AI Threat Detection Engineer, Senior Specialist

Vanguard

Malvern (Chester County)

Hybrid

USD 140,000 - 190,000

Full time

36 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Vanguard is seeking an AI Threat Detection Engineer, Senior Specialist to advance our SOC modernization. You will develop AI-driven capabilities, build automation, and implement effective threat detection workflows to reduce manual effort.

Responsibilities include leading incident response, developing security controls, and mentoring juniors, while collaborating with cross-functional teams to deliver secure, scalable AI-enabled solutions.

Qualifications

  • 4+ years hands-on programming or scripting in Python, Java, or Shell.
  • 5+ years cloud experience with AWS or Microsoft Azure.
  • 4+ years building or supporting automation solutions (SOAR, GitHub, or similar).
  • 4+ years working with security technologies or SOC operations.
  • Exposure to AI, GenAI, or LLM-based solutions, with hands-on dev exp preferred.
  • Familiarity with security telemetry (logs, alerts, endpoint, network, cloud).
  • 5+ years exposure to SIEM platforms or detection engineering concepts.

Responsibilities

  • Leads and responds to escalated cyber security alerts and incidents; identifies real-time attack patterns.
  • Leads processes to monitor and detect compromises, risks, and threats; supports SOC tooling.
  • Develops, manages and enhances security controls for security platforms.
  • Develop AI agents to streamline SOC operations and improve efficiency.
  • Designs and optimizes prompts and workflows for LLM-based security use cases.
  • Evaluates emerging AI technologies and contributes to SOC innovation.
  • Implements safeguards and controls for secure AI usage.
  • Builds APIs, integrations and automation workflows for AI capabilities.
  • Writes clean, production-ready code aligned with best practices.
  • Collaborates with security, engineering and platform teams to deliver AI-enabled solutions.
  • Supports AI agent development and deployment across SOC use cases.
  • Stays current on AI advancements and applies best practices.
  • Mentors junior team members to improve technical acumen.
  • Participates in special projects and duties as assigned.

Skills

Python
Java
Shell
AWS
Azure
SOAR
GitHub
SIEM
GenAI
LLM

Tools

SOAR
GitHub
SIEM
LLM tools

Job description

The AI Threat Detection Engineer, Senior Specialist is responsible for developing and implementing AI-driven capabilities that enhance Security Operations Center (SOC) effectiveness. This role focuses on building automation and intelligent solutions to improve threat detection, streamline workflows, and reduce manual effort. Working closely with senior engineers and cross-functional teams, this individual contributes to the delivery of secure, scalable solutions that support SOC modernization.

Core Responsibilities
  • Leads and responds to escalated cyber security alerts, cyber incidents, or related security investigations. Identifies real-time complex attack patterns and suggests mitigation strategies.
  • Leads the processes, tools and measures to monitor and detect compromises, risks, vulnerabilities, network security threats, tools and tactics used by modern and emerging threat actors. Facilitates security operations and incident response technologies and methodologies.
  • Develops, manages, maintains and enhances security controls (alerts, rules, policies, and signatures) for the security platforms.
  • Develop and enhance AI agents to streamline SOC operations and improve efficiency
  • Design and optimize prompts and workflows to support LLM-based security use cases
  • Evaluate emerging AI technologies and contribute to innovation within the SOC
  • Implement safeguards and controls to ensure secure and responsible AI usage
  • Build APIs, integrations, and automation workflows to support AI-driven capabilities
  • Write clean, maintainable, and production-ready code aligned with engineering best practices
  • Collaborate with security, engineering, and platform teams to deliver AI-enabled solutions
  • Support AI agent development and deployment across SOC use cases
  • Stay current on AI advancements and apply best practices to ongoing work
  • Mentors junior team members to improve their technical acumen
  • Participates in special projects and performs other duties as assigned.
Qualifications
  • 4+ years of hands-on programming or scripting experience (e.g., Python, Java, Shell)
  • 5+ years of experience with cloud platforms such as AWS or Microsoft Azure
  • 4+ year of experience building or supporting automation solutions (e.g., SOAR, GitHub, or similar tools)
  • 4+ years of experience working with security technologies or supporting SOC/security operations
  • Exposure to AI, GenAI, or LLM-based solutions, with hands-on development experience preferred
  • Familiarity with security telemetry (logs, alerts, endpoint, network, and cloud data)
  • 5+ years of exposure to SIEM platforms or detection engineering concepts
Sponsorship

Vanguard is not offering visa sponsorship for this position.

About Vanguard

At Vanguard, we don't just have a mission—we're on a mission. To work for the long-term financial wellbeing of our clients. To lead through product and services that transform our clients' lives. To learn and develop our skills as individuals and as a team. From Malvern to Melbourne, our mission drives us forward and inspires us to be our best.

How We Work

Vanguard has implemented a hybrid working model for the majority of our crew members, designed to capture the benefits of enhanced flexibility while enabling in-person learning, collaboration, and connection. We believe our mission-driven and highly collaborative culture is a critical enabler to support long-term client outcomes and enrich the employee experience.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

AI Threat Detection Engineer, Senior Specialist
AI Threat Detection Engineer, Senior Specialist

The Vanguard Group • Dallas (TX)

Hybrid
USD 120,000 - 180,000
AI Threat Detection Engineer, Senior Specialist
AI Threat Detection Engineer, Senior Specialist

The Vanguard Group • Malvern

Hybrid
USD 120,000 - 160,000
Hybrid work model
Professional development programs
Senior AI Threat Detection Architect for SOC Automation
Senior AI Threat Detection Architect for SOC Automation

The Vanguard Group • Dallas (TX)

Hybrid
USD 120,000 - 180,000
Senior AI Threat Detection Engineer - Hybrid SOC Innovator
Senior AI Threat Detection Engineer - Hybrid SOC Innovator

Vanguard • Malvern

Hybrid
USD 140,000 - 190,000
Senior AI/ML Engineer
Senior AI/ML Engineer

Vanguard • Malvern

Hybrid
USD 130,000 - 190,000
Senior AI/ML Engineer
Senior AI/ML Engineer

Vanguard • Philadelphia

Hybrid
USD 150,000 - 210,000
Senior AI Threat Detection Engineer - Hybrid Work & Impact
Senior AI Threat Detection Engineer - Hybrid Work & Impact

The Vanguard Group • Malvern

Hybrid
USD 120,000 - 160,000
Hybrid work model
Professional development programs
Senior AI/ML Engineer
Senior AI/ML Engineer

Vanguard • Charlotte (NC)

Hybrid
USD 140,000 - 190,000
Application Engineering Technical Lead - II
Application Engineering Technical Lead - II

Vanguard • Dallas (TX)

Hybrid
USD 140,000 - 170,000
Hybrid work model
Senior AI/ML Scientist
Senior AI/ML Scientist

Vanguard • Malvern

Hybrid
USD 140,000 - 200,000
Hybrid work model