Senior Manager Purple Team

Posted 3 Days Ago
Be an Early Applicant
4 Locations
In-Office
Senior level
Fintech
The Role
Lead and scale Vanguard's Purple Team program to validate detections, controls, and response processes. Collaborate with Offensive Security, CSOC, Detection Engineering, and Threat Intelligence to run threat-informed exercises, close detection gaps, measure detection coverage and response effectiveness, and drive defensive improvements and automation.
Summary Generated by Built In

The Senior Manager, Purple Team Operations leads Vanguard's Purple Team program within the Offensive Security & Fraud Testing (OSFT) organization. This role is responsible for building and scaling a threat-informed validation program that partners Offensive Security, the CSOC, Detection Engineering, and Fraud Detection teams to continuously improve Vanguard's detection, response, and resilience capabilities.

Unlike offensive security operations that primarily assess security readiness through covert adversary emulation, the Purple Team function focuses on collaborative validation of controls, detections, and response processes. The team's mission is to ensure that identified detection gaps are translated into measurable defensive improvements and that Vanguard can detect, investigate, and respond to relevant adversary behaviors across the enterprise.

Success in this role is measured by the effectiveness of Vanguard's detection and response capabilities: improved detection coverage, reduced detection gaps, faster response times, stronger collaboration across offensive and defensive teams, and measurable improvements in cyber resilience.

Job Description

Key Responsibilities
  • Purple Team Program Leadership: Define and execute the strategic vision for Vanguard's Purple Team program, aligning threat-informed defense validation activities to enterprise cyber risk priorities. Develop annual roadmaps that prioritize adversary emulation, detection validation, control effectiveness testing, and threat-informed exercises based on intelligence, prior offensive operations, and evolving industry threats.
  • Team Management & Development: Lead and develop a geographically distributed team of Purple Team operators focused on adversary emulation, detection validation, and defensive capability improvement. Drive hiring, coaching, mentoring, and career development while fostering a culture of continuous learning, innovation, and collaboration between offensive and defensive security teams.
  • Detection Validation & Threat-Informed Testing: Oversee Purple Team operations that validate security controls, detection content, response playbooks, and investigative procedures across the enterprise. Ensure testing is aligned to known adversary TTPs and frameworks such as MITRE ATT&CK and MITRE ATLAS. Drive repeatable validation methodologies that assess prevention, detection, investigation, and response capabilities.
  • Offensive Security Partnership & Remediation Closure: Partner closely with Offensive Security teams to translate findings from Red Team operations, penetration tests, and adversarial AI assessments into Purple Team validation activities. Ensure previously identified detection gaps are remediated, tested, and validated before closure. Establish feedback loops that improve both offensive and defensive program effectiveness.
  • CSOC & Detection Engineering Collaboration: Serve as the primary liaison between OSFT, CSOC, Threat Detection Engineering, Fraud Detection, and Cyber Threat Intelligence teams. Coordinate collaborative exercises that validate new detections, response workflows, telemetry coverage, and security monitoring capabilities. Drive alignment on adversary emulation priorities and detection engineering roadmaps.
  • Reporting & Metrics: Establish measurable metrics to demonstrate security improvement and operational effectiveness. Track and communicate detection coverage, ATT&CK technique validation rates, mean-time-to-detect improvements, detection fidelity, response effectiveness, and remediation progress. Present findings, trends, and strategic recommendations to senior leadership and governance forums.
  • Threat Intelligence Integration: Partner with Cyber Threat Intelligence teams to ensure Purple Team exercises emulate relevant financial industry adversaries, fraud threats, ransomware groups, insider threats, and emerging AI-enabled attack techniques. Translate intelligence into actionable validation scenarios that strengthen Vanguard's security posture.
  • Strategic Innovation & Program Maturity: Continuously evolve the Purple Team capability by introducing new validation methodologies, automation, adversarial AI testing approaches, cloud-native security validation, attack-path simulation, and continuous control validation capabilities. Drive innovation while ensuring exercises remain aligned with business objectives and risk priorities.
Required Qualifications
  • Purple Team & Detection Expertise: 10+ years of experience in cybersecurity with significant experience in Purple Teaming, Detection Engineering, Threat Hunting, Incident Response, Red Teaming, or Adversary Simulation. Deep understanding of attacker methodologies, detection technologies, security telemetry, and defensive operations.
  • Leadership & Program Management: 3+ years leading security teams, Purple Team programs, Detection Engineering functions, Incident Response capabilities, or equivalent technical organizations. Demonstrated ability to develop teams, manage strategic initiatives, and deliver measurable cybersecurity outcomes across multiple stakeholders.
  • Threat-Informed Defense Expertise: Strong knowledge of MITRE ATT&CK, MITRE ATLAS, adversary emulation methodologies, detection engineering practices, threat hunting frameworks, and modern SOC operations. Experience designing and executing threat-informed validation programs at enterprise scale.
  • Security Operations & Detection Engineering Knowledge: Deep familiarity with SIEM, EDR, NDR, cloud security monitoring, threat intelligence platforms, deception technologies, automation workflows, and modern detection engineering practices. Experience evaluating detection coverage and improving security monitoring effectiveness.
  • AI & Automation Familiarity: Experience leveraging AI/ML technologies, automation frameworks, and security analytics to enhance threat detection, adversary simulation, or security operations. Understanding of how generative AI impacts both attacker tradecraft and defensive capabilities.
  • Cross-Functional Leadership & Communication: Exceptional communication and stakeholder management skills with the ability to influence technical teams, security leadership, and executive stakeholders. Proven experience driving collaboration across Offensive Security, CSOC, Fraud, Risk, Engineering, and Threat Intelligence teams.
  • Education & Certifications: Bachelor's degree in Computer Science, Cybersecurity, or related discipline (or equivalent experience). Relevant certifications (e.g., CISSP, GCFA. GCTI, GMON, GCIA, CRTO, CARTP, OSCP, CREST Certifications) that demonstrate both offensive technical depth and security management knowledge are strongly preferred. 

Special Factors

Sponsorship

Vanguard is not offering visa sponsorship for this position.

About Vanguard

At Vanguard, we don't just have a mission—we're on a mission.

To work for the long-term financial wellbeing of our clients. To lead through product and services that transform our clients' lives. To learn and develop our skills as individuals and as a team. From Malvern to Melbourne, our mission drives us forward and inspires us to be our best.

How We Work

Vanguard has implemented a hybrid working model for the majority of our crew members, designed to capture the benefits of enhanced flexibility while enabling in-person learning, collaboration, and connection. We believe our mission-driven and highly collaborative culture is a critical enabler to support long-term client outcomes and enrich the employee experience.

Skills Required

  • 10+ years cybersecurity experience with Purple Teaming, Detection Engineering, Threat Hunting, Incident Response, Red Teaming, or Adversary Simulation
  • 3+ years leading security teams, Purple Team programs, Detection Engineering functions, or Incident Response capabilities
  • Experience designing and executing threat-informed validation programs at enterprise scale
  • Deep knowledge of MITRE ATT&CK, MITRE ATLAS, adversary emulation methodologies, and detection engineering practices
  • Familiarity with SIEM, EDR, NDR, cloud security monitoring, threat intelligence platforms, deception technologies, and automation workflows
  • Experience leveraging AI/ML technologies, automation frameworks, and security analytics for detection or adversary simulation
  • Exceptional communication and stakeholder management skills; ability to influence technical teams and executive leadership
  • Bachelor's degree in Computer Science, Cybersecurity, or related discipline (or equivalent experience)
  • Relevant certifications (e.g., CISSP, GCFA, GCTI, GMON, GCIA, CRTO, CARTP, OSCP, CREST)

Vanguard Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Vanguard and has not been reviewed or approved by Vanguard.

  • Retirement Support Retirement support appears unusually strong through a 401(k) design that includes a match plus an additional employer contribution, which can materially lift long-term total rewards. HSA seeding and an enhanced employer match further strengthen the savings-and-benefits value of the package.
  • Wellbeing & Lifestyle Benefits Wellbeing and lifestyle support is reinforced by a sizable annual FlexFund stipend that can be applied across many day-to-day categories such as fitness, childcare, and other personal expenses. On-site or virtual clinics and fitness options add practical health and wellness convenience.
  • Affordable Benefits Healthcare and related benefits are positioned as comparatively affordable via heavily subsidized medical plans and broad coverage options. This affordability can offset moderate base pay for employees who place higher value on out-of-pocket cost reductions.

Vanguard Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Malvern, PA
20,252 Employees
Year Founded: 1975

What We Do

We are a community of 30 million who think – and feel – differently about investing. Together, we’re changing the way the world invests. Since our founding in 1975, helping our investors achieve their goals is our sole reason for existence. With no other parties to answer to and therefore no conflicting loyalties, we make every decision—like keeping investing costs as low as possible—with only your needs in mind. Vanguard is one of the world's largest investment companies, offering a large selection of high-quality low-cost mutual funds, ETFs, advice, and related services. Individual and institutional investors, financial professionals, and plan sponsors can benefit from the size, stability, and experience Vanguard offers. As of April 30, 2019, we managed more than $5.6 trillion in global assets. In addition, we have 189 funds in the United States and 225 funds in global markets. For Commenting Guidelines & Important information, visit here: http://vanguard.com/linkedin Vanguard Marketing Corporation, Distributor.

Similar Jobs

The Aerospace Corporation Logo The Aerospace Corporation

Process Engineer

Aerospace • Artificial Intelligence • Cloud • Machine Learning • Software • Cybersecurity • Defense
Hybrid
Richardson, TX, USA
4600 Employees

PwC Logo PwC

Security Risk & Engineering - Tech and Cyber Risk & Compliance -Manager

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Hybrid
9 Locations
370000 Employees
99K-232K Annually

PwC Logo PwC

Security Risk & Engineering - Tech and Cyber Risk & Compliance - Senior Manager

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Hybrid
9 Locations
370000 Employees
124K-280K Annually

PwC Logo PwC

Information Technology Manager

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Hybrid
5 Locations
370000 Employees
99K-232K Annually

Similar Companies Hiring

Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account