Vanguard Logo

Vanguard

Manager, Vulnerability Management

Posted 14 Days Ago
Be an Early Applicant
In-Office or Remote
Hiring Remotely in North Carolina, USA
Senior level
In-Office or Remote
Hiring Remotely in North Carolina, USA
Senior level
Lead a Vulnerability Management team to reduce attack surface across hybrid and multi-cloud environments via CTEM, AI-enabled automation, hyper-prioritization, scanning/tool tuning, remediation SLAs, and cross-team collaboration.
The summary above was generated by AI

We are seeking an experienced and strategic cybersecurity leader to manage a team responsible for Vulnerability Management across a rapidly evolving hybrid and multi-cloud environment.

As the Manager for Vulnerability Management, you will lead a high-performing team to reduce Vanguard’s attack surface through continuous threat exposure management (CTEM), hyper-prioritization, AI-enabled automation, and scalable security guardrails.

You’ll operate at the intersection of security risk, automation, and emerging AI-driven capabilities—driving outcomes that protect Vanguard and its clients while minimizing friction for technology teams.

This is a unique opportunity to lead a growing function, optimize vulnerability management practices, and partner across the enterprise to deliver measurable risk reduction.

Core Responsibilities (In this role you will)

  • Drive the evolution of Vulnerability Management program, adopting VulnOps concepts to defend against human & AI-driven threats – while infusing AI into team operations
  • Lead and develop a high-performing Vulnerability Management team that monitors Vanguard onprem & multi-cloud assets for vulnerabilities and security configuration weaknesses.  Provide mentorship, coaching, and professional development to team members. Assess performance and make informed compensation decisions in accordance with HR policies and procedures
  • Partner with the SOC, Cyber Threat Intel, Offensive Security/Red Team, PatchOps, and other stakeholders to refine prioritization, to validate impact of suspected attack paths, to advise owners on mitigation strategies or compensating controls, and to enable remediation outcomes
  • Ensure timely resolution of false-positives investigations, requests for risk-acceptance or risk-rating adjustment of security findings
  • Coordinate implementation of hardening security controls for Operating Systems, databases, and critical telecom infrastructure – ensuring compliance with industry security standards
  • Shape remediation SLAs, build-breaking policies, and other enforcement controls & guardrails
  • Develops metrics, KPIs, and OKRs to measure the effectiveness of the program and team’s operations
  • Coordinate with Engineering platform teams to tune scanning tools to improve visibility and to meet additional security objectives
  • Lead continuous process improvement and ensure the team is identifying opportunities for automation, fusion of disparate sources of security findings, and consistency of remediation owner experience
  • Provide latest industry expertise in emerging security practices and standards

What it Takes (Qualifications)

  • Critical thinker with a minimum of 6 years related work experience, including experience in vulnerability management, DevSecOps, cloud security engineering, or general cyber security domains. At least 2 years of experience managing vulnerabilities at scale
  • Excellent leadership and team management skills, with a track record of building and leading high-performing teams.
  • Solid understanding of CVSS, exploitability, and risk-based prioritization frameworks
  • Experience with AWS, Azure, or GCP – with a good understanding of cloud security principles
  • Understanding of CI/CD pipelines and modern AI-assisted code development
  • Undergraduate degree in a related field or the equivalent combination of training and experience
  • Superb analytical and problem-solving skills, with the ability to assess and mitigate complex security risks
  • Excellent communication and collaboration skills, with the ability to influence stakeholders multiple levels up

Ways to stand out:

  • Demonstrated passion for continuous learning
  • Experience with Claude Code/Codex or Threat Modeling
  • Experience leading structured process improvement
  • Experience with Aqua, Palo Alto Prisma, Wiz, CrowdStrike, Tenable, or Qualys
  • Experience with security data aggregators such as Brinqa, Kenna, Vulcan, Wiz UVM, or ArmorCode
  • Experience with risk controls and interacting with internal/external audit

Special Factors

Sponsorship

Vanguard is not offering visa sponsorship for this position.

About Vanguard

At Vanguard, we don't just have a mission—we're on a mission.

To work for the long-term financial wellbeing of our clients. To lead through product and services that transform our clients' lives. To learn and develop our skills as individuals and as a team. From Malvern to Melbourne, our mission drives us forward and inspires us to be our best.

How We Work

Vanguard has implemented a hybrid working model for the majority of our crew members, designed to capture the benefits of enhanced flexibility while enabling in-person learning, collaboration, and connection. We believe our mission-driven and highly collaborative culture is a critical enabler to support long-term client outcomes and enrich the employee experience.

Vanguard Charlotte, North Carolina, USA Office

Two North Falls Plaza, Charlotte, NC, United States, 28217

Similar Jobs

37 Minutes Ago
Remote
United States
65K-85K Annually
Mid level
65K-85K Annually
Mid level
Fintech • Payments
Conduct end-to-end fraud and AML investigations, manage KYC/KYB onboarding queues, perform merchant underwriting and due diligence, validate partners with support and banks, author investigative reports, and help refine FRAML processes to ensure regulatory and internal compliance.
Top Skills: Ach Origination And Return Code Analysis PlatformsAi Agent PlatformsAi-Powered Investigation ToolsAlloyCard Network Dispute And Chargeback Management SystemsEquifaxExperianFraud And Aml Monitoring SystemsGoogle WorkspaceLexis NexisPlaidSocure
42 Minutes Ago
Remote
United States
144K-195K Annually
Senior level
144K-195K Annually
Senior level
Artificial Intelligence • Cloud • Consumer Web • Productivity • Software • App development • Data Privacy
Own and operate the Workforce Planning operating system: manage planning cycles, governance, executive reporting, enablement, adoption, cross-functional coordination, and delivery tracking to ensure consistent, scalable workforce planning outcomes.
45 Minutes Ago
Easy Apply
Remote or Hybrid
United States
Easy Apply
95K-110K Annually
Junior
95K-110K Annually
Junior
Legal Tech • Software • Generative AI
Run and optimize paid acquisition across Google, LinkedIn, Meta and emerging channels. Build full-funnel campaigns to drive demo requests and pipeline, run tests on audiences/creative/landing pages, align paid with webinars, nurture, events and ABM, track CPL/SQL/pipeline/ROAS, and partner with Sales, RevOps, content, and agencies to improve attribution and creative.
Top Skills: 6SenseDemandbaseExcelGa4Google AdsGoogle SheetsHubspotLinkedin AdsMarketoMeta AdsRollworksSalesforce

What you need to know about the Charlotte Tech Scene

Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.

Key Facts About Charlotte Tech

  • Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
  • Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
  • Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
  • Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account