The Vanguard Group - Charlotte, NC

posted 3 months ago

Full-time - Mid Level
Charlotte, NC
Securities, Commodity Contracts, and Other Financial Investments and Related Activities

About the position

The Technical Manager - Cloud Security Engineering at Vanguard plays a pivotal role in safeguarding the organization's assets and data through effective management of security engineering practices. This position is situated within the Global Risk and Security (GR&S) division, specifically under the Enterprise Security and Fraud (ES&F) sub-division. The primary responsibility of this role is to lead a team of technical security engineering experts who are integral to the DevSecOps program. This program is designed to enhance the security posture of Vanguard by integrating security practices into the software development lifecycle. In this role, the Technical Manager will oversee the lifecycle management of various in-house and vendor DevSecOps security tools. These tools are essential for performing Static Application Security Testing (SAST), Open-Source Vulnerability Scanning, Cloud Application Scanning, and Runtime Scanning. The manager will work closely with cross-functional teams to ensure that security measures are effectively implemented and maintained, thereby protecting the interests of both Vanguard and its clients. The Technical Manager will also be responsible for fostering a strong risk culture within the team, ensuring that all security practices align with Vanguard's business strategy. This includes providing trusted advice and insights to leaders and crew members, enabling them to make informed decisions that enhance the overall security framework of the organization. The role requires a deep understanding of cloud security principles, as well as the ability to lead and mentor a team of security professionals in a fast-paced environment.

Responsibilities

  • Manage and lead a team of technical security engineering experts within the DevSecOps program.
  • Oversee the lifecycle management of in-house and vendor DevSecOps security tools.
  • Perform Static Application Security Testing (SAST) and Open-Source Vulnerability Scanning.
  • Conduct Cloud Application Scanning and Runtime Scanning.
  • Collaborate with cross-functional teams to implement and maintain security measures.
  • Foster a strong risk culture and provide trusted advice to leaders and crew members.
  • Ensure alignment of security practices with Vanguard's business strategy.

Requirements

  • Proven experience in managing technical teams in a security engineering context.
  • Strong knowledge of cloud security principles and practices.
  • Experience with DevSecOps methodologies and tools.
  • Familiarity with Static Application Security Testing (SAST) and Open-Source Vulnerability Scanning tools.
  • Ability to collaborate effectively with cross-functional teams.
  • Strong leadership and mentoring skills.

Nice-to-haves

  • Certifications in cloud security (e.g., AWS Certified Security, Azure Security Engineer).
  • Experience with security compliance frameworks (e.g., NIST, ISO 27001).
  • Knowledge of programming languages relevant to security automation.

Benefits

  • Comprehensive health insurance coverage.
  • 401(k) retirement savings plan with company matching.
  • Paid time off and holidays.
  • Professional development opportunities.
  • Flexible work arrangements.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service