×
Register Here to Apply for Jobs or Post Jobs. X
More jobs:

Cloud Security Controls Engineering - VP

Job in Alpharetta, Fulton County, Georgia, 30239, USA
Listing for: Morgan Stanley
Full Time position
Listed on 2026-06-22
Job specializations:
  • Software Development
    DevOps
Salary/Wage Range or Industry Benchmark: 120000 - 150000 USD Yearly USD 120000.00 150000.00 YEAR
Job Description & How to Apply Below

In the Technology division, we leverage innovation to build the connections and capabilities that power our Firm, enabling our clients and colleagues to redefine markets and shape the future of our communities.

What You Will Do
  • Lead the design and implementation of deploy‑time security controls for cloud services across Azure, AWS, and GCP, using OPA (Rego) and Regula.
  • Translate firm‑wide configuration baseline requirements into enforceable policy‑as‑code controls integrated directly into Terraform workflows and CI/CD pipelines.
  • Own end‑to‑end control implementation lifecycle: requirement interpretation, policy authoring, testing, optimization, and deployment within engineering pipelines.
  • Establish and maintain reusable policy libraries and modules to ensure consistency and scalability of controls across services and environments.
  • Provide deep technical expertise in Terraform, infrastructure‑as‑code patterns, and pipeline orchestration, ensuring secure and efficient deployments.
  • Define and implement testing strategies for policy validation, including unit and integration testing.
  • Identify gaps where requirements cannot be enforced at deploy‑time and propose compensating controls or alternative enforcement points.
  • Contribute to the evolution of a unified control framework, enabling consistent control logic across deploy‑time and runtime evaluation points.
  • Contribute to cloud security strategy and standards.
  • Lead and develop a team of engineers responsible for deploy‑time control implementation, setting technical direction and ensuring high‑quality delivery.
  • Provide hands‑on mentorship and coaching in OPA/Rego, Regula, Terraform, and secure pipeline design.
  • Manage performance, provide actionable feedback, and support career development for team members.
  • Foster a high‑accountability, low‑friction operating model, reducing handoffs and accelerating baseline delivery.
What You Will Bring
  • 7+ years of hands‑on experience in cloud security engineering, with a strong focus on infrastructure‑as‑code and deployment pipelines.
  • Bachelor's degree in computer science, Information Security, or a related field, or equivalent experience.
  • Proven experience designing and implementing policy‑as‑code controls using OPA (Rego) and/or Regulators in production environments.
  • Deep hands‑on expertise with Terraform, including module design, state management, and secure configuration patterns.
  • Strong experience integrating security controls into CI/CD pipelines, including gating and enforcement mechanisms.
  • Demonstrated ability to translate security requirements into automated, testable, and enforceable controls at deploy‑time.
  • Solid understanding of cloud security architectures across AWS, Azure, and/or GCP, including identity and access management, networking, and data protection controls.
  • Experience implementing control validation and testing strategies, including policy unit testing, pipeline validation, and drift detection.
  • Familiarity with CSPM platforms and the ability to align deploy‑time controls with runtime detection and compliance models.
  • Strong understanding of modern threat models, attack paths, and misconfiguration risks in cloud environments, and how to mitigate them through preventive controls.
  • Experience building and maintaining reusable policy libraries and shared control frameworks at enterprise scale.
  • Proven experience leading a team of engineers, including task prioritization, delivery oversight, and technical direction setting.
  • Demonstrated ability to mentor and develop engineers, particularly in policy‑as‑code, Terraform, and secure pipeline practices.
  • Experience establishing code quality standards, review processes, and engineering best practices for IaC and policy development.
  • Strong stakeholder management skills, with the ability to partner effectively with platform engineering, security architecture, and application teams.
  • Ability to communicate complex technical concepts clearly to both engineering audiences and senior leadership.

Morgan Stanley is an equal opportunity employer committed to building and maintaining a workforce that is diverse in experience and background. Our recruiting efforts reflect our strong commitment to a culture of inclusion, where individuals are hired, developed, and advanced based on their skills and talents. For more information, please visit:

#J-18808-Ljbffr
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary