traditional route, but some of the best reverse-engineers I met were bypassing anti-cheats for a living.
Not a RE but it seems to match doesn't it?