The Vanguard Group - Charlotte, NC

posted about 2 months ago

Full-time
Charlotte, NC
Securities, Commodity Contracts, and Other Financial Investments and Related Activities

About the position

The DevSecOps Assurance Specialist role at Vanguard is a critical position within the Global Risk and Security (GR&S) team, specifically under the Enterprise Security and Fraud (ES&F) sub-division. This role is designed to enhance the security of the software development lifecycle (SDLC) by leveraging application development, deployment, and security expertise. The specialist will be responsible for utilizing current and emerging security technologies to identify, assess, and remediate application vulnerabilities. This includes working with various security tools such as Static Application Security Testing (SAST), Software Composition Analysis (SCA), Interactive Application Security Testing (IAST), and Dynamic Application Security Testing (DAST). In this position, the specialist will collaborate closely with the DevSecOps Engineering team to ensure the proper implementation, coverage, and functionality of application security solutions. This collaboration is essential to foster a strong risk culture within Vanguard, enabling leaders and crew members to make faster, stronger, and risk-informed decisions. The role not only focuses on technical skills but also emphasizes the importance of communication and teamwork in achieving security objectives across the organization. Vanguard is committed to providing a working environment that is free from discrimination and bias, ensuring equal employment opportunities for all applicants and crew members. The company actively promotes a culture of inclusion and diversity, which is reflected in its policies and practices. The DevSecOps Assurance Specialist will play a vital role in upholding these values while contributing to the security and integrity of Vanguard's operations.

Responsibilities

  • Utilize application development, deployment, and security experience to secure the software development lifecycle (SDLC).
  • Utilize current and emerging security technologies to identify, assess, and remediate application vulnerabilities (e.g. SAST, SCA, IAST, DAST, etc.).
  • Collaborate with the DevSecOps Engineering team to ensure the proper implementation, coverage, and function of the application security solutions.

Requirements

  • Experience in application development and deployment.
  • Strong understanding of security technologies and practices related to the software development lifecycle.
  • Proficiency in using security tools such as SAST, SCA, IAST, and DAST.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service