Core Responsibilities
- Productionize and scale AI-enabled security solutions from Proof of Concept (POC) to enterprise deployment.
- Develop and maintain AI-powered AppSec capabilities including vulnerability prioritization, remediation assistance, and security workflow automation.
- Support AI use cases such as toxic combination detection, CVE chaining analysis, exploitability assessment, and AI-assisted developer remediation.
- Build integrations between AI services and security platforms including SAST, SCA, SBOM, secrets scanning, and vulnerability management solutions.
- Design scalable automation and APIs supporting secure software delivery pipelines.
- Support Software Supply Chain Security initiatives including SBOM generation, dependency intelligence, risk scoring, and supply chain visibility.
- Implement AI capabilities within CI/CD pipelines while maintaining security, auditability, and operational reliability.
- Develop monitoring, observability, and performance metrics for AI-enabled security services.
- Partner with AppSec, Platform Engineering, and Development teams to enable secure adoption of new capabilities.
- Contribute to AppSec AI initiatives supporting AI Attack Readiness and AppSec Modernization objectives.
Nice-to-Have
- Experience operationalizing Generative AI or LLM-based solutions in production environments.
- Hands-on experience with Azure OpenAI, OpenAI APIs, LangChain, Semantic Kernel, AutoGen, CrewAI, or similar frameworks.
- Experience with GitHub Advanced Security (GHAS), Snyk, Wiz, JFrog Xray, or comparable security platforms.
- Knowledge of SBOM standards, software composition analysis, and software supply chain security practices.
- Experience developing AI agents, orchestration frameworks, or security automation workflows.
- Familiarity with Kubernetes, containers, cloud platforms (AWS/Azure), and Infrastructure-as-Code.
- Experience with ML observability, prompt engineering, AI evaluation frameworks, or Responsible AI practices.
- Understanding of exploitability analysis, attack path analysis, or threat modeling.
- Experience supporting enterprise-scale developer platforms or security services.
Qualifications
- Bachelor's degree in Computer Science, Cybersecurity, Engineering, or related field.
- 3–5+ years of experience in Software Engineering, Application Security, DevSecOps, or Security Engineering.
- Experience developing solutions using Python, Java, or similar programming languages.
- Experience building APIs, automation workflows, and cloud-native applications.
- Knowledge of 3 or more Security concepts including:
- SAST
- SCA
- Secrets Management
- Vulnerability Management
- CI/CD Security
- Software Supply Chain Security
- SBOMs
- Experience working with GitHub, Git-based development workflows, and modern CI/CD platforms.
- Familiarity with AI/LLM technologies and AI-assisted software development.
- Strong troubleshooting, automation, and problem-solving skills.
- Ability to work across security, engineering, and development teams.
Special Factors
Sponsorship
Vanguard is not offering visa sponsorship for this position.About Vanguard
At Vanguard, we don't just have a mission—we're on a mission.
To work for the long-term financial wellbeing of our clients. To lead through product and services that transform our clients' lives. To learn and develop our skills as individuals and as a team. From Malvern to Melbourne, our mission drives us forward and inspires us to be our best.
How We Work
Vanguard has implemented a hybrid working model for the majority of our crew members, designed to capture the benefits of enhanced flexibility while enabling in-person learning, collaboration, and connection. We believe our mission-driven and highly collaborative culture is a critical enabler to support long-term client outcomes and enrich the employee experience.
Skills Required
- Bachelor's degree in Computer Science, Cybersecurity, Engineering, or related field.
- 3-5+ years experience in Software Engineering, Application Security, DevSecOps, or Security Engineering.
- Experience developing solutions using Python, Java, or similar programming languages.
- Experience building APIs, automation workflows, and cloud-native applications.
- Knowledge of 3 or more security concepts (SAST, SCA, Secrets Management, Vulnerability Management, CI/CD Security, Software Supply Chain Security, SBOMs).
- Experience working with GitHub, Git-based development workflows, and modern CI/CD platforms.
- Familiarity with AI/LLM technologies and AI-assisted software development.
- Strong troubleshooting, automation, and problem-solving skills.
- Ability to work across security, platform engineering, and development teams.
- Experience operationalizing Generative AI or LLM-based solutions in production environments.
- Hands-on experience with Azure OpenAI, OpenAI APIs, LangChain, Semantic Kernel, AutoGen, or CrewAI.
- Experience with GitHub Advanced Security (GHAS), Snyk, Wiz, JFrog Xray, or comparable security platforms.
- Knowledge of SBOM standards, software composition analysis, and software supply chain security practices.
- Experience developing AI agents, orchestration frameworks, or security automation workflows.
- Familiarity with Kubernetes, containers, cloud platforms (AWS/Azure), and Infrastructure-as-Code.
- Experience with ML observability, prompt engineering, AI evaluation frameworks, or Responsible AI practices.
- Understanding of exploitability analysis, attack path analysis, or threat modeling.
- Experience supporting enterprise-scale developer platforms or security services.
Vanguard Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Vanguard and has not been reviewed or approved by Vanguard.
-
Retirement Support — Retirement support appears unusually strong through a 401(k) design that includes a match plus an additional employer contribution, which can materially lift long-term total rewards. HSA seeding and an enhanced employer match further strengthen the savings-and-benefits value of the package.
-
Wellbeing & Lifestyle Benefits — Wellbeing and lifestyle support is reinforced by a sizable annual FlexFund stipend that can be applied across many day-to-day categories such as fitness, childcare, and other personal expenses. On-site or virtual clinics and fitness options add practical health and wellness convenience.
-
Affordable Benefits — Healthcare and related benefits are positioned as comparatively affordable via heavily subsidized medical plans and broad coverage options. This affordability can offset moderate base pay for employees who place higher value on out-of-pocket cost reductions.
Vanguard Insights
What We Do
We are a community of 30 million who think – and feel – differently about investing. Together, we’re changing the way the world invests. Since our founding in 1975, helping our investors achieve their goals is our sole reason for existence. With no other parties to answer to and therefore no conflicting loyalties, we make every decision—like keeping investing costs as low as possible—with only your needs in mind. Vanguard is one of the world's largest investment companies, offering a large selection of high-quality low-cost mutual funds, ETFs, advice, and related services. Individual and institutional investors, financial professionals, and plan sponsors can benefit from the size, stability, and experience Vanguard offers. As of April 30, 2019, we managed more than $5.6 trillion in global assets. In addition, we have 189 funds in the United States and 225 funds in global markets. For Commenting Guidelines & Important information, visit here: http://vanguard.com/linkedin Vanguard Marketing Corporation, Distributor.








