Vanguard is seeking a Manager of Application Security to lead secure software development and supply chain practices. This role involves mentoring a global team and collaborating with various stakeholders to enhance application security across the organization.
Qualifications • The Security Manager must set high-level strategy and direction for secure software development and supply chain practices, while establishing clear expectations, goals, and success metrics. This role collaborates with cybersecurity experts, technology teams, suppliers, and business leaders to define and enforce controls that protect enterprise assets and critical systems. • Mentor and lead a global team of application security professionals to implement security tools for dynamic scanning, and to protect software supply chain, APIs, and AI/ML applications. • Collaborate with Vanguard development teams to integrate security tools, standards, and processes into the Secure Software Development Lifecycle (SSDLC). • Implement and manage security tools within CI/CD pipelines to automate vulnerability detection and remediation. • Lead secure software supply chain initiatives including SBOM generation, artifact signing and provenance, and alignment with industry standards. • Craft and deploy application security tools, processes, and documentation to support alignment with OWASP Top 10, Industry Standards, Current Events, and Best-Practices.. • Define governance procedures and provide strategic recommendations on security policies for secure application and ML model development. • Partner with platform and product teams to triage and remediate threats and vulnerabilities across web, mobile, backend, and ML systems. • Create and maintain documentation for integrated security processes, controls, and incident response playbooks. • Develop and maintain a technical roadmap for security tooling and controls to stay ahead of evolving threats. • Translate technical security strategies into business-aligned objectives for product and executive leadership. • Establish a governance framework to benchmark program maturity and team performance. • Stay current on emerging threats, including adversarial ML risks, and lead knowledge-sharing sessions across the organization. Qualifications Bachelor’s degree in Computer Science, Engineering, or related field; 7+ years of professional experience in Security Management, Application Security, or ML Security. Proven leadership experience in IT Security and governance. Hands-on experience with SAST, DAST, SCA tools Familiarity with secure ML lifecycle practices (MLSecOps) Desired Skills Strong understanding of secure SDLC, application security testing, and supply chain security. Experience with MLSecOps practices and securing AI/ML pipelines. Familiarity with industry frameworks: OWASP SAMM, BSIMM, SLSA, NIST SSDF. Experience with cloud platforms (AWS, Azure, GCP) and cloud-native security practices. Ability to work independently and define strategic direction without supervision. Excellent communication, leadership, and stakeholder management skills. Certifications such as CISSP, CISM, CSSLP, or equivalent are preferred. Experience with one or more of programming languages such as Python, Java, C#, C++, etc. Special Factors Sponsorship Vanguard is not offering visa sponsorship for this position. About Vanguard At Vanguard, we don't just have a mission—we're on a mission. To work for the long-term financial wellbeing of our clients. To lead through product and services that transform our clients' lives. To learn and develop our skills as individuals and as a team. From Malvern to Melbourne, our mission drives us forward and inspires us to be our best. How We Work Vanguard has implemented a hybrid working model for the majority of our crew members, designed to capture the benefits of enhanced flexibility while enabling in-person learning, collaboration, and connection. We believe our mission-driven and highly collaborative culture is a critical enabler to support long-term client outcomes and enrich the employee experience.
Veracity Software Inc is seeking a Principal Application Security Engineer to lead transformative projects in application security. The role involves driving automation and secure development practices in a hybrid work environment.
Axon Enterprise is seeking a Senior Application Security Engineer II to enhance application security within the software development lifecycle. This role involves partnering with development teams to implement security practices and tools while promoting a culture of secure coding.
PagerDuty is seeking a Senior Security Engineer to lead security initiatives for its SaaS offerings, focusing on application and product security. The role involves collaboration with development teams to ensure secure and scalable solutions.
Vanguard is seeking a Manager of Application Security to lead secure software development and supply chain practices. This role involves mentoring a global team and collaborating with various stakeholders to enhance application security across the organization.
The Associate Principal, Security Engineering (Application Security) at The Options Clearing Corporation focuses on enhancing application and software security through collaboration with IT and development teams. This role involves performing security assessments, automating security processes, and implementing secure development practices.
StoneX Group Inc. is seeking an experienced Application Security Engineer to secure applications throughout the SDLC and manage Cloudflare's edge security features. The role involves collaboration with development teams to enhance secure coding practices and implement security tools.
Veracity Software Inc is seeking a Principal Application Security Engineer to lead transformative projects in application security. The role involves driving automation and secure development practices in a hybrid work environment.
Axon Enterprise is seeking a Senior Application Security Engineer II to enhance application security within the software development lifecycle. This role involves partnering with development teams to implement security practices and tools while promoting a culture of secure coding.
PagerDuty is seeking a Senior Security Engineer to lead security initiatives for its SaaS offerings, focusing on application and product security. The role involves collaboration with development teams to ensure secure and scalable solutions.
Vanguard is seeking a Manager of Application Security to lead secure software development and supply chain practices. This role involves mentoring a global team and collaborating with various stakeholders to enhance application security across the organization.
The Associate Principal, Security Engineering (Application Security) at The Options Clearing Corporation focuses on enhancing application and software security through collaboration with IT and development teams. This role involves performing security assessments, automating security processes, and implementing secure development practices.
StoneX Group Inc. is seeking an experienced Application Security Engineer to secure applications throughout the SDLC and manage Cloudflare's edge security features. The role involves collaboration with development teams to enhance secure coding practices and implement security tools.
Veracity Software Inc is seeking a Principal Application Security Engineer to lead transformative projects in application security. The role involves driving automation and secure development practices in a hybrid work environment.
Axon Enterprise is seeking a Senior Application Security Engineer II to enhance application security within the software development lifecycle. This role involves partnering with development teams to implement security practices and tools while promoting a culture of secure coding.
Vanguard is seeking a Manager of Application Security to lead secure software development and supply chain practices. This role involves mentoring a global team and collaborating with various stakeholders to enhance application security across the organization.