Morgan Stanley

Lead Application Security Engineer, VP

UK
Objective-C Kotlin Python JavaScript API Java Swift Kubernetes Docker Puppet React
Search for More Jobs Talk to a recruiter now 💪
Description

Lead Application Security Engineer, VP

 

3260839

 

Glasgow

 

We're seeking someone to join our Application Security team as a Lead Application Security Engineer in Cyber to implement Morgan Stanley specific security controls in the CI/CD security tools including but not limited to SAST, DAST and SCA applications, enabling a significant developer community.

 

In the Technology division, we leverage innovation to build the connections and capabilities that power our Firm, enabling our clients and colleagues to redefine markets and shape the future of our communities. This is a Software Engineering Manager position at VP, P5 level, which is part of the job family responsible for developing and maintaining software solutions that support business needs.

 

Morgan Stanley is an industry leader in financial services, known for mobilizing capital to help governments, corporations, institutions, and individuals around the world achieve their financial goals.

 

Interested in joining a team that's eager to create, innovate and make an impact on the world? Read on.

 

What You’ll Do:

·         Work with a team of engineers to implement Morgan Stanley specific security policies in the CI/CD security tools including but not limited to SAST, DAST and SCA applications.

·         Work with Development, DevOps and Security teams to identify and develop automated security and compliance capabilities in support of DevOps processes.

·         Define the security rules that needs to be adhered to at a code level in web and mobile applications written in Java, React, Objective C, SWIFT, Kotlin etc.

·         With your development background and security knowledge, provide security guidance to developers in the form secure coding standards and guidelines.

·         Support security standards, create templates and patterns to increase the efficiency and adoption of security program.

·         Work with our partners to implement, manage, and optimizing security measures within our GitHub repositories and pipelines to continuously improve code security and protect against vulnerabilities.

These skills will help you succeed in this role:

  • Bachelor’s degree with 10+ years of work experience in the IT field
  • 3+ years software development experience using Python
  • 3+ years of experience in the following:
    • OWASP Secure Coding Practices
    • Common software and web application security vulnerabilities
    • Application security scanning tools
    • Continuous Integration/Continuous Deployment (CI/CD) processes and concepts using relevant technologies and tools (e.g., Jenkins)
  • Ability to analyze large datasets for reporting and analysis.
  • Good understanding of Java, JavaScript.

Even Better If You Have

  • A degree in Cybersecurity or CISSP/CSSLP certification or keen desire to move to security field
  • Business acumen to support the implementation of SAST, DAST, SCA, Container Security, API Security and IaC tools across the enterprise
  • Ability to perform code reviews with minimal assistance
  • A self-starter, with a strong desire for learning new technologies and applying them to solve problems
  • Expertise in monitoring, alerting, reporting, data analysis is desired.
  • Experience with two or more of the application build environments like Jenkins, Gradle, Maven.
  • Familiarity with public cloud services a plus
  • Experience with two or more of the Secure SDLC tools like Github Advanced Security, Snyk, WhiteSource, Sonatype, X-Ray, Wiz.
  • Experience with Threat Analysis.
  • Experience with DevSecOps, Secure SDLC.
  • DevOps container/orchestration tools (Kubernetes, Docker, Puppet, etc) is a plus
  • Experience with evaluation, integration and onboard of application security tools is a plus

 

We are committed to maintaining the first-class service and high standard of excellence that have defined Morgan Stanley for over 85 years. At our foundation are five core values — putting clients first, doing the right thing, leading with exceptional ideas, committing to diversity and inclusion, and giving back — that guide our more than 80,000 employees in 1,200 offices across 42 countries.

 

At Morgan Stanley, you’ll find trusted colleagues, committed mentors and a culture that values diverse perspectives, individual intellect and cross-collaboration. Our Firm is differentiated by the calibre of our diverse team, while our company culture and commitment to inclusion define our legacy and shape our future, helping to strengthen our business and bring value to clients around the world. Learn more about how we put this commitment to action: morganstanley.com/diversity

 

We are proud to support our employees and their families at every point along their work-life journey, offering some of the most attractive and comprehensive employee benefits and perks in the industry.

 

At Morgan Stanley Glasgow, we support the Firm’s global Operations, Technology, Finance, Corporate, and Institutional Securities divisions. The Glasgow office, known for its excellence in process, client service & leadership, has led us to win numerous innovation and people awards. Morgan Stanley has been rooted in the Glasgow community since 2000, steadily contributing to the development of a vibrant local financial services and fintech industry. Everyone is encouraged to chart their own meaningful career and achieve goals with the support of our best-in-class training and development opportunities.

 

Morgan Stanley is an equal opportunities employer. We work to provide a supportive and inclusive environment where all individuals can maximize their full potential. Our skilled and creative workforce is comprised of individuals drawn from a broad cross section of the global communities in which we operate and who reflect a variety of backgrounds, talents, perspectives, and experiences. Our strong commitment to a culture of inclusion is evident through our constant focus on recruiting, developing, and advancing individuals based on their skills and talents.

 

Interested in flexible working opportunities? Morgan Stanley empowers employees to have greater freedom of choice through flexible working arrangements. Speak to our recruitment team to find out more.

 

Internal mobility can be a way to grow your career and realize your professional potential. Typically, you must be in your position for at least 18 months and performing satisfactorily before applying for another job at the Firm. Internal applicants can find out more regarding career navigation, mobility guidelines and policy on our employee portal by clicking here.

Morgan Stanley
Morgan Stanley
E-Commerce Hotel Information Technology Leisure Travel Web Development Asset Management Finance Financial Services Lending

0 applies

3 views

There are more than 50,000 engineering jobs:

Subscribe to membership and unlock all jobs

Engineering Jobs

60,000+ jobs from 4,500+ well-funded companies

Updated Daily

New jobs are added every day as companies post them

Refined Search

Use filters like skill, location, etc to narrow results

Become a member

🥳🥳🥳 401 happy customers and counting...

Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.

To try it out

For active job seekers

For those who are passive looking

Cancel anytime

Frequently Asked Questions

  • We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
  • We've got about 70,000 jobs from 5,000 vetted companies. No fake or sleazy jobs here!
  • We aggregate jobs from 5,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
  • We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
  • Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
  • Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
  • Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅

What Fellow Engineers Say