Cyber Threat Intelligence - Technical Analysis and Investigations Lead - VP
Morgan Stanley
We’re seeking someone to join our team as a Cyber Threat Intelligence - Technical Analysis and Investigations Lead in Technology to lead technical threat investigations, track sophisticated adversaries, and operationalize technical intelligence for detection and response.
In the Technology division, we leverage innovation to build the connections and capabilities that power our Firm, enabling our clients and colleagues to redefine markets and shape the future of our communities.
This is a Cyber Security Engineering position at VP which is part of the job family responsible for providing specialist cyber expertise and creating solutions that protect the organization's systems and networks against actual and potential security threats and vulnerabilities.
Since 1935, Morgan Stanley is known as a global leader in financial services, continuously evolving and innovating to better serve our clients and our communities in more than 40 countries around the world.
What you'll do in the role:
Lead proactive threat hunts and advanced discovery to identify adversary campaigns, capabilities, infrastructure, and targets using internal collection, OSINT, and vendor intelligence.
Research and track advanced threat actors and malware, maintaining deep technical understanding of adversary TTPs and tradecraft.Author high-impact technical threat intelligence products and reports tailored to both operational teams and senior stakeholders.
Develop and advance investigative tradecraft, analytic techniques, and automation to improve speed, repeatability, and fidelity of analytic workflows (including Python-based analytics).
Enrich, triage, and characterize threat insights and indicators by leveraging open-source and commercial tooling, and curate high-fidelity IOCs for operational use.Partner with threat hunting and security response teams to translate technical intelligence into detection opportunities, mitigations, and control validation activities.
Maintain and curate threat profiles aligned to areas of responsibility, producing actionable technical intelligence for proactive detection and discovery. {D Part 2: Scope of Role What you'll bring pre-set content based on tier framework + role-specific bullets
What you'll bring to the role:Minimum 5 years of experience in cyber threat intelligence, cyber discovery, or cybersecurity investigations, with a track record leading both teams and technical investigations and producing actionable outcomes.
Expertise in tracking advanced threat actors and malware using frameworks such as MITRE ATT&CK and/or the Diamond Model to characterize campaigns, capabilities, and infrastructure.
-Proficiency in Python and scripting to automate investigative workflows and develop analytics (e.g., Jupyter notebooks).Experience with large-scale data analysis and security telemetry tooling to identify patterns, quantify trends, and support analytic judgments.
Experience with SIEM platforms and interpreting network/endpoint logs to progress investigations from hypothesis to evidence-based conclusions.
Ability to communicate clearly across technical and non-technical audiences, including writing technical reporting and briefing investigative judgments and mitigations.
Nice to have : GIAC GCTI, CISSP, CASP certifications
We are committed to maintaining the first-class service and high standard of excellence that have defined Morgan Stanley for over 89 years. Our values - putting clients first, doing the right thing, leading with exceptional ideas, committing to diversity and inclusion, and giving back - aren’t just beliefs, they guide the decisions we make every day to do what's best for our clients,
communities and more than 80,000 employees in 1,200 offices across 42 countries. At Morgan Stanley, you’ll find an opportunity to work alongside the best and the brightest, in an environment where you are supported and empowered. Our teams are relentless collaborators and creative thinkers, fueled by their diverse backgrounds and experiences. We are proud to support our employees and their families at every point along their work-life journey, offering some of the most attractive and comprehensive employee benefits and perks in the industry. There’s also ample opportunity to move about the business for those who show passion and grit in their work. To learn more about our offices across the globe, please copy and paste
into your browser.
WHAT YOU CAN EXPECT FROM MORGAN STANLEY:
At Morgan Stanley, we raise, manage and allocate capital for our clients – helping them reach their goals. We do it in a way that’s differentiated – and we’ve done that for 90 years. Our values - putting clients first, doing the right thing, leading with exceptional ideas, committing to diversity and inclusion, and giving back - aren’t just beliefs, they guide the decisions we make every day to do what's best for our clients, communities and more than 80,000 employees in 1,200 offices across 42 countries. At Morgan Stanley, you’ll find an opportunity to work alongside the best and the brightest, in an environment where you are supported and empowered. Our teams are relentless collaborators and creative thinkers, fueled by their diverse backgrounds and experiences. We are proud to support our employees and their families at every point along their work-life journey, offering some of the most attractive and comprehensive employee benefits and perks in the industry. There’s also ample opportunity to move about the business for those who show passion and grit in their work.
To learn more about our offices across the globe, please copy and paste into your browser.
Salary range for the position: 135,000 and 190,000 per year. The successful candidate may be eligible for an annual discretionary incentive compensation award. The successful candidate may be eligible to participate in the relevant business unit’s incentive compensation plan, which also may include a discretionary bonus component. Morgan Stanley offers a full spectrum of benefits, including Medical, Prescription Drug, Dental, Vision, Health Savings Account, Dependent Day Care Savings Account, Life Insurance, Disability and Other Insurance Plans, Paid Time Off (including Sick Leave consistent with state and local law, Parental Leave and X Vacation Days annually), 10 Paid Holidays, 401(k), and Short/Long Term Disability, in addition to other special perks reserved for our employees. Please visit mybenefits.morganstanley.com to learn more about our benefit offerings.
Morgan Stanley is an equal opportunity employer committed to building and maintaining a workforce that is diverse in experience and background. Our recruiting efforts reflect our strong commitment to a culture of inclusion, where individuals are hired, developed, and advanced based on their skills and talents.
Our workforce reflects a broad cross-section of the global communities in which we operate, bringing a variety of backgrounds, talents, perspectives, and experiences.
For more information, please visit: .
- ...is seeking a OED Technical Lead to direct all... ...(OED) at the DoD Cyber Crime Center (DC3... ...manage a team of intelligence analysts producing... ...supporting cyber investigations and operations, and... ...against cyber threats. Responsibilities... ...all-source cyber analysis, CADO-IS...CyberIntelligenceFor contractors
$146k - $234k
...Technical Lead The Technical Lead will serve as a project lead... ...sharply focused technical and cyber intelligence analysis. Leveraging multiple... ...intelligence in support of cyber investigations and operations ~5 years... ..., and operational cyber threat products ~5 years of...CyberIntelligenceFull timeContract workFor contractorsMonday to FridayShift work- ...Tharros is seeking a DCISE Technical Lead to serve as the project... ...) operations at the DoD Cyber Crime Center (DC3). This... ...will direct a team of cyber threat analysts and intelligence professionals who produce... ...malware triage and analysis, manage partner engagement...CyberIntelligenceFor contractors
$112k - $179k
...Cyber Threat Analyst Job Locations US-MD... ...Intel and Threat Analysis Clearance... ...concepts supporting intelligence analysis requirements... ...Procedures (TTPs) Technical Skills: Proficiency... ...galaxy. As the world's leading mission capability integrator...CyberIntelligenceFull timeContract workMonday to FridayShift work- ...Corporation is seeking a Senior Technical CI Analytical Support to support The U.S. Army Intelligence and Security Command (INSCOM)... ...shall perform all-source CI threat analysis tailored to the planning and... ...to: TSCM, TEMPEST, and Cyber activities. Identifies, monitors...CyberIntelligenceContract workLocal area
- ...Cybersecurity Engineer / Site Lead Job Title: Senior... ...Program: DoD Defense Cyber Crime Center Systems Engineering and Technical Advisory Support... ...engineering, cyber operations analysis, architecture support,... ...structured analysis, intelligence-informed technical assessments...CyberIntelligenceFull timeContract workFor contractors
- ...Engineering and Technical Assistance (... ...Department of Defense Cyber Crime Center (... ...against cyber threats. They act as a... ...defenses, investigate... ...support cyber crime analysis efforts. What... ...analysis and intelligence support usingall... .... ~5+ years leading cybersecurity...CyberIntelligenceFull timePart timeFor contractors
- ...Cyber Engineer Pioneers. Innovators.... ...exploitation, operational intelligence, counter unmanned... .... Perform analysis and reverse... ...electronics. Perform investigation, evaluation, and... ...Ability to articulate technical concepts and... ...penetration testing or threat hunting...CyberIntelligence
- ...incidents and conduct threat analysis Identify and act... ...Perform detailed investigation and response... ...driven analysis on cyber activity/ threats... ...Collaborates with technical and threat intelligence analysts to provide... ...are passed to SOC Lead, Incident Management...CyberIntelligenceWork at officeRemote work
$60 - $64 per hour
...engineer will also lead and mentor SOC... .... Provide technical expertise and... ...posture. Investigate and implement... ...counter evolving threats. Provide... ...post-incident analysis and response strategies... ...of evolving cyber threats and... ...and threat intelligence....CyberIntelligenceWork at office- ...exploitation, operational intelligence, counter unmanned... ...systems and cyber security. TechINT... ...Conduct EOD analysis and assist in the... ...disseminate relevant threat information.... ...conduct Weapons Technical Intelligence (WTI... ...furtherance of an investigation, proceeding, hearing...CyberIntelligenceRemote work
- ...Cyber Exploitation Specialist Pioneers... ..., operational intelligence, counter unmanned... ...Description: Perform analysis and testing on a... .... Areas of technical interest include... ...engineering, and threat hunting. Perform... ...electronics. Perform investigation, evaluation, and...CyberIntelligenceContract work
- ...exploitation, operational intelligence, counter unmanned... ...systems and cyber security. TechINT... ...is seeking an Technical Analyst in Supply... ...research and analysis in accordance with... ...Strong analytical and investigative skills, with the... ...data to identify threats and...CyberIntelligenceFull timeRemote work
$3,000 per month
...Rotary Mission Systems Cyber & Intelligence invites you to step... ...on the forefront of threat protection and proactive... ...• Serve as team lead at the level appropriate... ...work processes; and investigate problem areas • Modify... ..., using scientific analysis and mathematical models...CyberIntelligenceRelocation package- ...exploitation, operational intelligence, counter... ...systems and cyber security.... ...to uncover new leads significant to the threat networks and communicate... ...to perform analysis on the latest Commercial... ...community and technical community.... ...of an investigation, proceeding, hearing...CyberIntelligenceFull timeWork experience placementRemote work
- ...candidates for a variety of technical roles. - Understand the cleared... ...tools and procedures. - Lead training and disseminate best... ...but not limited to Open-source intelligence, x-ray searching, Boolean... ...external market and internal value analysis including seniority and merit...IntelligenceMinimum wageContract workTemporary workWork experience placement
$165k - $185k
...Cyber Systems Engineer Location: Linthicum... ...Choice within the Intelligence, Defense, and... ...use their industry leading knowledge to provide... ...the gap between technical and non-technical understanding of threats/vulnerabilities... ...and vulnerability analysis. Experience with...CyberIntelligence$140k - $160k
...Architect serves as a senior technical advisor responsible for... ...across emerging technologies, Cyber Risk Management, Zero... ...security capabilities, conducts threat-informed risk analysis, and strengthens overall... ...by incorporating threat intelligence and attack surface...CyberIntelligenceLive in$146k - $234k
...ISSO) to join our Cyber Mission business... ...contracts within the Intelligence Community. This... ...risk assessment analysis to support... ...government security investigation and must meet eligibility... .... As the world's leading mission... ...and nontraditional threats across all domains...CyberIntelligenceContract workPart timeFlexible hoursShift work$128.2k - $225.98k
...Lockheed Martin, Cyber & Intelligence invites you to step... ...the forefront of threat protection and... ...• Serve as team lead at the level appropriate... ...processes; and investigate problem areas •... ...using scientific analysis and mathematical... ...• Serve as the technical lead of multiple...CyberIntelligenceFull timeTemporary workWork experience placementWork at officeFlexible hours$3,000 per month
...Mission Systems Cyber & Intelligence invites you to step... ...the forefront of threat protection and... ...• Serve as team lead at the level appropriate... ...processes; and investigate problem areas •... ...using scientific analysis and mathematical... ...a world-class technical community. Our...CyberIntelligenceFull timeTemporary workWork experience placementWork at officeFlexible hours- ...Job Title Mid. All-Source Analysis CI Cyber Intelligence Analyst (All Source Analyst) Location... ...performing analysis of foreign cyber threats and; ~(2) or more years of experience... ...CI analysis, operations, or investigations and; ~ Completion of the Defense Cyber...CyberIntelligenceFull timeContract workWork experience placement
$75.2k - $158.1k
...know basis, concerning threat UAS TTPs, technology, and... ...to exploit various intelligence disciplines (e.g. TECHSIGINT, SIGINT/CYBER, MASINT) from all levels... ...create briefs, products, technical reports and executive... ...Experience with CUAS analysis, reporting & staff or higher...CyberIntelligenceContract workWork experience placementImmediate startRemote workFlexible hours- ...Mid-Level All-Source Analysis CI Cyber Intelligence Analyst Celestar Corporation is seeking a Mid-Level... ...courses: Defense Cyber Investigations Training Academy (DCITA) Introduction... ...to assess foreign cyber collection threats to the US Army, DoD, and IC interests...CyberIntelligenceContract workFor contractorsWork experience placementLocal areaWorldwide
$135k - $216k
...Responsibilities Lead large and small technical projects; continuously optimize technical... ...quality, timeliness of cyber forensic products and... ...from requirements gathering, analysis and verification through design... ...and nontraditional threats across all domains: land, sea...CyberContract workFor subcontractorShift work- CyberLinx Solutions LLC, based in Baltimore, MD, is seeking a full-time AI Cybersecurity Analyst specializing in GenAI and Threat Intelligence. The candidate will utilize AI technologies to enhance cybersecurity measures, automate detection processes, and develop response...CyberIntelligenceFull time
$125.12k - $187.68k
...Overview About M.C. Dean M.C. Dean is Building Intelligence. We design, build, operate, and maintain cyber-physical solutions for the nation's most mission-... ...are committed to building the next generation of technical leaders in electrical, engineering, and...CyberIntelligenceFor contractors- AI Cybersecurity Analyst (GenAI / Threat Intelligence) About the Organization CyberLinx Solutions... ..., software, system administration, technical writing and help desk support. CyberLinx... ...threat intelligence, accelerate analysis, and provide actionable remediation guidance...IntelligenceFull time
- Technical Writer - Maintenance Procedure Card (MPC) R&K Enterprise... ..., Information Assurance, Cyber Security, Project and Program... ...Maintenance Development, Maintenance Analysis, System Engineering... ...Time Clearance: Tier 1 (NACI) Investigative Clearance/Background Start...CyberPermanent employmentFull timeContract workFor contractorsWork at officeRemote work
$108.48k - $184.41k
...We are seeking a Cyber Security Lead to support enterprise IT initiatives... ...• Support identification, analysis, and tracking of security and... ...Contribute to governance reviews, technical assessments,... ...commitment, the use of artificial intelligence (AI) tools to generate or assist...CyberIntelligenceFull timeContract workWork experience placementWork at office
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Threat Intelligence - Technical Analysis and Investigations Lead - VP. Be the first to apply!
- technical leader Baltimore, MD
- technical lead Baltimore, MD
- vice president research and development Baltimore, MD
- vp customer experience Baltimore, MD
- vice president nursing Baltimore, MD
- vp customer success Baltimore, MD
- vice president strategic initiatives Baltimore, MD
- vp internal audit Baltimore, MD
- vice president of application development Baltimore, MD
- vp support Baltimore, MD


