Vanguard Logo

Vanguard

Cloud Security Engineering Manager

Posted 6 Days Ago
Be an Early Applicant
In-Office
Charlotte, NC, USA
Senior level
In-Office
Charlotte, NC, USA
Senior level
Leads a cloud security posture management team responsible for securing AWS, Azure, and GCP environments. Oversees CSPM and CNAPP capabilities, security automation, governance controls, vulnerability remediation, risk assessment, and shift-left DevSecOps practices. Develops technical talent, establishes remediation SLAs and security guardrails, measures program effectiveness, and collaborates with engineering, architecture, security operations, and business stakeholders to reduce cloud risk and improve security outcomes.
The summary above was generated by AI

Lead a high-performing Cloud Security Posture Management (CSPM) team responsible for strengthening Vanguard's cloud security posture across a multi-cloud environment. This role partners closely with engineering, architecture, DevSecOps, and security teams to identify, prioritize, and remediate cloud security risks while enabling secure innovation at scale. The Manager will drive security automation, AI-enabled capabilities, governance controls, and continuous improvement initiatives that protect Vanguard's technology platforms and clients. Success in this role is measured by improved security outcomes, reduced cloud risk exposure, scalable security controls, and strong collaboration across technology teams.


Responsibilities
  • Lead, mentor, and develop a high-performing Cloud Security Posture Management team.
  • Oversee cloud security configuration monitoring and risk reduction across AWS, Azure, and/or GCP environments.
  • Drive adoption and optimization of Cloud Security Posture Management (CSPM) and Cloud-Native Application Protection Platform (CNAPP) capabilities.
  • Collaborate with Platform Engineering, DevSecOps, Security Operations, and Architecture teams to improve cloud security controls and governance.
  • Advance shift-left security practices by embedding security controls into development and deployment workflows.
  • Leverage automation and AI-driven capabilities to improve threat detection, prioritization, and remediation processes.
  • Establish and monitor remediation service level agreements (SLAs), security guardrails, and enforcement controls.
  • Oversee review and resolution of security findings, false positives, and risk acceptance requests.
  • Develop and report key performance indicators (KPIs), metrics, and objectives that measure program effectiveness.
  • Partner with engineering teams to improve visibility, coverage, and effectiveness of cloud security tooling.
  • Ensure alignment with security standards, risk management requirements, and audit expectations.
  • Drive continuous improvement initiatives to enhance operational efficiency and security outcomes.

Required Qualifications
  • Experience leading security engineering, cloud security, cloud infrastructure, or cybersecurity teams.
  • Experience building, coaching, and developing high-performing technical teams.
  • Hands-on experience with one or more major cloud platforms, including AWS, Azure, or Google Cloud Platform (GCP).
  • Strong understanding of cloud security principles, risk management, and security controls.
  • Experience with Cloud Security Posture Management (CSPM), Cloud-Native Application Protection Platforms (CNAPP), or related cloud security technologies.
  • Knowledge of CI/CD pipelines and secure software development practices.
  • Strong analytical, problem-solving, and risk assessment skills.
  • Ability to influence and collaborate effectively across multiple technical and business stakeholder groups.
  • Strong written and verbal communication skills.

Preferred Qualifications
  • Experience with Wiz, Prisma Cloud, Aqua Security, CrowdStrike, Qualys, Tenable, Nessus, or similar security platforms.
  • Experience with exposure management and risk aggregation tools such as Brinqa, Kenna Security, Vulcan Cyber, Dazz, or Avalor.
  • Knowledge of Kubernetes and container security.
  • Experience performing or facilitating threat modeling activities.
  • Experience leveraging AI tools or AI-enabled capabilities within security operations or engineering functions.
  • Experience leading structured process improvement initiatives.
  • Experience supporting audit, compliance, or risk management programs.
  • Demonstrated commitment to continuous learning and professional development.

What it Takes (Qualifications)


  • Minimum of 5 years related work experience required, including experience in cloud security engineering or general cloud engineering
  • Undergraduate degree in a related field or the equivalent combination of training and experience
  • Excellent leadership and team management skills, with a track record of building and leading high-performing teams.
  • Experience with AWS, Azure, or GCP – with a strong understanding of cloud security principles
  • Superb analytical and problem-solving skills, with the ability to assess and mitigate complex security risks
  • Understanding of CI/CD pipelines
  • Excellent communication and collaboration skills, with the ability to influence stakeholders multiple levels up

Critical Skills
  • Cloud Security Engineering
  • Cloud Security Posture Management (CSPM)
  • Cloud-Native Application Protection Platform (CNAPP)
  • AWS Security
  • Azure Security
  • Google Cloud Platform (GCP)
  • Security Automation
  • DevSecOps
  • CI/CD Security
  • Vulnerability Management
  • Risk Assessment and Mitigation
  • Security Governance and Controls
  • AI-Enabled Security Operations
  • Team Leadership and Coaching
  • Stakeholder Management

Cloud Security, AWS, Microsoft Azure, Google Cloud Platform (GCP), CSPM, CNAPP, DevSecOps, CI/CD, Security Engineering, Vulnerability Management, Security Automation, Cloud Governance, Risk Management, Security Operations, Threat Modeling, Kubernetes, Container Security, Wiz, Prisma Cloud, Aqua Security, CrowdStrike, Qualys, Tenable, Nessus, Brinqa, Kenna Security, Vulcan Cyber, Dazz, Avalor, Leadership, Coaching, Continuous Improvement


Special Factors

Sponsorship

Vanguard is not offering visa sponsorship for this position.

About Vanguard

At Vanguard, we don't just have a mission—we're on a mission.

To work for the long-term financial wellbeing of our clients. To lead through product and services that transform our clients' lives. To learn and develop our skills as individuals and as a team. From Malvern to Melbourne, our mission drives us forward and inspires us to be our best.

How We Work

Vanguard has implemented a hybrid working model for the majority of our crew members, designed to capture the benefits of enhanced flexibility while enabling in-person learning, collaboration, and connection. We believe our mission-driven and highly collaborative culture is a critical enabler to support long-term client outcomes and enrich the employee experience.

Vanguard Charlotte, North Carolina, USA Office

Two North Falls Plaza, Charlotte, NC, United States, 28217

Similar Jobs

3 Days Ago
Hybrid
99K-232K Annually
Senior level
99K-232K Annually
Senior level
Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Leads cloud security engagements across IaaS, PaaS, and SaaS environments. Designs security architecture and controls, conducts risk assessments and vulnerability testing, manages monitoring and incident response, tracks remediation, and develops technical deliverables. The manager coaches team members, oversees project quality and timelines, addresses stakeholder issues, and identifies opportunities to improve cloud security through automation and emerging technologies.
Top Skills: AutomationCloud InfrastructureCloud SecurityCloud Service ProvidersIaasIncident ResponsePaasSaaSSecurity ArchitectureSecurity MonitoringVulnerability Management
An Hour Ago
Hybrid
24-33 Hourly
Junior
24-33 Hourly
Junior
Healthtech • Software • Analytics • Biotech • Pharmaceutical • Manufacturing
Provides nursing support at a plasma donation center by determining donor eligibility, conducting medical interviews and examinations, reviewing laboratory results, managing donor reactions and emergencies, notifying donors of unsuitable results, supporting vaccination and occupational health programs, and following applicable SOPs, FDA training, medical guidance, and environmental health and safety requirements.
Top Skills: AedCprIv TherapySerological Protein Electrophoresis (Spe)
An Hour Ago
Hybrid
160K-250K Annually
Senior level
160K-250K Annually
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Own the strategy and roadmap for integrating third-party security controls into CrowdStrike’s Exposure Management platform. Lead connector ecosystems, exploitability scoring, and asset-level risk modeling using vulnerability data, cloud context, control signals, and adversary tactics. Partner with engineering, data science, threat intelligence, customers, and sales teams; define platform metrics; represent the product externally; and mentor product managers. The role requires deep offensive security, vulnerability management, cloud security, API integration, and cross-functional product strategy expertise.
Top Skills: AIAPIsAWSAzureBreach And Attack Simulation ToolsCaasmEdrEppFirewallsGCPGraph-Based Attack Surface ModelingIamMitre Att&CkPamPatch ManagementSIEM

What you need to know about the Charlotte Tech Scene

Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.

Key Facts About Charlotte Tech

  • Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
  • Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
  • Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
  • Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account