hirly

Vanguard

Web Application and Fraud - Offensive Security Specialist

Malvern, PA · North Carolina · Dallas/Ft. Worth, TX

See how you match this job — and similar ones. Free.

Upload your resume and hirly scores it against this role at Vanguard first, then against similar open jobs, and shows where you fit and why.

PDF or DOCX, up to 12MB. No sign-up to see your matches.

Get past the screening software and onto a recruiter's desk

hirly rewrites your resume for this job — matching the keywords and skills in the posting, moving your most relevant experience to the top, and writing a cover letter to fit. About 30 seconds.

  • Keywords matched to this posting
  • Fit score before you apply
  • Cover letter included

Matched against 2.5M live jobs from 200,000+ employers in 200+ countries.

Tailor my resume for this job →

Apply from your AI assistant

Connect hirly to Claude and ask it to apply to this job. hirly tailors your resume, fills the employer’s form and asks before sending. ChatGPT: manual setup today.

Some employer sites stop an application at a CAPTCHA or sign-in and hand it back with a link. Applying needs a paid plan. Works with any assistant that supports MCP.

hirly's read of this role

Seniority
Mid level
Country
US
Work mode
On-site / unstated
First seen by hirly
16 Sept 2026

Derived automatically from the posting. Upload your resume above to see how the role scores against it.

the posting

The Offensive Security Analyst on the Web Application & Fraud Testing team conducts threat-driven security testing of Vanguard's critical client-facing web applications. This role applies nascent adversarial TTPs to validate whether existing controls detect and prevent the fraud tradecraft currently emerging in the threat landscape. Findings from this work directly inform detection improvements and control remediation across the enterprise.

Core Responsibilities

Beyond traditional application testing, this operator will help design and execute realistic scenarios that stress-test cyber fraud detection and response, and partner with defensive teams in exercises to validate that our controls fire when they should.

Assesses the risk and business impact of identified findings, applying defensible severity ratings based on likelihood, exploitability, and exposure. Thinks critically about remediation guidance so that recommendations to partner teams are practical, proportionate to the risk, and address root cause rather than symptom.

Fosters and supports junior talent through informal leadership and coaching. Mentors junior team members to improve their technical acumen.

Applies emerging adversarial tradecraft against client facing web application infrastructure through rigorous control validation to improve reactive and proactive threat driven operations.

Conducts penetration testing, vulnerability assessments and threat modeling. Evaluates risks and makes recommendations.

Provides written assessments focused on threats, vulnerabilities, and technologies relevant to Vanguard Infrastructure.

Leads with IT and business teams to ensure prompt and effective distribution of findings so incidents are effectively addressed. Provides department support to the business on enterprise-wide security initiatives and projects.

Participates in special projects and performs other duties as assigned.

Qualifications

OSCP, OSWA, OSWE, CWES, GWAPT, PWPP, or equivalent professional level web application testing certification required

CISSP preferred

Minimum of five years related work experience, with three years' experience in threat analysis.

Undergraduate degree in a related field or the equivalent combination of training and experience.

Experience testing controls and fostering collaboration in an effort to remediate findings from assessments.

Experience assessing production web applications.

Special Factors

Sponsorship

Vanguard is not offering visa sponsorship for this position.

About Vanguard

At Vanguard, we don't just have a mission—we're on a mission.

To work for the long-term financial wellbeing of our clients. To lead through product and services that transform our clients' lives. To learn and develop our skills as individuals and as a team. From Malvern to Melbourne, our mission drives us forward and inspires us to be our best.

How We Work

Vanguard has implemented a hybrid working model for the majority of our crew members, designed to capture the benefits of enhanced flexibility while enabling in-person learning, collaboration, and connection. We believe our mission-driven and highly collaborative culture is a critical enabler to support long-term client outcomes and enrich the employee experience.

Original posting on Vanguard's site ↗

Browse similar roles

Want this one?

Upload your resume and hirly rewrites it for this job and writes the cover letter — in about thirty seconds, before you sign up.

Tailor my resume for this job