Web Application Security Specialist, Dir, P3
Listed on 2025-12-20
-
IT/Tech
Cybersecurity, Systems Engineer
Since 1935, Morgan Stanley is known as a global leader in financial services, always evolving and innovating to better serve our clients and our communities in more than 40 countries around the world. In the Technology division, we leverage innovation to build the connections and capabilities that power our Firm, enabling our clients and colleagues to redefine markets and shape the future of our communities.
Position OverviewWe're seeking someone to join our Web Application Security team as a Web application Security specialist in Cyber and will be responsible for deploying and maintaining the Firm's internet facing web application security controls.
What you'll do in the role- Contribute to the function through complex project tasks and initiatives.
- Interact regularly with team members and occasionally leadership on a range of topics.
- Work with and guide global tech functions to onboard internet facing web apps to WAF.
- Review logs, implement tuning, web blocking etc. for onboarded applications.
- Mapping of IP addresses / FQDNs to services and applications (BA)
- Liaising with service owners and / or associated teams to gather relevant application data for WAF migration purposes (BA)
- Analyzing web behavior and performance to establish acceptable application thresholds (SME)
- Performing policy tuning in accordance with performance baseline (SME)
- Transitioning WAF from transparent to enforcement mode (SME)
- Data cleansing and validation
- Participate in proof of concepts for new security capabilities.
- Change management:
Prepare, document, implement and verify changes including communicate changes to end-users and other impacted parties. - Incident, Problem management:
Conduct Root Cause Analysis (RCA), respond to incidents and participate in postmortem analysis. - Participate in on-call rotation.
- At least 4 years' relevant experience in a similar role.
- Web Network Security, with a focus on Web Application Firewalls/Controls, and their role in layered Defense in Depth
- Experience with Akamai or equivalent platform(s):
Radware, Imperva, Shape Security, Cloud Flare, etc - Experience with onboarding web services into WAF (Akamai, Shape, etc) platforms and the lifecycle of monitor to mitigation modes
- Ability to process information, translate into plans and present summaries to stakeholders.
- Experienced understanding of business line and discipline.
- Strong analytical and problem solving skills, detail oriented, and well organized
- Ability to cultivate strong relationships with application owners, demonstrated written and verbal communication skills
- Periodically assist with vulnerabilities discovered via these platforms
- Work with relevant teams to implement best web security practices and assist with enhancing the Firm's security posture. Strong collaboration skills across multiple teams will be required.
- Understanding of ITIL processes
We are committed to maintaining the first-class service and high standard of excellence that have defined Morgan Stanley for over 89 years. Our values - putting clients first, doing the right thing, leading with exceptional ideas, committing to diversity and inclusion, and giving back - aren’t just beliefs, they guide the decisions we make every day to do what's best for our clients, communities and more than 80,000 employees in 1,200 offices across 42 countries.
At Morgan Stanley, you’ll find an opportunity to work alongside the best and the brightest, in an environment where you are supported and empowered. Our teams are relentless collaborators and creative thinkers, fueled by their diverse backgrounds and experiences. We are proud to support our employees and their families at every point along their work-life journey, offering some of the most attractive and comprehensive employee benefits and perks in the industry.
There’s also ample opportunity to move about the business for those who show passion and grit in their work.
To learn more about our offices across the globe, please copy and paste into your browser.
Salary range for the position $95,000 to $135,000 per year. The successful candidate may be eligible for an annual…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).