- Location
- AUS - Wesley Place, Australia
- Type
- Full-time
- Experience
- 4+ years
- Education
- Bachelor
- Closing date
- Today
- Source
- Workday
Description
About Vanguard
More than 45 years ago, John C. Bogle had a vision to start an investment company that did things differently. A company with no external shareholders. Where all the profits were invested back into the business and used to lower costs. Evidently, it was as bold as it was brilliant. To this day, Vanguard Group still has no external shareholders. That means no share prices to protect, and no profits to generate for outside owners.
Today, Vanguard is one of the world’s largest investment management companies, serving more than 50 million investors worldwide. For more than 30 years Vanguard Australia has been supporting individual investors, financial advisers, and superannuation
Role Summary
This role responds to and resolves complex incidents, proactively preventing their reoccurrence, and acts as a point of escalation for junior peers. This role also collects and correlates data from CND tools and coordinates with teams to ensure effective incident handling and security improvement.
Responsibilities
Responds to and resolves complex incidents and security issues. Determines the root cause and implements corrective action with appropriate level of assistance. Elevates potential concerns and gaps as appropriate.
Monitors Third-Party suppliers for security incidents, security posture changes, networks and endpoints. Produces detailed reports for management, including findings and operation status.
Conducts periodic recertification of all tasks and process documentation. Monitors the infrastructure and contractors for security events and provides response to elevated. Identifies computer security requirements for new systems and/or processes under development.
Maintains up-to-date documentation, procedures, and workflows to assist in performing event & incident investigations. Identifies opportunities to improve the efficiency and effectiveness of processes and procedures.
Performs security audits on a regular basis to ensure compliance with security policies and standards.
Monitors threat intelligence for security incidents, security posture changes and critical vulnerabilities.
Build, deploy and maintain detections and automation to enable the monitoring and incident response with security incidents involving third-party suppliers.
Participates in special projects and performs other duties as assigned.
Collect and correlate data from various Computer Network Defense (CND) tools such as intrusion detection system alerts, firewall logs, network traffic logs, and host system logs to identify and evaluate security events.
Ability to communicate to senior leadership during a security incident across the business.
Coordinate with internal teams and external entities for effective incident handling, ensuring swift resolution and continuous improvement of security practices.
Qualifications and Skills
Minimum 4 years of experience in cybersecurity operations or incident response, with expertise in monitoring, detection, and resolution of security events.
Bachelor’s degree (B.E./B.Tech) in Computer Science, Information Technology, Cybersecurity, or a related field or a Master’s degree/Diploma in Computer Science or Cybersecurity.
Strong understanding of security tools including SIEM, IDS/IPS, firewalls, and log management tools
Experience in using ticketing systems like JIRA or ServiceNow and knowledge of incident lifecycle and threat intelligence practices.
Experience with cloud security (AWS, Azure) and managing endpoint detection and response (EDR) tools.
Must have strong documentation skills and familiarity with reporting tools for management dashboards and compliance tracking.
Ability to work in an Agile/DevSecOps environment and contribute to continuous process improvements in cybersecurity workflows.
Experience with security orchestration, automation, and response (SOAR) capabilities.
Exposure to threat hunting, detection engineering, or advanced cyber defense operations.
Demonstrated ability to lead incident response efforts and influence cross-functional teams.
Excellent written and verbal communication skills, including the ability to create technical documentation and executive-level reporting.
Inclusion Statement
Vanguard’s continued commitment to diversity and inclusion is firmly rooted in our culture. Every decision we make to best serve our clients, crew (internally employees are referred to as crew), and communities is guided by one simple statement: “Do the right thing.”
We believe that a critical aspect of doing the right thing requires building diverse, inclusive, and highly effective teams of individuals who are as unique as the clients they serve. We empower our crew to contribute their distinct strengths to achieving Vanguard’s core purpose through our values.
When all crew members feel valued and included, our ability to collaborate and innovate is amplified, and we are united in delivering on Vanguard’s core purpose.
Our core purpose: To take a stand for all investors, to treat them fairly, and to give them the best chance for investment success.
How We Work
Vanguard has implemented a hybrid working model for the majority of our crew members, designed to capture the benefits of enhanced flexibility while enabling in-person learning, collaboration, and connection. We believe our mission-driven and highly collaborative culture is a critical enabler to support long-term client outcomes and enrich the employee experience.