Threat Emulation and Exploit Engineer

Vanguard

Malvern (Chester County)

On-site

USD 120,000 - 160,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Vanguard's Global Risk and Security (GR&S) Enterprise Security and Fraud team in Malvern, PA, seeks an experienced security professional to lead responses to cyber security alerts and incidents, and to develop protections across Vanguard's assets.

The role emphasizes threat analysis, vulnerability assessments, and collaboration with IT and business units to translate findings into concrete mitigations while mentoring junior staff.

Qualifications

  • Five years of related work experience, with three years in threat analysis.
  • Undergraduate degree in a related field or the equivalent combination of training and experience.
  • Experience in offensive security disciplines including penetration testing, vulnerability analysis, web application security assessments, adversary emulation, and threat intelligence.
  • OSCP, OSWA or equivalent certification preferred.
  • Strong collaboration skills with the ability to work across teams within the division.

Responsibilities

  • Leads and responds to escalated cyber security alerts, cyber incidents, or related security investigations.
  • Identifies real-time complex attack patterns and suggests mitigation strategies.
  • Leads the processes, tools and measures to monitor and detect compromises, risks, vulnerabilities, network security threats, tools and tactics used by modern and emerging threat actors.
  • Facilitates security operations and incident response technologies and methodologies.
  • Develops, manages, maintains and enhances security controls for the security platforms.
  • Reviews the network environment for new and evolving cyber threats and providing preventive and remedial solutions.
  • Identifies malicious activity by performing analysis on logs, traffic flows, and other investigative detective activities.
  • Conducts penetration testing, vulnerability assessments and threat modeling.
  • Evaluates risks and makes recommendations.
  • Provides written assessments focused on threats, vulnerabilities, and technologies relevant to Vanguard Infrastructure.
  • Leads with IT and business teams to ensure prompt and effective distribution of findings so incidents are effectively addressed.

Skills

Threat analysis
Penetration testing
Security operations
Incident response

Education

Bachelor's degree in related field

Job description

Global Risk and Security (GR&S) at Vanguard enables business strategy, protects client and Vanguard interests (e.g., assets and data), and stewards a strong risk culture. Our teams leverage enterprise-wide insights, deep expertise, and trusted advice so that across Vanguard leaders and crew drive faster, stronger, risk-informed decisions.

Within GR&S, the Enterprise Security and Fraud (ES&F) sub-division is responsible for the global protection of Vanguard crew, property, data, and client assets. We are the trusted advisors that protect the pride of Vanguard with state-of-the-art security and fraud capabilities. We are a world-class destination of highly engaged, passionate, and diverse talent expected to continuously learn and develop in an ever-changing security landscape.

Our crew are our greatest resource - by joining our team you will build collaborative long-term relationships and enjoy a suite of benefits that includes comprehensive health and wellness care, work-life balance, and an investment in your future at its core.

Core Responsibilities
  1. Leads and responds to escalated cyber security alerts, cyber incidents, or related security investigations. Identifies real-time complex attack patterns and suggests mitigation strategies.
  2. Leads the processes, tools and measures to monitor and detect compromises, risks, vulnerabilities, network security threats, tools and tactics used by modern and emerging threat actors. Facilitates security operations and incident response technologies and methodologies.
  3. Develops, manages, maintains and enhances security controls (alerts, rules, policies, and signatures) for the security platforms.
  4. Reviews the network environment for new and evolving cyber threats and providing preventive and remedial solutions. Identifies malicious activity by performing analysis on logs, traffic flows, and other investigative detective activities.
  5. Conducts penetration testing, vulnerability assessments and threat modeling. Evaluates risks and makes recommendations.
  6. Provides written assessments focused on threats, vulnerabilities, and technologies relevant to Vanguard Infrastructure.
  7. Leads with IT and business teams to ensure prompt and effective distribution of findings so incidents are effectively addressed. Provides department support to the business on enterprise wide security initiatives and projects.
  8. Mentors junior team members to improve their technical acumen
  9. Participates in special projects and performs other duties as assigned.
Qualifications
  • Minimum of five years related work experience, with three years' experience in threat analysis.
  • Undergraduate degree in a related field or the equivalent combination of training and experience.
  • Experience in offensive security disciplines including penetration testing, vulnerability analysis, web application security assessments, adversary emulation, and threat intelligence.
  • OSCP, OSWA or equivalent certification is preferred.
  • Strong collaboration skills with a demonstrated ability to work closely with other teams across the division.
Special Factors
Sponsorship

Vanguard is not offering visa sponsorship for this position.

About Vanguard

At Vanguard, we don't just have a mission-we're on a mission.

To work for the long-term financial wellbeing of our clients. To lead through product and services that transform our clients' lives. To learn and develop our skills as individuals and as a team. From Malvern to Melbourne, our mission drives us forward and inspires us to be our best.

How We Work

Vanguard has implemented a hybrid working model for the majority of our crew members, designed to capture the benefits of enhanced flexibility while enabling in-person learning, collaboration, and connection. We believe our mission-driven and highly collaborative culture is a critical enabler to support long-term client outcomes and enrich the employee experience.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Threat Emulation and Exploit Engineer
Threat Emulation and Exploit Engineer

Vanguard • Charlotte (NC)

Hybrid
USD 120,000 - 150,000
Threat Emulation and Exploit Engineer
Threat Emulation and Exploit Engineer

Vanguard • Dallas (TX)

Hybrid
USD 110,000 - 150,000
Executive Protection, Travel Security, and Event Program Manager
Executive Protection, Travel Security, and Event Program Manager

Vanguard • Malvern

Hybrid
USD 120,000 - 180,000
Health benefits
Manager, Vulnerability Management
Manager, Vulnerability Management

Vanguard • Dallas (TX)

Hybrid
USD 180,000 - 240,000
Technology Leadership Program - Risk & Security Analyst (NC) NEW
Technology Leadership Program - Risk & Security Analyst (NC) NEW

Vanguard • Charlotte (NC)

Hybrid
USD 70,000 - 90,000
Annual bonuses
Merit increases
Partnership bonus
+5
Senior Application Security Engineer
Senior Application Security Engineer

Vanguard • Dallas (TX)

Hybrid
USD 120,000 - 180,000
Senior Application Security Engineer
Senior Application Security Engineer

Vanguard • Malvern

Hybrid
USD 120,000 - 170,000
Senior Application Security Engineer
Senior Application Security Engineer

Vanguard • Charlotte (NC)

Hybrid
USD 110,000 - 150,000
Technology Leadership Program - Risk & Security Analyst (PA) NEW
Technology Leadership Program - Risk & Security Analyst (PA) NEW

Vanguard • Malvern

Hybrid
USD 70,000 - 110,000
Pay for performance
Retirement savings plan
Health savings account
+4
Technology Leadership Program - Risk & Security Analyst (NC)
Technology Leadership Program - Risk & Security Analyst (NC)

Vanguard • Charlotte (NC)

Hybrid
USD 85,000 - 110,000
Health insurance
401(k) with company match
Paid time off
+2