Company

VanguardSee more

addressAddressMalvern, PA
CategoryIT

Job description

Global Risk and Security (GR&S) at Vanguard enables business strategy, protects client and Vanguard interests (e.g., assets and data), and stewards a strong risk culture. Our teams leverage enterprise-wide insights, deep expertise, and trusted advice so that across Vanguard leaders and crew drive faster, stronger, risk-informed decisions.

 

Within GR&S, the Enterprise Security and Fraud (ES&F) sub-division is responsible for the global protection of Vanguard crew, property, data, and client assets. We are the trusted advisors that protect the pride of Vanguard with state-of-the-art security and fraud capabilities. We are a world-class destination of highly engaged, passionate, and diverse talent expected to continuously learn and develop in an ever-changing security landscape.

In this role, you’ll be designing, implementing, and optimizing our Elasticsearch infrastructure in support of Vanguard’s SIEM migration.  You’ll work with our CSOC and Security Engineering peers to build a highly performant and available Elastic Cloud cluster. You’ll aggregate and normalize logs from many different systems and sources into the Elastic Common Schema (ECS).  You’ll work with the vendor to establish best practices for deployment and maintenance of the system architecture and deploy within designated security requirements.


Vanguard will primarily be working in AWS to create resources that support data ingestion. Since CloudFormation is the mechanism that we use to deploy AWS resources, advanced knowledge of how to construct complex CloudFormation templates will be required as well.
 

Experience

2+ years’ experience with the Logstash, Elasticsearch, Beats/ElasticAgent, Fleet- including installing, configuring, maintaining, upgrading and troubleshooting these products.

2+ years’ experience with log pipelines and interpreting logs to determine information, including converting raw logs into ECS

Experience with ElasticAgent/Logstash plugins, filters, regex, grok patterns and painless scripts

Python (intermediate)

Bash/Shell scripting (intermediate)

AWS Skills (intermediate or advanced):

  • Administering EC2 instances
  • Creating Lambda functions
  • Creating SNS topics and SQS queues
  • Creating CloudFormation templates
  • python (intermediate)

  • Bash/Shell scripting (intermediate)
  • AWS Skills (intermediate or advanced):
    • Administering EC2 instances
    • Creating Lambda functions
    • Creating SNS topics and SQS queues
    • Creating CloudFormation templates
  • Elastic Skills (intermediate or advanced):
    • Administering Elastic clusters, either on-premises ELK stacks or in Elastic Cloud
    • Administering the Elastic Agent and managing integrations with Fleet server
    • Creating ingestion pipelines that incorporate the use of regular expressions, Grok filters, and Painless scripts.

Vanguard will primarily be working in AWS to create resources that support data ingestion. Since CloudFormation is the mechanism that we use to deploy AWS resources, advanced knowledge of how to construct complex CloudFormation templates will be required.

In order to automate the setup of certain resources (e.g. the Elastic agent) scripting and interpreted languages will be needed to facilitate that automation. Python and Bash are mainly used now for Splunk automation, we would use the same languages for Elastic.

When needed, EC2s, lambda functions, and SNS/SQS AWS services will be included into various CloudFormation templates to support log ingestion. Knowledge of how these services operate will be required.

In this role, you will:

  • Design, implement, and deploy security cloud platforms to support and mitigate security threats, risks and technology vulnerabilities. Identifies and recommends opportunities for improvement and performance issue solutions.
  • Provide advanced level technical support and monitors security technologies efficiency through the use of monitoring tools and applications. Maintains comprehensive technical knowledge of cloud software and infrastructure platforms.
  • Develop auditing methodologies and architecture to manage and protect data in cloud computing environments.
  • Elevate code into the development, test, and cloud production environments on schedule. Provide follow up production support. Submit change control requests and documents.
  • Learn and understand client area business functions and requirements. Determine the appropriate technical tool to address the client's business needs.
  • Train and mentor more junior staff on processes and releases. Troubleshoot and resolve complex issues elevated from staff. Provide guidance and consultation as required. Updates, writes, and maintains documentation for the department.
  • Administer system activities. Write the technical portion of assigned deliverables. Perform systems analysis, including system requirements analysis and definition, and logical design.
  • Participate in special projects and performs other duties as assigned.


What it takes

  • Minimum of five years related work experience.
  • Undergraduate degree in a related field or the equivalent combination of training and experience.

Special Factors

Sponsorship

Vanguard is not offering visa sponsorship for this position.

About Vanguard

We are Vanguard. Together, we’re changing the way the world invests.

For us, investing doesn’t just end in value. It starts with values. Because when you invest with courage, when you invest with clarity, and when you invest with care, you can get so much more in return. We invest with purpose – and that’s how we’ve become a global market leader. Here, we grow by doing the right thing for the people we serve. And so can you.

We want to make success accessible to everyone. This is our opportunity. Let’s make it count.

Inclusion Statement

Vanguard’s continued commitment to diversity and inclusion is firmly rooted in our culture. Every decision we make to best serve our clients, crew (internally employees are referred to as crew), and communities is guided by one simple statement: “Do the right thing.”

We believe that a critical aspect of doing the right thing requires building diverse, inclusive, and highly effective teams of individuals who are as unique as the clients they serve. We empower our crew to contribute their distinct strengths to achieving Vanguard’s core purpose through our values.

When all crew members feel valued and included, our ability to collaborate and innovate is amplified, and we are united in delivering on Vanguard's core purpose.

Our core purpose: To take a stand for all investors, to treat them fairly, and to give them the best chance for investment success.

How We Work

Vanguard has implemented a hybrid working model for the majority of our crew members, designed to capture the benefits of enhanced flexibility while enabling in-person learning, collaboration, and connection. We believe our mission-driven and highly collaborative culture is a critical enabler to support long-term client outcomes and enrich the employee experience.

Benefits

Career development
Refer code: 2008330. Vanguard - The previous day - 2024-01-06 12:17

Vanguard

Malvern, PA

Share jobs with friends

Related jobs

Cloud Security Engineer Specialist-1

Sr. Security Engineer, Cloud Security

Robinhood

Toronto, ON

a month ago - seen

Cloud Security Engineer, Specialist

Vanguard

Malvern, PA

a month ago - seen

Staff Cloud Security Engineer

Replicant

Remote

a month ago - seen

Principle Cloud Security Engineer

Scotiabank

Toronto, ON

2 months ago - seen

Cloud Security Engineer, Deloitte Global Technology

Deloitte

Toronto, ON

2 months ago - seen

Senior Cloud Network & Security Engineer

Sapiens

Toronto, ON

2 months ago - seen

Senior Cloud Security Engineer

Scotiabank

Toronto, ON

3 months ago - seen

Senior Cloud Security Engineer

Scotiabank

Competitive

Ontario

3 months ago - seen

Sr. Software Engineer, Cloud Security (GCS)

Rbc Royal Bank

Vancouver, BC

3 months ago - seen

Senior Cloud Security Engineer

Bmo

Toronto, ON

3 months ago - seen

Software Engineer, Cloud Security (GCS)

Clarivate

330 FRONT ST W:TORONTO

3 months ago - seen

Senior Cloud Security Engineer

BMO

Toronto, ON

4 months ago - seen

Cloud Support Engineer I - Security

View other Amazon offers

Toronto, ON

4 months ago - seen

Software Engineer, Cloud Security (GCS)

View other RBC - Royal Bank offers

Toronto, ON

4 months ago - seen

Software Engineer, Cloud Security (GCS)

RBC Royal Bank

TORONTO, Ontario, Canada Job available in 3 locations TORONTO, Ontario, Canada CALGARY, Alberta, Canada VANCOUVER, British Columbia, Canada

4 months ago - seen

Lead Software Engineer - Cloud Security (GCS)

RBC Royal Bank

Toronto, ON

5 months ago - seen