Internal Audit Executive Director - Global Audit Lead, Cybersecurity, Information Security & Cyber Resilience
$165k - $275kMorgan Stanley
The cyber risk landscape is changing rapidly, and the Firm requires audit leadership equipped to meet the moment. We are seeking an Executive Director to lead internal audit technology coverage across the global Firm and its banking entities, including Morgan Stanley Bank, N.A. (MSBNA) and Morgan Stanley Private Bank, N.A. (MSPBNA). This role demands a forward-looking leader who can address both today's threats and the emerging risks now reshaping cybersecurity, information security, and cyber resilience — with deep cyber risk expertise and a strong understanding of how artificial intelligence, agentic and frontier AI models, cloud transformation, and digital assets are actively changing the risk landscape and regulatory expectations. The successful candidate will translate these developments into practical, risk-based audit strategies, deliver insightful challenge to management, and evolve the Firm's assurance approach to address current and emerging threats.The Internal Audit Division (IAD) drives attention and resources to vulnerabilities by providing an independent and well-informed view and impactful messages about the most important risks facing our Firm. This is accomplished by performing a range of assurance activities to independently assess the quality and effectiveness of Morgan Stanley’s system of internal control, including risk management and governance systems and processes. IAD serves as an objective and independent function within the Firm’s risk management framework to foster continual improvement of risk management processes. This is an Executive Director (P6) level position within the Technical Specialist function, which is responsible for providing extensive subject matter expertise and reinforcing the ability of business and technology audit teams to appropriately assess risk and determine and execute coverage.Since 1935, Morgan Stanley is known as a global leader in financial services, always evolving and innovating to better serve our clients and our communities in more than 40 countries around the world.What you’ll do in the rolePrioritize and lead coverage of emerging risks related to artificial intelligence and frontier models — including generative and agentic AI — assessing build time, run time, and life cycle controls, data protection, identity and entitlements for autonomous agents, and the expanded attack surface these capabilities create, as well as adversaries’ growing use of AI to accelerate and scale attacks.Provide coverage of the idiosyncratic risks arising from cryptocurrency and digital assets, including digital asset custody, private key generation and lifecycle management, and the security of both online (network-connected) and offline (air-gapped) custody infrastructure — highlighting the associated cyber threats such as private key compromise, transaction and address manipulation, smart contract exploitation, and the irreversible loss of assets.Assess quantum computing and post-quantum cryptography readiness, and other frontier technology risks, ensuring these are reflected in the audit plan and in the Firm’s forward-looking resilience posture.Monitor the intensifying threat landscape — including advanced attack techniques and regulatory change — and continuously factor emerging threats into audit scoping and assurance coverage.Provide independent assurance over the design and operating effectiveness of the controls that protect the Firm’s and Banks’ technology environment, customer data, and critical business servicesSet and lead the multi-year, risk-based audit strategy for cybersecurity, information security, and cyber resilience across the Firm and its Banks, spanning the full technology stack (infrastructure, network, platform, application, and data layers) and each business unit to form an integrated, Firm-wide view of control effectiveness, and how cyber threats, information loss, and a cyber attach could affect business lines, critical services, and legal entities across the Firm.Direct execution of the audit plan across the core cyber and information security domains — identity and access management, endpoint security, network security, data protection, threat detection and response, and vulnerability management.Lead assurance activities assessing cyber resilience capabilities, including incident response, disaster recovery, business continuity, and third-party/vendor security.Evaluate compliance with regulatory expectations (e.g., FFIEC, OCC, FDIC, NYDFS, GLBA, RGF, DORA) and industry frameworks (CRI Profile, NIST CSF, ISO 27001).Oversee root cause analysis on control failures and audit findings, and track remediation to closure.Comprehensively articulate actionable insights regarding the criticality and impact of cyber risk, and how well it is managed, to senior management and regulators. Prepare materials for the Chief Audit Executive’s updates to the Audit Committee and the Board,Coordinate with second-line risk and compliance functions and with external auditors and regulators, and collaborate with global peers to identify risk themes and implications across business segments and legal entities.Mentor and develop audit staff and manage a global team; help inform and address talent needs and identify stretch and development opportunities for team members.What you’ll bring to the roleAdvanced understanding of cybersecurity, information security, and cyber resilience risks and the relevant regulations, including banking regulatory requirements.Experience assessing emerging technology risks and their control implications — including AI and agentic AI, frontier models, cryptocurrency and digital asset custody, and quantum/post-quantum cryptography — and the ability to translate a rapidly changing threat landscape into practical audit coverage.Strong knowledge of cybersecurity frameworks (NIST CSF, ISO 27001, CRI Profile) and experience auditing identity and access management, cloud security, and network architecture.Expertise in audit principles, methodology, tools, and processes (e.g., risk assessments, planning, testing, reporting, and continuous monitoring).Ability to analyze data and prioritize coverage and assurance activities based on the criticality of risk.Ability to articulate risk and impact clearly and succinctly to different audiences, including senior stakeholders, the Board, and regulators.Ability to inspire and support others to do their best work through active coaching, feedback, and development opportunities, and by ensuring trust and inclusion among team members.Experience in overseeing resource utilization and monitoring progress against deliverables.A bachelor’s degree in Information Security, Computer Science, or a related field.At least 12-15 years’ relevant experience in IT/cyber audit, information security, or risk management — ideally in banking or financial services — would generally be expected to fulfill the skills required for this role.Relevant certifications (e.g., CISA, CISSP, CISM, or equivalent) preferred.Preferred qualificationsExperience with incident response or red team/penetration testing programs.Familiarity with the MITRE ATT&CK framework.Prior experience at a large financial institution or a Big 4 consulting firm.WHAT YOU CAN EXPECT FROM MORGAN STANLEYWe are committed to maintaining the first-class service and high standard of excellence that have defined Morgan Stanley for over 89 years. Our values — putting clients first, doing the right thing, leading with exceptional ideas, committing to diversity and inclusion, and giving back — aren’t just beliefs, they guide the decisions we make every day to do what’s best for our clients, communities and more than 80,000 employees in 1,200 offices across 42 countries. At Morgan Stanley, you’ll find an opportunity to work alongside the best and the brightest, in an environment where you are supported and empowered. Our teams are relentless collaborators and creative thinkers, fueled by their diverse backgrounds and experiences. We are proud to support our employees and their families at every point along their work-life journey, offering some of the most attractive and comprehensive employee benefits and perks in the industry. There’s also ample opportunity to move about the business for those who show passion and grit in their work.Expected base pay rates for the role will be between $165,000 and $275,000 per year at the commencement of employment. However, base pay if hired will be determined on an individualized basis and is only part of the total compensation package, which, depending on the position, may also include commission earnings, incentive compensation, discretionary bonuses, other short and long-term incentive packages, and other Morgan Stanley sponsored benefit programs.Morgan Stanley’s goal is to build and maintain a workforce that is diverse in experience and background but uniform in reflecting our standards of integrity and excellence. Consequently, our recruiting efforts reflect our desire to attract and retain the best and brightest from all talent pools. We want to be the first choice for prospective employees.It is the policy of the Firm to ensure equal employment opportunity without discrimination or harassment on the basis of race, color, religion, creed, age, sex, sex stereotype, gender, gender identity or expression, transgender, sexual orientation, national origin, citizenship, disability, marital and civil partnership/union status, pregnancy, veteran or military service status, genetic information, or any other characteristic protected by law.Morgan Stanley is an equal opportunity employer committed to diversifying its workforce (M/F/Disability/Vet).WHAT YOU CAN EXPECT FROM MORGAN STANLEY: At Morgan Stanley, we raise, manage and allocate capital for our clients – helping them reach their goals. We do it in a way that’s differentiated – and we’ve done that for 90 years. Our values - putting clients first, doing the right thing, leading with exceptional ideas, committing to diversity and inclusion, and giving back - aren’t just beliefs, they guide the decisions we make every day to do what's best for our clients, communities and more than 80,000 employees in 1,200 offices across 42 countries. At Morgan Stanley, you’ll find an opportunity to work alongside the best and the brightest, in an environment where you are supported and empowered. Our teams are relentless collaborators and creative thinkers, fueled by their diverse backgrounds and experiences. We are proud to support our employees and their families at every point along their work-life journey, offering some of the most attractive and comprehensive employee benefits and perks in the industry. There’s also ample opportunity to move about the business for those who show passion and grit in their work. To learn more about our offices across the globe, please copy and paste into your browser.Morgan Stanley is an equal opportunity employer committed to building and maintaining a workforce that is diverse in experience and background. Our recruiting efforts reflect our strong commitment to a culture of inclusion, where individuals are hired, developed, and advanced based on their skills and talents.Our workforce reflects a broad cross-section of the global communities in which we operate, bringing a variety of backgrounds, talents, perspectives, and experiences.For more information, please visit: .Employment Type:Full timeJob Level:Executive DirectorPosted Date:Oct 01, 2026ATS Job Description Test:Department:Technical Specialist
$105.4k - $207.8k
...Deloitte Cyber team understands... ...face in cybersecurity. Join our... ...with resilience, grow... ...manage to secure success.... ...open-source information to... ...malware (executables, scripts,... ...doing ticket audits and reviewing... ...to lead and coordinate... ...and internal stakeholder... ...inquiries to the Global Call...CyberLocal areaVisa sponsorshipShift workRotating shift$115k - $140k
## Senior IT Internal AuditorApplyremote... ...to join our **Global IT Internal Audit** team.*This... ...Controls, Cybersecurity, and IT Infrastructure... ....* Certified Information Systems... ...including network security), and IT... ...Digital Operational Resilience Act (DORA) on cyber resilience,...CyberFull timeWork at officeFlexible hours- ...Morgan Stanley seeks an Executive Director to lead internal audit technology coverage across the global Firm and its banking entities. You will translate emerging cyber risks, AI developments, and frontier... ...and shaping the Firm's resilience posture. The role requires...Cyber
$226k - $339.7k
...Vice President, Cyber Exposure Management... ...President to lead our global Cyber Exposure Management... .... This executive will drive modernization... ...shape long-term security architecture... ...to the Chief Information Security Officer... ...Lead multi-year cybersecurity modernization...CyberWork at office$82.6k - $162.8k
...Consultant - Technology Resilience Accelerate your... ...relationships * Ability to lead projects or... ...decision-making, and execute change in complex environments... ..., Computer Science, Information Systems, Cyber Security, or equivalent... ...inquiries to the Global Call Center (GCC) at...CyberLocal areaVisa sponsorship$120k - $210k
...President, Cyber, Technology and Information Security (CTIS)... ...Oversight Lead in the CTIS... ...including IT resilience,... ...known as a global leader in... ...the Firm's cybersecurity and technology... ...Risk, Legal, Audit, and business... ..., internal audits, and... ...preparing executive-level risk...CyberFull timeTemporary workWork experience placementFlexible hours- ...Financial Solutions is seeking a Senior IT Audit Director to lead the global technology audit plan across a fintech... ...requires deep expertise across ITGC, cybersecurity, cloud, and SDLC, plus experience with GRC tools and executive-level reporting. #J-18808-Ljbffr...Cyber
$141.2k - $278.3k
...services globally across strategy... ...Deloitte audit client, so... ...Microsoft Security, and... ...community.Lead architecture... ...scalable, resilient, and cost-... ...guidance in internal and client... ..., cyber, engineering... ...shaping, executive communication... ...Associate, Cybersecurity Architect...CyberFull timeLocal areaFlexible hours- ...Vice President, Information Security Audit Risk Assessments & Governance... ...the Company A global financial-services... ...pivotal in managing cybersecurity audits, risk assessments... ...a liaison between internal audit and... ...owners, and supporting cyber risk assessments and...Cyber
- ...Communications Lead to support Cyber, Data, Risk & Resilience (CDRR), a global Technology... ...of cybersecurity, data, technology... ...that inform, engage, and... ...is a high-execution, content-... ...-week internal threat awareness... ...Maintain audit-ready... ...information security alerts and...CyberWork at officeShift work
- ...The Security Executive Council is seeking a Group Chief Information Security Officer to lead the organization’s enterprise security program across the US and UK. You will drive... ..., risk, incident response, and enterprise resilience in a rapidly evolving threat landscape....Cyber
$65 - $70 per hour
...Title: Senior Internal Communications Lead Location... ...Lead, Cyber, Data, Risk & Resilience Client is... ...(CDRR), a global Technology... ...intersection of cybersecurity, data,... ...communications that inform, engage,... ..., channel execution, quality... ...information security alerts and...CyberFull timeContract workTemporary workWork at officeWorldwideShift work$105k - $135k
...managed IT, cybersecurity, AI, and... ...started as a security company, and... ...Quadrant Information Security, combines... ...for executives, and the judgment... ...the Senior Director of Cyber Services... ...to internal resources while... ...acting as the lead on security... ...: unified audit log analysis...CyberContract workImmediate startRemote work$82.6k - $162.8k
...Our Deloitte Cyber team understands... ...face in cybersecurity. Join our team... ...operate with resilience, grow with confidence... ...manage to secure success.Recruiting... ...to lead projects or workstreamsAbility... ...Security, Information Security,... ...inquiries to the Global Call Center (GCC...CyberLocal areaVisa sponsorship$150k - $210k
...organisation, the Cyber Data Risk and Resiliency (CDRR)... ...and AI-informed security practices. CDRR executes first line... ...Firm's Cybersecurity Strategy by... ...malicious internal and external... ..., and leading the implementation... ...part of a Global (North... ..., improve auditability, and...CyberTemporary work$144.25k - $256.25k
...delivering global capabilities... ...is our Information Security organization... .... Security.Director, Cybersecurity IAM Engineering... ..., leading high-performing... ...ArchitectureDefine and execute the... ...scalable, resilient, secure, and... ...and internal security policies... ...identity-related audit findings...CyberVisa sponsorship$105.4k - $207.8k
...Summary Cyber Palo Alto Networks Security Engineer/... ...industry leading services requires... ...face in cybersecurity. Join our team... ...with resilience, grow with confidence... ...security information and event management... ...for executive and non-technical... ...to the Global Call Center...CyberWork experience placementLocal areaRemote work- ...As the world’s leading vendor of Cyber Security, facing the... ...ve assembled a global team of the most... ...Americas Best Cybersecurity Companies. We'... ..., boards of directors, and executive leadership teams... ...enhance cyber resilience, modernize... ...customers and internal stakeholders effectively...Cyber
$105.4k - $207.8k
...Our Deloitte Cyber team... ...businesses face in cybersecurity. Join our team... ...with resilience, grow with confidence... ...manage to secure success.... ...analyze malware (executables, scripts,... ...action plans for information risk events... ...to Shift Lead/Engineering/... ...to the Global Call Center...CyberWork at officeLocal areaVisa sponsorshipShift workRotating shift$105.4k - $207.8k
...Our Deloitte Cyber team understands... ...the evolving cybersecurity challenges and... ...and strengthen resilience. In this role,... ...-Generation Security Operations Center... ...for:Leading the design and... ...cybersecurity, information systems, or equivalent... ...(CISSP), Global Information Assurance...CyberWork experience placementLocal areaVisa sponsorship$105.4k - $207.8k
...AI Security Senior ConsultantOur... ...Deloitte Cyber team... ...businesses face in cybersecurity. Join our... ...with resilience, grow with... ...practitioners, lead project... ..., executive readouts,... ...Engineering, Information Technology... ...AI RMF), International Organization... ...inquiries to the Global Call...CyberLocal areaWorldwideVisa sponsorship$145k - $195k
...System Manager, Information Security (InfoSec)... ...and monitor cybersecurity risk while... ...making. Lead and oversee... ...focused on internal stakeholder... ...Provide executive-level reporting... ...culture of cyber accountability and resilience across the organization... ...external audits, and driving...CyberFull timeContract workPart timeWork experience placementFlexible hoursNight shift- ...technology execution to unlock... ...to global enterprises... ...scalable, secure, high-impact... ...cyber security... ...you will lead client-facing... ...Risk, and Audit leadership... ...(NY DFS) cybersecurity event notifications... ...and internal audit.... ...operational resilience guidance,... ...(Information Security,...CyberWork experience placement
$350k - $400k
...Group Chief Information Security Officer... ...) will lead and... ...phase of cybersecurity maturity... ...sophisticated global threat... ...resilience, and reducing... ...defense and audit-driven... ...with executive leadership... ...Board of Directors for both... ...major cyber incidents... ...function internally and...CyberContract workLocal areaShift work- ...Capital One is seeking a Sr. Manager, Cyber Security to lead information security governance, capability maturation, and risk transformation across... ...policies and standards. The role requires 7+ years in cybersecurity, cloud/infrastructure experience, and strong...Cyber
$72.8k - $130k
...Optum is a global organization... ...together. The Cyber Defense... ...product for our Security Operations Center... ...Enterprise Information Security and... ...Manager of Cybersecurity Software... ...and improve resiliency in system interactions... ...to drive execution of... ...experience leading projects focused...CyberMinimum wageFull timeWork experience placementLocal areaRemote work- ...AnnuallyIndustry BankingSelling Points Lead impactful audits across IT and cybersecurity domains, ensuring compliance.... ...Audit Manager OverviewThe Internal Audit Manager oversees audit planning and execution, focusing on IT and Information Security risks.Collaborate with senior...
- ...Managing Director, Global Markets Structured Solutions Sales, Institutional... ...About the Company Leading international bank Industry... ...science engineering cyber security sustainability and... ...leading the strategy and execution of providing and distributing...Cyber
$195k - $275k
...trading path and post execution plant. It represents the... ...for scalability, resiliency, recoverability, manageability... ...collaboratively with global teams and squads... ...Application teams and tech leads in understanding cases... .... For more information, please visit: ....Full timeTemporary work$82.6k - $162.8k
...Our Deloitte Cyber team understands... ...face in cybersecurity. Join our team... ...operate with resilience, grow with confidence... ...manage to secure success. Recruiting... ...incident information to identify detection... ...to lead projects or workstreamsAbility... ...(CySA+), or Global Information...CyberLocal areaVisa sponsorship
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Internal Audit Executive Director - Global Audit Lead, Cybersecurity, Information Security & Cyber Resilience. Be the first to apply!
- chief digital officer New York, NY
- executive director foundation New York, NY
- nonprofit board member New York, NY
- managing director of operations New York, NY
- chief executive New York, NY
- chief nursing officer New York, NY
- interim executive director New York, NY
- board member New York, NY
- housing executive New York, NY
- executive director of development New York, NY



