Security Design Assessment Lead (Hybrid)
Montreal 700, Canada
Morgan Stanley
Discover how we help individuals, families, institutions and governments raise, manage and distribute the capital they need to achieve their goals.We're seeking someone to join our SecDesign team as a Security Design Assessment Lead in Cyber to serve as a subject matter expert that is working on multiple security architecture and design assessments spanning multiple classes of technologies.
In the Technology division, we leverage innovation to build the connections and capabilities that power our Firm, enabling our clients and colleagues to redefine markets and shape the future of our communities. This is a Lead Cyber Security Engineering position at Vice-President level, which is part of the job family responsible for providing specialist cyber expertise and creating solutions that protect the organization's systems and networks against actual and potential security threats and vulnerabilities.
Since 1935, Morgan Stanley is known as a global leader in financial services, always evolving and innovating to better serve our clients and our communities in more than 40 countries around the world.
Interested in joining a team that’s eager to create, innovate and make an impact on the world? Read on…
What you’ll do in the role:
Collaborate with business stakeholders to ensure a cohesive approach to security posture and risk management.
Develop and execute a comprehensive risk and resiliency management strategy aligned with organizational goals.
Develop security metrics and reporting for senior leadership.
Drive the adoption of security best practices and ensure compliance with security policies.
Ensure compliance with industry standards and regulations.
Ensure the effective identification, assessment, and mitigation of risks across the technology function.
Manage a team of security integrators.
Provide strategic guidance and thought leadership on emerging risks and resiliency challenge.
What you’ll bring to the role:
6+ years of experience in cybersecurity or any relevant experience.
Experience conducting assessments and providing technology risk/requirements.
Knowledge in application security (i.e., OWASP, DevOps, Pen Testing, Cloud Audit, etc.)
Knowledge in network security (i.e., Segmentation, Firewalls/Routers, Data Flows, Proxies, API Gateways, etc.)
Understanding of IAM principles (i.e., Cloud IAM, OIDC/OAuth, mTLS, SAML, Kerberos, NHC, Credential Vaults, etc.)
Knowledge of cryptography (i.e., Data at Rest and in Transit, Key Management, Certificates, Symmetric/Asymmetric, Application vs. Whole Disk Encryption, etc.)
Experience in leading deep dives with the requestor of the assessment.
Ability to review security reference architecture (security blueprints) and conduct updates/enhancements.
Experience in participating in various Operational and Technology Risk governance processes.
Ability to assist in identifying new areas and opportunities of technology investment for the firm.
At Morgan Stanley Montreal, we support the Firm’s global businesses and infrastructure with cutting edge technology and innovation. The multi-faceted and highly technical Montreal team plays a critical role in building and maintaining our leading technology platform, including electronic trading, algorithm trading, cloud engineering, infrastructure, cybersecurity and AI/ML. Morgan Stanley has been rooted in the Montreal community since 2008 and is considered a leading employer among the area’s highly skilled technology talent. There’s ample opportunity to move across the businesses for those who show passion and grit in their work.
All our positions are located in Montreal, Quebec. We offer a hybrid work environment, combining remote work and attendance in the office.
Knowledge of French and English is required.
Build a career with impact. Visit morganstanley.com for more information.
WHAT YOU CAN EXPECT FROM MORGAN STANLEY:
We are committed to maintaining the first-class service and high standard of excellence that have defined Morgan Stanley for over 89 years. Our values - putting clients first, doing the right thing, leading with exceptional ideas, committing to diversity and inclusion, and giving back - aren’t just beliefs, they guide the decisions we make every day to do what's best for our clients, communities and more than 80,000 employees in 1,200 offices across 42 countries. At Morgan Stanley, you’ll find an opportunity to work alongside the best and the brightest, in an environment where you are supported and empowered. Our teams are relentless collaborators and creative thinkers, fueled by their diverse backgrounds and experiences. We are proud to support our employees and their families at every point along their work-life journey, offering some of the most attractive and comprehensive employee benefits and perks in the industry. There’s also ample opportunity to move about the business for those who show passion and grit in their work.
To learn more about our offices across the globe, please copy and paste https://www.morganstanley.com/about-us/global-offices into your browser.
Morgan Stanley is an equal opportunities employer. We work to provide a supportive and inclusive environment where all individuals can maximize their full potential.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: APIs Application security Cloud Compliance Cryptography DevOps Encryption Firewalls Governance IAM Kerberos Network security OWASP Pentesting Risk management SAML Strategy Vulnerabilities
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.