Vanguard

CloudSecurityEngineer

$175–245k ~AI est. Malvern, Pennsylvania, United States FULL TIME Remote Friendly
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for Senior candidates.

The Brief

“Cloud Security Engineer at Vanguard. Skills: Cloud security, CSPM tooling, Automation, Security controls. Develop CSPM tooling. Maintain CSPM tooling”

Industry & Context.

Problems you'll solve

Root cause analysis; Troubleshooting

Eligibility Requirements

No visa sponsorship

What They're Looking For.

Must Have

3+ years cloud security, 3+ years vulnerability management, 3+ years security engineering, Bachelor's degree or equivalent experience

Nice to Have

Proficiency in Python, Proficiency in Go, Proficiency in JavaScript/TypeScript, Proficiency in Ruby, AWS experience, Azure experience, GCP experience, Terraform experience, CloudFormation experience, CSPM tooling familiarity, Cloud security tooling familiarity, API design understanding, Systems integration understanding, Event-driven architectures understanding

What You'll Do.

Maintain CSPM tooling

Develop automation pipelines

Maintain automation pipelines

Maintain integrations

Engineer cloud security controls

Operationalize cloud security controls

Configure cloud security policies

Tune cloud security policies

Analyze vulnerability data

Analyze misconfiguration data

Partner with Platform Engineering

Partner with application teams

Implement shift-left security

Drive adoption of security tooling

Contribute to IaC reviews

Support special projects

Support AI-assisted security tooling

How You'll Work.

Team & Collaboration

Cross-functional collaboration; Platform Engineering teams; DevOps teams; SRE teams; Application teams

Full Job Description

**Position Overview** Provides senior-level technical support for security testing services across infrastructure, systems, and applications. This role is responsible for strengthening cloud security posture through automation, tooling, and cross-functional collaboration. **Core Responsibilities** * Develop and maintain CSPM tooling, automation pipelines, and integrations to support vulnerability identification, prioritization, and remediation across cloud environments * Engineer and operationalize cloud security posture controls, including preventative policies, build enforcement rules, and automated remediation workflows * Build and maintain integrations between security platforms and enterprise systems (e.g., CI/CD pipelines, reporting tools) to enable self-service capabilities and streamline exception management * Configure and tune cloud security policies to ensure accurate and reliable assessment outcomes * Analyze vulnerability and misconfiguration data to enhance risk scoring by incorporating exploit intelligence, environmental context, and threat signals * Partner with Platform Engineering, DevOps, SRE, and application teams to implement shift-left security practices and drive adoption of security tooling * Contribute to Infrastructure-as-Code (IaC) reviews, ensuring security controls are embedded, version-controlled, and enforced at deployment * Support special projects, including AI-assisted security tooling initiatives **Preferred Qualifications** * Proficiency in at least one programming language (e.g., Python, Go, JavaScript/TypeScript, Ruby) * Hands-on experience with a major cloud platform (AWS, Azure, or GCP) * Experience with Infrastructure-as-Code (e.g., Terraform, CloudFormation) * Familiarity with CSPM or cloud security tooling * Understanding of API design, systems integration, and event-driven architectures **Qualifications** * Minimum of 3+ years of experience in cloud security, vulnerability management, or security engineering * Bachelor’s d

Free ATS check

Applying for this Cloud Security Engineer role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

How to Apply on Workday

  • Workday has a multi-step form — save your progress after every section.
  • "Apply With LinkedIn" can fail or lose data; manual entry is more reliable.
  • Watch for the "Submit for Review" final step — hitting "Save" alone does not submit.
  • Job requisition numbers are useful when following up with HR by email.

ANONYMOUS · UNFILTERED

What do employees actually say about Vanguard?

Real rants from real employees. Read before you apply.

Read Company Rants →