Offensive Security Analyst, Senior Specialist
Apply (https://vanguard.wd5.myworkdayjobs.com/en-US/vanguard external/job/DallasFt-Worth-TX/Offensive-Security-Analyst--Senior-Specialist 179129/apply)
locations
Dallas/Ft. Worth, TX
time type
Full time
posted on
Posted 6 Days Ago
time left to apply
End Date: June 24, 2026 (7 days left to apply)
job requisition id
179129
We are seeking a talentedOffensive Security Analystto join our team of ethical hackers. In this mid-level role, you will be anintegral part of our red teaming and penetration testing efforts, using your technical expertise tofind and exploit vulnerabilitiesacross web applications, networks, cloud platforms, and critical systems. By thinking like an attacker, you will help us identify weaknessesbefore real adversaries do, and work with cross-functional partners to fix them. This is a hands-on role focused on traditional offensive security methods - you'll use well-known and custom tools to emulate sophisticated threat actors,improve our security posture, andreduce risk.
Key Responsibilities:
Red Team Operations & Adversary Simulation:Participate infull-scope red team engagements, contributing across the kill-chain (reconnaissance, exploitation, lateral movement, data exfiltration, etc.). Occasionallylead targeted adversary simulationsat moderate scope (e.g., a spear-phishing campaign or an endpoint compromise scenario, using phishing or malware implants). Emulatereal threat actor TTPsaligned with frameworks like MITRE ATT&CK to test our detection and response capabilities.
Collaborative Remediation & Purple Team Support:Work closely withdefensive teams- such as developers, system engineers, and security operations - to ensure discovered issues areunderstood and remediatedeffectively. Provide actionable technical guidance to fix vulnerabilities (e.g., code remediation suggestions for development teams). Supportpurple team exercisesby sharing attacker perspective knowledge and helping defensive teams validate alerts and improve detection rules.
Reporting & Communication:Document each engagement thoroughly, producingclear and detailed penetration test reportsthat explain findings, their severity, and recommended mitigations. Communicate technical details to both technical and non-technical audiences; for instance, explaining a complex exploit in layman's terms to business stakeholders or summarizing red team outcomes in executive readouts.
Continuous Learning & Tooling:Continuously research emerging vulnerabilities,new exploit techniques, and security trends in the offensive domain. Keep offensive toolkit sharp - use and refine tools like Burp Suite, OWASP ZAP, Metasploit, Kali Linux, etc., and create custom scripts (in Python, PowerShell, Bash, etc.) toautomate routine tasks or develop new exploits. Share knowledge with peers, helpmentor junior analysts, and contribute to the team's playbooks and knowledge base.
+
Technical Offensive Security Experience:5+ years of hands-onpenetration testing and/or red teamingexperience. Proven track record ofidentifying and exploiting vulnerabilitiesacross web applications (deep knowledge ofOWASP Top 10), networks, and cloud services. Familiarity withshell scripting and programming (Python, PowerShell, Bash)for exploit development and automation. Strong understanding of network protocols, operating systems, identity management, and security architecture.
Adversary Mindset & Frameworks:Demonstrated ability tothink like an attackerto anticipate and craft creative exploitation scenarios. Familiarity with frameworks and methodologies likeMITRE ATT&CK, PTES (Penetration Testing Execution Standard), and relevant compliance standards (NIST, ISO), ensuring tests are realistic and comprehensive.
+
Communication & Teamwork:Strong written and verbal communication skills to produce high-quality reports and articulate risk to stakeholders. Experience collaborating with defensive teams (security operations, appsec, IT engineering) to help them understand issues and prioritize fixes. A team-oriented approach: open to knowledge sharing, learning from others, and contributing positively to the team's success.
Preferred Qualifications:
Offensive security certifications such asOSCP, OSWE, OSWA, GPEN, GWAPT, or similar, demonstrating validated skills in penetration testing.
Experience performingthreat modelingand incorporating attacker perspective into security design reviews.
Familiarity withcloud platforms(AWS, Azure, GCP) and their specific security considerations.
Knowledge of secure software development practices and experience working withDevSecOpsor CI/CD pipeline security.
Red team operations exposureor small-scale adversary simulations (beyond standard pentesting), showing the ability to plan multi-phase attacks and operate stealthily.
Active participation in the security community (e.g., CTFs, bug bounties, open-source contributions) demonstrating passion for offensive security.
Special Factors
Sponsorship
Vanguard is not offering visa sponsorship for this position.
About Vanguard
At Vanguard, we don't just have a mission-we're on a mission.
To work for the long-term financial wellbeing of our clients. To lead through product and services that transform our clients' lives. To learn and develop our skills as individuals and as a team. From Malvern to Melbourne, our mission drives us forward and inspires us to be our best.
How We Work
Vanguard has implemented a hybrid working model for the majority of our crew members, designed to capture the benefits of enhanced flexibility while enabling in-person learning, collaboration, and connection. We believe our mission-driven and highly collaborative culture is a critical enabler to support long-term client outcomes and enrich the employee experience.
Similar Jobs (5)
Senior Technical Risk Assurance Analyst - AI
locations
4 Locations
time type
Full time
posted on
Posted 6 Days Ago
Adversarial AI Offensive Security Analyst
locations
3 Locations
time type
Full time
posted on
Posted 7 Days Ago
time left to apply
End Date: June 22, 2026 (5 days left to apply)
Cloud Security Specialist (IAM & Cloud Controls)
locations
3 Locations
time type
Full time
posted on
Posted 28 Days Ago
time left to apply
End Date: June 30, 2026 (13 days left to apply)
View All 5 Jobs
About Us
Vanguard, one of the world's leading investment management companies, serves individual investors, institutions, employer-sponsored retirement plans, and financial professionals. We have a diverse and talented crew with a culture that promotes teamwork, along with an unwavering focus on serving our clients' best interests.
This website uses "cookies" to distinguish you from other users. A cookie is a small file of letters and numbers placed on your computer or device. This helps us to provide you with a good experience when you browse our website and also allows us to improve our site and services. The cookies are stored locally on your computer or mobile device. To accept cookies you can continue browsing as normal. Or you can go to ourPrivacy Policy (https://www.vanguardjobs.com/site-privacy-policy/) to read more information and learn how to change your preferences.
Read More