Vanguard

ThreatEmulationandExploitEngineer

$175–250k ~AI est. Malvern, Pennsylvania, United States FULL TIME Remote Friendly
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for Senior candidates.

The Brief

“Threat Emulation and Exploit Engineer at Vanguard. Skills: Threat emulation, Exploit engineering, Adversary emulation, Threat intelligence. Respond to escalated cyber security alerts. Respond to cyber incidents”

Industry & Context.

Problems you'll solve

Root cause analysis

Eligibility Requirements

No visa sponsorship

What They're Looking For.

Must Have

Five years related work experience, Three years experience in threat analysis, Undergraduate degree or equivalent training/experience, Experience in offensive security disciplines, Experience in penetration testing, Experience in vulnerability analysis, Experience in web application security assessments, Experience in adversary emulation, Experience in threat intelligence

Nice to Have

OSCP or equivalent certification, OSWA or equivalent certification

What You'll Do.

Respond to escalated cyber security alerts

Respond to cyber incidents

Respond to security investigations

Identify complex attack patterns

Suggest mitigation strategies

Monitor and detect compromises

Monitor and detect risks

Monitor and detect vulnerabilities

Monitor and detect network security threats

Facilitate security operations technologies

Facilitate incident response technologies

Develop security controls

Manage security controls

Maintain security controls

Enhance security controls

Review network environment for cyber threats

Provide preventive solutions

Provide remedial solutions

Identify malicious activity

Perform analysis on logs

Perform analysis on traffic flows

Conduct penetration testing

Conduct vulnerability assessments

Conduct threat modeling

Provide written assessments on threats

Provide written assessments on vulnerabilities

Provide written assessments on technologies

Ensure prompt distribution of findings

Ensure effective distribution of findings

Provide department support to business

Support enterprise wide security initiatives

Support enterprise wide security projects

Mentor junior team members

Participate in special projects

Perform other duties as assigned

How You'll Work.

Team & Collaboration

Work closely with other teams; Work with IT teams; Work with business teams

Communication Scope

Written assessments

Full Job Description

**Global Risk and Security** (GR&S) at Vanguard enables business strategy, protects client and Vanguard interests (e.g., assets and data), and stewards a strong risk culture. Our teams leverage enterprise-wide insights, deep expertise, and trusted advice so that across Vanguard leaders and crew drive faster, stronger, risk-informed decisions. Within GR&S, the **Enterprise Security and Fraud** (ES&F) sub-division is responsible for the global protection of Vanguard crew, property, data, and client assets. We are the trusted advisors that protect the pride of Vanguard with state-of-the-art security and fraud capabilities. We are a world-class destination of highly engaged, passionate, and diverse talent expected to continuously learn and develop in an ever-changing security landscape. Our crew are our greatest resource – by joining our team you will build collaborative long-term relationships and enjoy a suite of benefits that includes comprehensive health and wellness care, work-life balance, and an investment in your future at its core. **Core Responsibilities** 1\. Leads and responds to escalated cyber security alerts, cyber incidents, or related security investigations. Identifies real-time complex attack patterns and suggests mitigation strategies. 2\. Leads the processes, tools and measures to monitor and detect compromises, risks, vulnerabilities, network security threats, tools and tactics used by modern and emerging threat actors. Facilitates security operations and incident response technologies and methodologies. 3\. Develops, manages, maintains and enhances security controls (alerts, rules, policies, and signatures) for the security platforms. 4\. Reviews the network environment for new and evolving cyber threats and providing preventive and remedial solutions. Identifies malicious activity by performing analysis on logs, traffic flows, and other investigative detective activities. 5\. Conducts penetration testing, vulnerability assessments and threat mode

Free ATS check

Applying for this Threat Emulation and Exploit Engineer role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

How to Apply on Workday

  • Workday has a multi-step form — save your progress after every section.
  • "Apply With LinkedIn" can fail or lose data; manual entry is more reliable.
  • Watch for the "Submit for Review" final step — hitting "Save" alone does not submit.
  • Job requisition numbers are useful when following up with HR by email.

ANONYMOUS · UNFILTERED

What do employees actually say about Vanguard?

Real rants from real employees. Read before you apply.

Read Company Rants →