Powered by pgvector · cosine kNN
The Vanguard Group
About the role
About Vanguard
More than 45 years ago, John C. Bogle had a vision to start an investment company that did things differently. A company with no external shareholders. Where all the profits were invested back into the business and used to lower costs. Evidently, it was as bold as it was brilliant. To this day, Vanguard Group still has no external shareholders. That means no share prices to protect, and no profits to generate for outside owners.
Today, Vanguard is one of the world’s largest investment management companies, serving more than 50 million investors worldwide. For more than 30 years Vanguard Australia has been supporting individual investors, financial advisers, and superannuation
Role Summary
This role responds to and resolves complex incidents, proactively preventing their reoccurrence, and acts as a point of escalation for junior peers. This role also collects and correlates data from CND tools and coordinates with teams to ensure effective incident handling and security improvement.
Responsibilities
Responds to and resolves complex incidents and security issues. Determines the root cause and implements corrective action with appropriate level of assistance. Elevates potential concerns and gaps as appropriate.
Monitors Third-Party suppliers for security incidents, security posture changes, networks and endpoints. Produces detailed reports for management, including findings and operation status.
Conducts periodic recertification of all tasks and process documentation. Monitors the infrastructure and contractors for security events and provides response to elevated. Identifies computer security requirements for new systems and/or processes under development.
Maintains up-to-date documentation, procedures, and workflows to assist in performing event & incident investigations. Identifies opportunities to improve the efficiency and effectiveness of processes and procedures.
Performs security audits on a regular basis to ensure compliance with security policies and standards.
Monitors threat intelligence for security incidents, security posture changes and critical vulnerabilities.
Build, deploy and maintain detections and automation to enable the monitoring and incident response with security incidents involving third-party suppliers.
Participates in special projects and performs other duties as assigned.
Collect and correlate data from various Computer Network Defense (CND) tools such as intrusion detection system alerts, firewall logs, network traffic logs, and host system logs to identify and evaluate security events.
Ability to communicate to senior leadership during a security incident across the business.
Coordinate with internal teams and external entities for effective incident handling, ensuring swift resolution and continuous improvement of security practices.
Qualifications and Skills
Minimum 4 years of experience in cybersecurity operations or incident response, with expertise in monitoring, detection, and resolution of security events.
Bachelor’s degree (B.E./B.Tech) in Computer Science, Information Technology, Cybersecurity, or a related field or a Master’s degree/Diploma in Computer Science or Cybersecurity.
Strong understanding of security tools including SIEM, IDS/IPS, firewalls, and log management tools
Experience in using ticketing systems like JIRA or ServiceNow and knowledge of incident lifecycle and threat intelligence practices.
Experience with cloud security (AWS, Azure) and managing endpoint detection and response (EDR) tools.
Must have strong documentation skills and familiarity with reporting tools for management dashboards and compliance tracking.
Ability to work in an Agile/DevSecOps environment and contribute to continuous process improvements in cybersecurity workflows.
Experience with security orchestration, automation, and response (SOAR) capabilities.
Exposure to threat hunting, detection engineering, or advanced cyber defense operations.
Demonstrated ability to lead incident response efforts and influence cross-functional teams.
Excellent written and verbal communication skills, including the ability to create technical documentation and executive-level reporting.
Inclusion Statement
Vanguard’s continued commitment to diversity and inclusion is firmly rooted in our culture. Every decision we make to best serve our clients, crew (internally employees are referred to as crew), and communities is guided by one simple statement: “Do the right thing.”
We believe that a critical aspect of doing the right thing requires building diverse, inclusive, and highly effective teams of individuals who are as unique as the clients they serve. We empower our crew to contribute their distinct strengths to achieving Vanguard’s core purpose through our values.
When all crew members feel valued and included, our ability to collaborate and innovate is amplified, and we are united in delivering on Vanguard’s core purpose.
Our core purpose: To take a stand for all investors, to treat them fairly, and to give them the best chance for investment success.
How We Work
Vanguard has implemented a hybrid working model for the majority of our crew members, designed to capture the benefits of enhanced flexibility while enabling in-person learning, collaboration, and connection. We believe our mission-driven and highly collaborative culture is a critical enabler to support long-term client outcomes and enrich the employee experience.
Your match
See how you fit
Scored against this job in seconds
Your account
Apply in a few steps
Your profile and your match for this job appear right here once you do. Already a member? Sign in
Next step
Apply for this role
via vanguard.wd5.myworkdayjobs.com — opens their site
Applications via vanguard.wd5.myworkdayjobs.com
KBR
Title: SOC Incident Responder The Opportunity The SOC Incident Responder is responsible for identifying, investigating, containing, and responding to cybersecurity incidents affecting the organization's systems, netwo…
KBR
Title: SOC Incident Responder The Opportunity The SOC Incident Responder is responsible for identifying, investigating, containing, and responding to cybersecurity incidents affecting the organization's systems, netwo…
KBR, Inc.
The OpportunityThe SOC Incident Responder is responsible for identifying, investigating, containing, and responding to cybersecurity incidents affecting the organization's systems, networks, cloud environments, and us…
The Trade Desk
The Trade Desk is a global technology company and the world’s leading independent platform for digital advertising, with nearly 4,000 employees across more than 30 offices. Our technology helps advertisers reach the r…
News Corp
Job Description : Lead Engineer, Cyber Security, Incident and Threat Responder Team: News Corp - Cyber Defense Location: APAC - AEST Timezone Hours: 9am-5pm (AEST) As a Cyber Defence Generalist within the Cyber Defens…
EY
At EY, we’re all in to shape your future with confidence. We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better …
Your job hunt, handled
Ask about any role and get a straight answer on your fit. Then stop searching: new matches land in your WhatsApp the moment they’re listed.
Free for jobseekers