Morgan Stanley is seeking a Senior Cyber Automation Engineer to join the Firm's Cyber Incident Response Team (CIRT). Global CIRT is a 24/7 operation with members in key geographical locations performing incident response and remediation, campaign assessments, network and host-based forensics. What You will do in the role: Develop, implement, and maintain automated playbooks and workflows in the SOAR platform to streamline SOC operations. Integrate the SOAR with various security tools (SIEM, EDR, Email, etc.) using APIs and custom connectors. Automate incident triage, investigation, and response processes to reduce manual effort and improve response times. Collaborate with analysts and leadership to identify automation opportunities and optimize security operations. Maintain up-to-date knowledge of the threat landscape, security technologies and best practices. Build, tune, and maintain SOC detections within the SIEM, leveraging scripting and automation to ensure accurate and efficient threat detection. Document automation processes, playbooks, and integrations for knowledge sharing and compliance.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior
Education Level
No Education Listed