Senior Cloud Security Engineer

Vanguard Group, Inc.

$120K — $150K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Minimum of five years of related experience required, with two years in cloud security preferred.
  • Undergraduate degree in a relevant field or equivalent experience.
  • Proficiency in Python, Go, or TypeScript at a production level.
  • Strong understanding of distributed systems, including event-driven architectures and API design.
  • Hands-on experience with AWS, GCP, or Azure, focusing on organizational security and account structures.
  • Proven ability to influence technical decisions beyond immediate teams.

Responsibilities

  • Define and own the technical architecture for CSPM tools and automation platforms across multiple business units.
  • Design system-level patterns for security findings, ensuring a smooth detection to remediation flow.
  • Drive architectural decisions balancing immediate delivery with long-term system maintainability.
  • Architect auto-remediation systems designed for organizational scale and fault tolerance.
  • Evaluate and select tooling and frameworks for team-wide adoption, setting technical standards for integrations.
  • Collaborate with engineering leaders across various teams to align on interfaces and workflows.
  • Lead technical design reviews and mentor engineers, enhancing code quality and operational readiness.
  • Shape the technical roadmap for AI-assisted security capabilities, integrating machine learning where it can reduce risk.

Benefits

  • Flexible work arrangements to accommodate various lifestyles
  • Opportunities for professional development and continuous learning
  • Collaborative and innovative work culture
  • Access to cutting-edge technologies and projects
  • Emphasis on work-life balance and employee well-being.
Full Job Description

Core Responsibilities

  • Defines and owns the technical architecture for CSPM tooling, automation platforms, and integration frameworks — ensuring they scale reliably across thousands of cloud accounts and multiple business units.

  • Designs system-level patterns (event-driven pipelines, API contracts, data models) that other engineers build on — establishing the foundational approach for how security findings flow from detection through prioritization to remediation.

  • Drives architectural decisions on platform extensibility, service boundaries, and data ownership — balancing near-term delivery against long-term maintainability as the program grows.

  • Architects auto-remediation and shift-left enforcement systems that operate at org scale — designing for fault tolerance, auditability, and graceful degradation when upstream systems change.

  • Evaluates and selects tooling, frameworks, and integration patterns that the broader team adopts — owning the technical standards for how CSPM systems connect to enterprise infrastructure (CI/CD, CMDB, ITSM, identity providers).

  • Partners with engineering leadership across Platform, DevOps, SRE, and application security teams to align on shared interfaces, data contracts, and remediation workflows that reduce friction at organizational boundaries.

  • Leads technical design reviews and mentors engineers on the team — raising the bar on code quality, system thinking, and operational readiness.

  • Shapes the technical roadmap for AI-assisted security capabilities — evaluating where machine learning and LLM-based automation can meaningfully reduce risk or operational burden, and architecting the systems to deliver them.


Qualifications

  • Minimum of five years related work experience required, with two years experience in cloud security preferred.

  • Undergraduate degree in a related field or the equivalent combination of training and experience.

  • Proficiency in Python, Go or TypeScript - production-grade, not just scripting

  • Strong background in distributed systems concepts: event-driven architectures, async processing, API design, observability

  • Hands-on experience across at least one of: AWS, GCP, Azure — at the level of org-wide account structures, landing zones, and cross-account security patterns and IAM at scale.

  • Track record of influencing technical direction beyond your immediate team

Special Factors

Sponsorship

Vanguard is not offering visa sponsorship for this position.

Similar Jobs

More Jobs at Vanguard Group, Inc.

More Information Technology Jobs

Find similar Senior Cloud Security Engineer jobs: