The Vanguard Group, Inc. is one of the world's largest investment management companies, with a mission centered on taking a stand for all investors. For cybersecurity professionals, the threat model is clear: protecting the financial data, transactions, and infrastructure that serve millions of individual and institutional investors. The attack surface spans web applications, internal networks, cloud environments, and the complex integrations between proprietary platforms and third-party financial systems.
The security team operates within a culture the company calls "crew-centered," emphasizing teamwork, accountability, and continuous learning. The company invests in its people through comprehensive benefits, including a $1,500 annual FlexFund stipend, tuition assistance, and fully paid licensing programs. The work environment is hybrid and collaborative, with a stated priority on authentic connection and robust learning and development resources.
Roles likely touch the domains you'd expect at this scale: threat detection and response, vulnerability management, identity and access governance, cloud security architecture, and application security. Given Vanguard's position in financial services, compliance frameworks and regulatory requirements are a constant operational reality, not an afterthought. The company's purpose-driven approach means security work isn't just technical - it's directly tied to investor trust.





