Morgan Stanley is seeking a Senior Cyber Automation Engineer to join the Firm's Cyber Incident Response Team (CIRT). Global CIRT is a 24/7 operation with members in key geographical locations performing incident response and remediation, campaign assessments, network and host-based forensics. What You will do in the role: Develop, implement, and maintain automated playbooks and workflows in the SOAR platform to streamline SOC operations. Integrate the SOAR with various security tools (SIEM, EDR, Email, etc.) using APIs and custom connectors. Automate incident triage, investigation, and response processes to reduce manual effort and improve response times. Collaborate with analysts and leadership to identify automation opportunities and optimize security operations. Maintain up-to-date knowledge of the threat landscape, security technologies and best practices. Build, tune, and maintain SOC detections within the SIEM, leveraging scripting and automation to ensure accurate and efficient threat detection. Document automation processes, playbooks, and integrations for knowledge sharing and compliance. What You will bring to the role: Candidates should have a genuine interest in cyber security and a good understanding of the tactics, techniques, and procedures of attackers. This role requires a detail-oriented critical thinker who can anticipate issues and solve problems.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level
Education Level
No Education Listed
Number of Employees
5,001-10,000 employees