Senior Manager, Offensive Security

Posted 2 Days Ago
Be an Early Applicant
4 Locations
In-Office
Senior level
Fintech
The Role
Lead and grow a distributed offensive security program (red team, pen testing, AI-augmented operations). Own strategic roadmaps, approve complex engagements, drive Purple Team collaboration, report to leadership, and continuously improve methodologies, automation, and detection-remediation outcomes.
Summary Generated by Built In

The Senior Manager, Offensive Security leads our advanced offensive security program within the Offensive Security & Fraud Testing (OSFT) team. This role oversees all offensive security operations – including full-scope Red Team engagements, targeted penetration testing, AI-augmented offensive security initiatives – with the mission of proactively identifying vulnerabilities and strengthening the organization’s defenses.  Success in this role is measured by the maturity and impact of our offensive security program: meaningful risk reduction, improved detection & response capabilities, strong stakeholder trust, and continuous team development.

Key Responsibilities:

  • Offensive Security Program Leadership: Define and drive the strategic vision for offensive security testing, translating high-level cyber risk objectives into actionable testing plans and operations. Establish annual roadmaps for red teaming, and pen testing exercises aligned with emerging threats and business priorities. 

  • Team Management & Development: Lead and coach a geographically distributed team of offensive security professionals. Oversee hiring, performance management, and skill development, ensuring a high-performing, collaborative culture. Foster innovation within the team by encouraging the adoption of new techniques (e.g., AI-driven tools) and by mentoring staff in advanced offensive tradecraft.

  • Operational Oversight & Execution: Plan, scope, and approve complex offensive engagements such as Red Team operations ensuring they are conducted safely, ethically, and with clear goals. Oversee GenAI-enabled offensive security projects, setting guidelines for responsible use of AI/automation as force multipliers in our operations. Provide hands-on guidance when needed, leveraging your own red team experience to support critical operations or complex exploit development.

  • Purple Team & Cross-Functional Collaboration: Coordinate Purple Team exercises that bring together our offensive team with CSOC Team and fraud teams to test and improve detective controls. Serve as the primary liaison with defensive stakeholders, ensuring findings are immediately actionable and bridging gaps between offense and defense. Champion a partnership approach – sharing threat intelligence, aligning on TTPs (Tactics, Techniques, Procedures) to emulate, and jointly prioritizing remediation efforts.

  • Reporting & Program Governance: Ensure comprehensive documentation and communication of all offensive testing activities and outcomes. Review and finalize detailed reports for each engagement, highlighting identified vulnerabilities, their business impact, and recommended fixes. Present program results and risk insights to senior security leadership and risk governance forums. Continuously refine methodologies, enforce adherence to frameworks (e.g., MITRE ATT&CK, internal policies), and track metrics to measure program effectiveness (coverage of attack surface, detection rates, time-to-remediation, stakeholder satisfaction). 

  • Strategic Improvement & Innovation: Identify opportunities to expand or enhance the program – such as integrating new offensive techniques, improving automation, or refining Purple Team processes – and drive these initiatives to increase program maturity. Stay current on industry trends and ensure our team remains at the forefront of offensive security practices, especially regarding AI augmentation, cloud security, and evolving threat landscapes.

Required Qualifications:

  • Offensive Security Expertise: 10+ years in penetration testing, red teaming, or adversary simulation, with proven success as a hands-on operator delivering high-impact engagements. Deep knowledge of network, application, and cloud security vulnerabilities, exploitation techniques, and attacker methodologies (MITRE ATT&CK, kill chain, etc.).

  • Leadership & Program Management: 3+ years of experience leading offensive security teams or programs. Demonstrated ability to manage and develop high-performing teams, including setting goals, mentoring senior engineers, and attracting top talent. Skilled in strategic planning and multi-project management – able to prioritize and allocate resources to meet objectives across simultaneous operations

  • AI & Automation Familiarity: Exposure to or strong interest in AI/ML technologies and security automation. While not a data scientist, you understand how generative AI and tools like LLMs can be leveraged in offensive security (e.g. for recon or automating tasks). Experience overseeing or implementing innovative solutions (like advanced scripting, C2 frameworks, or integrating AI agents) in security testing is a plus.

  • Stakeholder Engagement & Communication: Excellent communication skills with both technical and executive audiences. Able to clearly articulate risk and influence senior stakeholders to take action on security findings. Experience collaborating with defensive security teams, fraud/risk teams, and engineering groups to drive remediation and improve security posture. A track record of building trust and credibility through transparency and consistency in execution. 

  • Education & Certifications: Bachelor’s degree in Computer Science, Cybersecurity, or related field (or equivalent experience). Relevant certifications (e.g., OSCP,CISSP, GIAC GPEN, CRTO) that demonstrate both offensive technical depth and security management knowledge are strongly preferred. 

Special Factors

Sponsorship

Vanguard is not offering visa sponsorship for this position.

About Vanguard

At Vanguard, we don't just have a mission—we're on a mission.

To work for the long-term financial wellbeing of our clients. To lead through product and services that transform our clients' lives. To learn and develop our skills as individuals and as a team. From Malvern to Melbourne, our mission drives us forward and inspires us to be our best.

How We Work

Vanguard has implemented a hybrid working model for the majority of our crew members, designed to capture the benefits of enhanced flexibility while enabling in-person learning, collaboration, and connection. We believe our mission-driven and highly collaborative culture is a critical enabler to support long-term client outcomes and enrich the employee experience.

Skills Required

  • 10+ years in penetration testing, red teaming, or adversary simulation with hands-on operator experience
  • Deep knowledge of network, application, and cloud security vulnerabilities, exploitation techniques, and attacker methodologies (MITRE ATT&CK)
  • 3+ years leading offensive security teams or programs, including hiring, performance management, and mentoring senior engineers
  • Experience in strategic planning and multi-project management for offensive security operations
  • Familiarity with AI/ML, generative AI, LLMs and security automation; experience overseeing AI-augmented offensive initiatives is a plus
  • Experience with C2 frameworks, advanced scripting, and integrating automation/agents into offensive workflows
  • Excellent stakeholder engagement and communication skills with technical and executive audiences
  • Bachelor's degree in Computer Science, Cybersecurity, or related field (or equivalent experience)
  • Relevant certifications (e.g., OSCP, CISSP, GIAC GPEN, CRTO)

Vanguard Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Vanguard and has not been reviewed or approved by Vanguard.

  • Retirement Support Retirement support appears unusually strong through a 401(k) design that includes a match plus an additional employer contribution, which can materially lift long-term total rewards. HSA seeding and an enhanced employer match further strengthen the savings-and-benefits value of the package.
  • Wellbeing & Lifestyle Benefits Wellbeing and lifestyle support is reinforced by a sizable annual FlexFund stipend that can be applied across many day-to-day categories such as fitness, childcare, and other personal expenses. On-site or virtual clinics and fitness options add practical health and wellness convenience.
  • Affordable Benefits Healthcare and related benefits are positioned as comparatively affordable via heavily subsidized medical plans and broad coverage options. This affordability can offset moderate base pay for employees who place higher value on out-of-pocket cost reductions.

Vanguard Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Malvern, PA
20,252 Employees
Year Founded: 1975

What We Do

We are a community of 30 million who think – and feel – differently about investing. Together, we’re changing the way the world invests. Since our founding in 1975, helping our investors achieve their goals is our sole reason for existence. With no other parties to answer to and therefore no conflicting loyalties, we make every decision—like keeping investing costs as low as possible—with only your needs in mind. Vanguard is one of the world's largest investment companies, offering a large selection of high-quality low-cost mutual funds, ETFs, advice, and related services. Individual and institutional investors, financial professionals, and plan sponsors can benefit from the size, stability, and experience Vanguard offers. As of April 30, 2019, we managed more than $5.6 trillion in global assets. In addition, we have 189 funds in the United States and 225 funds in global markets. For Commenting Guidelines & Important information, visit here: http://vanguard.com/linkedin Vanguard Marketing Corporation, Distributor.

Similar Jobs

Apex Fintech Solutions Logo Apex Fintech Solutions

Operations Specialist

Fintech • Software • Financial Services
Hybrid
Austin, TX, USA
1000 Employees

CSC Logo CSC

Associate Tax Research Specialist

Fintech • Legal Tech • Software • Financial Services • Cybersecurity • Data Privacy
Remote or Hybrid
2 Locations
8500 Employees
58K-73K Annually

Caterpillar Logo Caterpillar

Cloud Solutions Architect

Artificial Intelligence • Cloud • Internet of Things • Software • Cybersecurity • Industrial
Hybrid
Irving, TX, USA
1000000 Employees
148K-240K Annually

Sprout Social Logo Sprout Social

Senior Director, Decision Analytics

Marketing Tech • Social Media • Software • Analytics • Business Intelligence
Easy Apply
Remote or Hybrid
US
1400 Employees
200K-303K Annually

Similar Companies Hiring

Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account