Manager, Vulnerability Management

Vanguard

Malvern (Chester County)

On-site

USD 170,000 - 230,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Vanguard is seeking an experienced cybersecurity leader to manage a Vulnerability Management team across on‑prem and multi‑cloud environments. You will reduce attack surface via continuous threat exposure management, AI-enabled automation, and scalable guardrails, partnering with SOC and other stakeholders to deliver measurable risk reductions.

The role emphasizes leadership, risk-based prioritization, and remediation excellence in a rapidly evolving security landscape.

Qualifications

  • Minimum of 6 years related work experience, including vulnerability management, DevSecOps, cloud security engineering, or related cybersecurity domains.
  • At least 2 years of experience managing vulnerabilities at scale.
  • Strong leadership and team management skills with a track record of building high‑performing teams.
  • Solid understanding of CVSS, exploitability, and risk-based prioritization frameworks.
  • Experience with cloud platforms (AWS, Azure, GCP) and cloud security principles.
  • Understanding of CI/CD pipelines and AI-assisted code development.
  • Undergraduate degree in a related field or equivalent experience.
  • Excellent analytical, problem-solving, and communication skills.

Responsibilities

  • Lead the Vulnerability Management program, incorporating VulnOps concepts and AI-driven improvements.
  • Develop and mentor a high-performing team monitoring on‑prem and multi‑cloud assets for vulnerabilities and misconfigurations.
  • Partner with SOC, threat intel, red team, PatchOps and other stakeholders to refine prioritization and remediation.
  • Ensure timely resolution of false positives, risk acceptance requests, and risk rating adjustments.
  • Oversee hardening of operating systems, databases, and telecom infrastructure in line with security standards.
  • Define remediation SLAs, policies, and guardrails to enforce controls.
  • Create metrics, KPIs, and OKRs to measure program effectiveness and efficiency.
  • Coordinate with engineering to tune scanning tools for better visibility and objectives.
  • Drive continuous process improvement and automation in security findings management.
  • Share latest industry practices in emerging security standards.

Skills

Leadership
Vulnerability management
Threat modeling
DevSecOps
Cloud security

Education

Bachelor's degree or equivalent

Tools

AWS
Azure
GCP
Aqua
Palo Alto Prisma
Wiz
CrowdStrike
Tenable
Qualys
Brinqa
Kenna
Vulcan
Wiz UVM
ArmorCode

Job description

We are seeking an experienced and strategic cybersecurity leader to manage a team responsible for Vulnerability Management across a rapidly evolving hybrid and multi-cloud environment.

As the Manager for Vulnerability Management, you will lead a high-performing team to reduce Vanguard’s attack surface through continuous threat exposure management (CTEM), hyper-prioritization, AI-enabled automation, and scalable security guardrails.

You’ll operate at the intersection of security risk, automation, and emerging AI-driven capabilities—driving outcomes that protect Vanguard and its clients while minimizing friction for technology teams.

This is a unique opportunity to lead a growing function, optimize vulnerability management practices, and partner across the enterprise to deliver measurable risk reduction.

Core Responsibilities (In This Role You Will)
  • Drive the evolution of Vulnerability Management program, adopting VulnOps concepts to defend against human & AI-driven threats – while infusing AI into team operations
  • Lead and develop a high-performing Vulnerability Management team that monitors Vanguard on‑prem & multi‑cloud assets for vulnerabilities and security configuration weaknesses. Provide mentorship, coaching, and professional development to team members. Assess performance and make informed compensation decisions in accordance with HR policies and procedures
  • Partner with the SOC, Cyber Threat Intel, Offensive Security/Red Team, PatchOps, and other stakeholders to refine prioritization, to validate the impact of suspected attack paths, to advise owners on mitigation strategies or compensating controls, and to enable remediation outcomes
  • Ensure timely resolution of false‑positive investigations, requests for risk‑acceptance or risk‑rating adjustment of security findings
  • Coordinate implementation of hardening security controls for operating systems, databases, and critical telecom infrastructure – ensuring compliance with industry security standards
  • Shape remediation SLAs, build‑breaking policies, and other enforcement controls & guardrails
  • Develop metrics, KPIs, and OKRs to measure the effectiveness of the program and team’s operations
  • Coordinate with engineering platform teams to tune scanning tools to improve visibility and to meet additional security objectives
  • Lead continuous process improvement and ensure the team is identifying opportunities for automation, fusion of disparate sources of security findings, and consistency of remediation owner experience
  • Provide latest industry expertise in emerging security practices and standards
What It Takes (Qualifications)
  • Critical thinker with a minimum of 6 years related work experience, including experience in vulnerability management, DevSecOps, cloud security engineering, or general cybersecurity domains. At least 2 years of experience managing vulnerabilities at scale
  • Excellent leadership and team management skills, with a track record of building and leading high‑performing teams.
  • Solid understanding of CVSS, exploitability, and risk‑based prioritization frameworks
  • Experience with AWS, Azure, or GCP – with a good understanding of cloud security principles
  • Understanding of CI/CD pipelines and modern AI‑assisted code development
  • Undergraduate degree in a related field or the equivalent combination of training and experience
  • Superb analytical and problem‑solving skills, with the ability to assess and mitigate complex security risks
  • Excellent communication and collaboration skills, with the ability to influence stakeholders multiple levels up
Ways to Stand Out
  • Demonstrated passion for continuous learning
  • Experience with Claude Code/Codex or Threat Modeling
  • Experience leading structured process improvement
  • Experience with Aqua, Palo Alto Prisma, Wiz, CrowdStrike, Tenable, or Qualys
  • Experience with security data aggregators such as Brinqa, Kenna, Vulcan, Wiz UVM, or ArmorCode
  • Experience with risk controls and interacting with internal/external audit
Sponsorship

Vanguard is not offering visa sponsorship for this position.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Manager, Vulnerability Management
Manager, Vulnerability Management

Vanguard • Charlotte (NC)

Hybrid
USD 140,000 - 180,000
Hybrid work model
Manager, Vulnerability Management
Manager, Vulnerability Management

Vanguard • Dallas (TX)

Hybrid
USD 180,000 - 240,000
Cloud Security Engineering Manager
Cloud Security Engineering Manager

Vanguard • Dallas (TX)

On-site
USD 140,000 - 190,000
Cloud Security Engineering Manager
Cloud Security Engineering Manager

Vanguard • Malvern

On-site
USD 140,000 - 190,000
Vulnerability Management Lead — AI-Driven Cloud Security
Vulnerability Management Lead — AI-Driven Cloud Security

Vanguard • Dallas (TX)

Hybrid
USD 180,000 - 240,000
Senior Security Manager - Vulnerability Management
Senior Security Manager - Vulnerability Management

Alter Domus • Chicago (IL)

On-site
USD 140,000 - 190,000
Senior Vulnerability Analyst
Senior Vulnerability Analyst

PRI Global • O’Fallon (MO)

On-site
USD 110,000 - 160,000
Vulnerability Management Lead — AI-Driven Security
Vulnerability Management Lead — AI-Driven Security

Vanguard • Malvern

On-site
USD 170,000 - 230,000
Vulnerability Analyst — External Attack Surface & VDP
Vulnerability Analyst — External Attack Surface & VDP

Vanguard • Malvern

Hybrid
USD 80,000 - 110,000
Growth pathways in security roles
Hybrid working model
Security Operations Vice President - Vulnerability Management
Security Operations Vice President - Vulnerability Management

JPMorgan Chase & Co. • Plano (TX)

On-site
USD 90,000 - 110,000