Senior Cybersecurity Automation Engineer (Dir, P3)

Reposted 15 Days Ago
Be an Early Applicant
Baltimore, MD, USA
Hybrid
65K-125K Annually
Senior level
Fintech • Financial Services
The Role
The role involves developing and maintaining automated workflows in SOAR, integrating security tools, optimizing SOC operations, and collaborating on automation opportunities.
Summary Generated by Built In

Company Profile

Morgan Stanley is a leading global financial services firm providing a wide range of investment banking, securities, investment management and wealth management services. The Firm's employees serve clients worldwide including corporations, governments, and individuals from more than 1,200 offices in 41 countries.

As a market leader, the talent and passion of our people is critical to our success. Together, we share a common set of values rooted in integrity, excellence, and dedicated team ethic. Morgan Stanley can provide a superior foundation for building a professional career - a place for people to learn, to achieve and grow. A philosophy that balances personal lifestyles, perspectives, and needs is an important part of our culture.

Department Profile

The mission of the Cyber Data Risk and Resilience division is to ensure the Firm manages its global businesses and serves clients on a market-leading technology platform that is resilient, safe, efficient, smart, fast, and flexible.

The Cyber Incident Response Team (CIRT) is part of the Cyber Data Risk and Resilience division and manages the incident response capability to support day-to-day cross-enterprise event investigations and strategic input into security controls and countermeasures to proactively create better security for the Firm. The group's vision is to deliver programs that protect and enable the business, ensure secure delivery of services to clients, adjust to address the risks presented by an evolving threat landscape, and meet regulatory expectations.

Team Profile

Morgan Stanley is seeking a Senior Cyber Automation Engineer to join the Firm's Cyber Incident Response Team (CIRT). Global CIRT is a 24/7 operation with members in key geographical locations performing incident response and remediation, campaign assessments, network and host-based forensics.

What You will do in the role:

  • Develop, implement, and maintain automated playbooks and workflows in the SOAR platform to streamline SOC operations.

  • Integrate the SOAR with various security tools (SIEM, EDR, Email, etc.) using APIs and custom connectors.

  • Automate incident triage, investigation, and response processes to reduce manual effort and improve response times.

  • Collaborate with analysts and leadership to identify automation opportunities and optimize security operations.

  • Maintain up-to-date knowledge of the threat landscape, security technologies and best practices.

  • Build, tune, and maintain SOC detections within the SIEM, leveraging scripting and automation to ensure accurate and efficient threat detection.

  • Document automation processes, playbooks, and integrations for knowledge sharing and compliance.

What You will bring to the role:

Candidates should have a genuine interest in cyber security and a good understanding of the tactics, techniques, and procedures of attackers. This role requires a detail-oriented critical thinker who can anticipate issues and solve problems.

  • 3+ years of experience in developing, implementing, and maintaining automated workflows, and playbooks with SOAR platforms.

  • Advanced proficiency in scripting languages such as Python, PowerShell, and Bash for security automation and integration.

  • Experience integrating SOAR platforms with various security tools (SIEM, EDR, etc.) using APIs and custom connectors.

  • Ability to design, document and optimize automated processes and playbooks for SOC workflow.

  • Strong understanding of security operations concepts, triage and investigation, including event management, log collection, and workflow orchestration.

  • Excellent written and verbal communication skills for documenting automation processes and collaborating with SOC team members.

  • Experience working in a collaborative environment to identify automation opportunities and implement solutions.

  • Hands-on experience building, tuning, and maintaining SOC detections within SIEM platforms.

Desired skills:

  • Hands-on experience with SOAR platform administration and customization (e.g., developing custom integrations, connectors, and modules)

  • Familiarity with SIEM technologies, especially in relation to automation and orchestration.

  • Possesses knowledge or experience as a member of a cyber security team, enabling the identification of key focus areas.

  • Experience with security product assessments and automation of product evaluation workflows.

  • Experience working with LLM models.

  • Industry certifications related to automation, scripting, or SOAR platforms (e.g., GCIH, GNFA, GREM, or similar).

WHAT YOU CAN EXPECT FROM MORGAN STANLEY:

At Morgan Stanley, we raise, manage and allocate capital for our clients – helping them reach their goals. We do it in a way that’s differentiated – and we’ve done that for 90 years.  Our values - putting clients first, doing the right thing, leading with exceptional ideas, committing to diversity and inclusion, and giving back - aren’t just beliefs, they guide the decisions we make every day to do what's best for our clients, communities and more than 80,000 employees in 1,200 offices across 42 countries. At Morgan Stanley, you’ll find an opportunity to work alongside the best and the brightest, in an environment where you are supported and empowered. Our teams are relentless collaborators and creative thinkers, fueled by their diverse backgrounds and experiences. We are proud to support our employees and their families at every point along their work-life journey, offering some of the most attractive and comprehensive employee benefits and perks in the industry. There’s also ample opportunity to move about the business for those who show passion and grit in their work.

To learn more about our offices across the globe, please copy and paste https://www.morganstanley.com/about-us/global-offices​ into your browser.

Salary range for the position $65000 to $125,000 per year. The successful candidate may be eligible for an annual discretionary incentive compensation award. The successful candidate may be eligible to participate in the relevant business unit’s incentive compensation plan, which also may include a discretionary bonus component. Morgan Stanley offers a full spectrum of benefits, including Medical, Prescription Drug, Dental, Vision, Health Savings Account, Dependent Day Care Savings Account, Life Insurance, Disability and Other Insurance Plans, Paid Time Off (including Sick Leave consistent with state and local law, Parental Leave and X Vacation Days annually), 10 Paid Holidays, 401(k), and Short/Long Term Disability, in addition to other special perks reserved for our employees. Please visit mybenefits.morganstanley.com to learn more about our benefit offerings.

Morgan Stanley is an equal opportunity employer committed to building and maintaining a workforce that is diverse in experience and background.  Our recruiting efforts reflect our strong commitment to a culture of inclusion, where individuals are hired, developed, and advanced based on their skills and talents.

Our workforce reflects a broad cross-section of the global communities in which we operate, bringing a variety of backgrounds, talents, perspectives, and experiences.

For more information, please visit: https://www.morganstanley.com/people-opportunities/eeo.

Skills Required

  • 3+ years of experience in developing, implementing, and maintaining automated workflows and playbooks with SOAR platforms
  • Advanced proficiency in scripting languages such as Python, PowerShell, and Bash
  • Experience integrating SOAR platforms with various security tools
  • Strong understanding of security operations concepts
  • Excellent written and verbal communication skills
  • Hands-on experience building, tuning, and maintaining SOC detections within SIEM platforms

Morgan Stanley Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Morgan Stanley and has not been reviewed or approved by Morgan Stanley.

  • Parental & Family Support Family support is extensive, with paid parental leave for all parents, adoption and fertility assistance, backup childcare, and eldercare resources. Feedback suggests these programs meaningfully enhance the overall package and help with retention.
  • Healthcare Strength Health coverage spans medical, dental, vision, mental‑health access, care navigation, and expert second opinions. Convenient primary care access and condition‑specific support reinforce the depth of healthcare coverage.
  • Equity Value & Accessibility Equity compensation and stock ownership are positioned as core motivators that encourage commitment and retention. Feedback suggests education and support are provided to help participants manage equity and related financial benefits.

Morgan Stanley Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: New York, NY
87,899 Employees

What We Do

Morgan Stanley mobilizes capital to help governments, corporations, institutions and individuals around the world achieve their financial goals. For over 85 years, the firm’s reputation for using innovative thinking to solve complex problems has been well earned and rarely matched. A consistent industry leader throughout decades of dramatic change in modern finance, Morgan Stanley will continue to break new ground in advising, serving and providing new opportunities for its clients. Morgan Stanley is committed to maintaining the first-class service and high standard of excellence that have always defined the firm. At its foundation are five core values — putting clients first, doing the right thing, leading with exceptional ideas, committing to diversity and inclusion, and giving back — that guide its more than 60,000 employees in 1,200 offices across 41 countries.

Similar Jobs

Cox Enterprises Logo Cox Enterprises

Search Engine Optimization Specialist

Artificial Intelligence • Automotive • Greentech • Information Technology • Machine Learning • Software • Cybersecurity
Remote or Hybrid
United States
50000 Employees
22-33 Hourly

EchoStar Logo EchoStar

Proposal Writer

Aerospace • Cloud • Digital Media • Information Technology • Mobile • News + Entertainment • Generative AI
In-Office
Germantown, MD, USA
14500 Employees
67K-84K Annually

Pluralsight Logo Pluralsight

Product Manager

Edtech • Information Technology • Software
Remote or Hybrid
USA
1000 Employees
106K-139K Annually

TransUnion Logo TransUnion

Managers

Big Data • Fintech • Information Technology • Business Intelligence • Financial Services • Cybersecurity • Big Data Analytics
Remote or Hybrid
United States
13000 Employees

Similar Companies Hiring

Scotch Thumbnail
Artificial Intelligence • eCommerce • Fintech • Payments • Retail • Software • Analytics
US
35 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York City, NY
100 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account