Malvern, PA, United States of America
3 days ago
Cloud Security Assurance Manager

Global Risk and Security (GR&S) at Vanguard enables business strategy, protects client and Vanguard interests (e.g., assets and data), and stewards a strong risk culture. Our teams leverage enterprise-wide insights, deep expertise, and trusted advice so that across Vanguard leaders and crew drive faster, stronger, risk-informed decisions.

Within GR&S, the Enterprise Security and Fraud (ES&F) sub-division is responsible for the global protection of Vanguard crew, property, data, and client assets. We are the trusted advisors that protect the pride of Vanguard with state-of-the-art security and fraud capabilities. We are a world-class destination of highly engaged, passionate, and diverse talent expected to continuously learn and develop in an ever-changing security landscape. Our crew are our greatest resource – by joining our team you will build collaborative long-term relationships and enjoy a suite of benefits that includes comprehensive health and wellness care, work-life balance, and an investment in your future at its core.

Are you passionate about cloud security and leadership?  Then join Vanguard’s Cloud Security Assurance team and help to protect our rapidly expanding multi-cloud operations.

As the Cloud Security Assurance Manager, you will implement a strategy to provide security guardrails and to continuously reduce Vanguard’s cloud attack surface – while minimizing friction for thousands of developers.

Your team will be responsible for identifying, prioritizing, and managing vulnerabilities across Vanguard’s multi-cloud infrastructure.  This is a great opportunity to join a growing team – working in a fast-paced cross-functional environment to protect Vanguard and its clients from cyber security threats.

In this role you will:

Build & maintain a high-performing Cloud Security Assurance team.  Provide mentorship, coaching, and professional development to team members. Assess performance and make informed compensation decisions in accordance with HR policies and proceduresLead the team that leverages cloud security assessment tools (CNAPP/CSPM) to monitor Vanguard cloud assets for vulnerabilities and security configuration weaknessesPartner with the SOC, Cyber Threat Intel, Offensive Security Team, and other stakeholders to refine prioritization, to validate impact of suspected vulnerabilities, to advise owners on mitigation strategies or compensating controls, and to provide accurate & timely reporting that informs remediation progressEnsure timely resolution of false-positives investigations, requests for risk-acceptance or risk-rating adjustment of cloud security findingsCoordinate implementation of cloud security controls – both oobox and custom – ensuring compliance with industry security standardsShape remediation SLAs, build-breaking policies, and other enforcement controls & guardrailsDevelops metrics, KPIs, and OKRs to measure the effectiveness the program and team’s operationsCoordinate with Engineering platform team to tune scanning tools to improve visibility and to meet additional security objectivesLead continuous process improvement and ensure the team is identifying opportunities for automation, fusion of disparate sources of security findings, and consistency of remediation owner experience.Provide latest industry expertise in emerging security practices and standards.

What it Takes:

Minimum of 5 years related work experience required, including experience in cloud security engineering, cloud vulnerability management, or general cloud cyber domainsUndergraduate degree in a related field or the equivalent combination of training and experienceExcellent leadership and team management skills, with a track record of building and leading high-performing teams.Experience with AWS, Azure, or GCP – with a strong understanding of cloud security principlesSuperb analytical and problem-solving skills, with the ability to assess and mitigate complex security risksUnderstanding of CI/CD pipelinesExcellent communication and collaboration skills, with the ability to influence stakeholders multiple levels up

Ways to stand out:

Demonstrated passion for continuous learningExperience leading structured process improvementExperience with Aqua, Palo Alto Prisma, Wiz, CrowdStrike, Tenable Nessus, or QualysKnowledge of Kubernetes preferredExperience with aggregators such as Brinqa, Kenna, Vulcan, Dazz, or AvalorExperience with risk controls and interacting with internal/external audit preferredFamiliarity with emerging security technologies and trends, particularly in cloud security

Special Factors

Sponsorship

Vanguard is not offering visa sponsorship for this position.

About Vanguard

At Vanguard, we don't just have a mission—we're on a mission.

To work for the long-term financial wellbeing of our clients. To lead through product and services that transform our clients' lives. To learn and develop our skills as individuals and as a team. From Malvern to Melbourne, our mission drives us forward and inspires us to be our best.

Our commitment to diversity, equity, and inclusion

Vanguard’s commitment to diversity, equity, and inclusion (DEI) is central to our ability to deliver on our mission. We aspire to create a work environment that is inclusive, equitable, and diverse—one that enables our employees, whom we call crew, to thrive and bring their best selves to work every day on behalf of our clients.

Cultivating DEI lifts our entire organization, and everyone shares accountability for our progress—from our senior leaders who lay the foundation and set the example for inclusive behaviors to crew who are growing in their personal DEI learning experiences.

Together, we’re on a mission. We are fueled by the value of diverse voices and connected through friendships and a culture of care—for our clients, our communities, and each other.    

Vanguard’s DEI journey has no finish line. Our commitment is enduring, and we remain focused on the path ahead. To learn more about Vanguard goals and progress toward DEI, download our Diversity, Equity, and Inclusion Report.

How We Work

Vanguard has implemented a hybrid working model for the majority of our crew members, designed to capture the benefits of enhanced flexibility while enabling in-person learning, collaboration, and connection. We believe our mission-driven and highly collaborative culture is a critical enabler to support long-term client outcomes and enrich the employee experience.

Confirm your E-mail: Send Email