Manager, Cyber Threat Management - Pentesting at Vanguard

Dallas, Texas, United States

Vanguard Logo
Not SpecifiedCompensation
Senior (5 to 8 years), Expert & Leadership (9+ years)Experience Level
Full TimeJob Type
UnknownVisa
Financial ServicesIndustries

Requirements

  • Minimum of five years of experience in application security or related field, with at least three years in a leadership or management role
  • Experience managing or coordinating penetration testing or secure code review programs preferred
  • Strong understanding of compliance frameworks and secure development lifecycle (SDLC) practices
  • Undergraduate degree in a related field or equivalent combination of education and experience required; graduate degree preferred
  • Industry certifications such as CISSP, CISM, or CRISC are a plus; must obtain CISSP within one year of hire
  • Strong understanding of Pentesting tools

Responsibilities

  • Leads, hires, and develops a team of application security penetration testers, setting clear performance expectations, providing coaching and feedback, and supporting career development in alignment with organizational goals and HR policies
  • Oversees the planning, scheduling, and reporting of application security assessments, ensuring testing activities are aligned with compliance requirements, internal policies, and secure development standards
  • Manages team workflows, tools, and documentation processes to ensure consistent execution of penetration testing activities and effective tracking of findings, remediation efforts, and audit readiness
  • Drives continuous improvement of testing governance, including the development and maintenance of standard operating procedures, metrics, and quality assurance practices
  • Monitors regulatory and industry developments related to application security and integrates relevant changes into team processes, ensuring ongoing compliance with applicable standards (e.g., PCI-DSS, SOX, ISO 27001)
  • Coordinates with internal stakeholders, including development, risk, and compliance teams, to ensure timely communication of findings and alignment on remediation priorities
  • Supports enterprise-wide security initiatives and projects by representing the penetration testing function in cross-functional working groups and providing input on secure development practices
  • Participates in special projects and performs other duties as assigned, including support for audits, assessments, and executive reporting

Skills

Penetration Testing
Application Security
Secure Code Review
PCI-DSS
SOX
ISO 27001
SDLC
Team Management
Compliance Frameworks

Vanguard

Client-owned investment management firm offering low-cost funds

About Vanguard

Vanguard provides financial services with a focus on investment management. The company offers a variety of products, including mutual funds, exchange-traded funds (ETFs), individual retirement accounts (IRAs), and 401k rollovers, aimed at individual investors, financial advisors, and institutions. Vanguard's unique ownership structure means it is owned by its funds, which are in turn owned by the clients, allowing it to prioritize the needs of its investors over external shareholders. This model enables Vanguard to offer low-cost investment options, as it primarily earns revenue through management fees that are generally lower than industry standards. Additionally, Vanguard provides personalized investment advisory services, charging fees based on the assets managed. The company's goal is to help clients grow their wealth and achieve their financial objectives through effective investment strategies, while maintaining a competitive performance track record.

Kline Township, PennsylvaniaHeadquarters
1975Year Founded
SECONDARYCompany Stage
Fintech, Financial ServicesIndustries
10,001+Employees

Benefits

Best-in-class medical, dental & vision coverage
Onsite health clinic & fitness center
Health Smart Rewards program
Vanguard Retirement Savings Plan
Education Benefits
PTO
Family Planning Benefist
Parental leave
Personal development opportunities
Volunteer Time Off

Risks

Competition from AI-driven platforms like Writer challenges Vanguard's traditional advisory services.
Vanguard's stake in Steelcase exposes it to the volatile furniture market.
New active bond ETFs may struggle in a low-yield environment with increasing competition.

Differentiation

Vanguard is client-owned, aligning its interests with investors, unlike traditional firms.
The firm offers low-cost investment products, making it attractive to cost-conscious investors.
Vanguard's ownership structure allows it to focus on long-term investor value.

Upsides

Vanguard's new active bond ETFs offer diversified, low-cost fixed income options.
The acquisition of Steelcase shares diversifies Vanguard's portfolio into the furniture industry.
Launching the International Dividend Growth Fund appeals to investors seeking sustainable dividend growth.

Land your dream remote job 3x faster with AI