Easter Seals Jobs

Job Information

Morgan Stanley Cyber Incident Management in New York, New York

Morgan Stanley has a critical requirement for a Cyber Security Response Manager, known internally as a Cyber Enterprise Manager (CEM), in New York to work as part of our global Fusion Response team. Fusion Response consists of three response teams, with the mission to lead rapid and comprehensive response and recovery operations to minimize impact from a broad range of business disrupting threats and incidents, from cyber and fraud to technology incidents, weather events, terror attacks, geopolitical unrest & pandemics. Fusion collaborates with partner organizations to understand, prepare for, respond to, and learn from these events. The Fusion CEM team is responsible for orchestrating the Firm-wide response to threats, vulnerabilities, or events / incidents that incur cyber, fraud, third party or information security risk to the Firm. In partnership with key response and business stakeholders, CEM develops a plan to rapidly mitigate business, regulatory or reputational impact through calculated risk scoring and tiered communications.

The global Fusion Response team is a 24/7 operation with members in key geographic locations; this requires the role to cover shifts during weekday core hours, as well as support occasional scheduled evening and weekend on call coverage. With centers in New York, Alpharetta, London, Glasgow, Budapest, Hong Kong, Tokyo, and Singapore, Fusion's 24/7 proactive, follow-the-sun model is the cornerstone of the Firm's operational resilience capability.

What will you be doing? As part of the Cyber Enterprise Management team, you will be collaborating with key partners to manage a Firm-wide response to threats, vulnerabilities, or incidents that incur Cyber, Information Security and Fraud Risk to the firm, as well as develop readiness throughout Fusion and its partners to allow for timely and effective cyber response. - Assist in the development and implementation of Fusion's global operations, working with Fusion, cyber, technology and Business Unit leadership as part of a comprehensive follow the sun operating model - Orchestrate incident response activities from detection to recovery for cyber, fraud, information security and third-party incidents that threaten the Firm's clients, assets, or reputation - Coordinate critical response work by managing incident calls and drafting formal communications - Drive decision making to minimize the Firm's risk to cyber, fraud, information security and third-party incidents - Complete post-incident reviews to ensure lessons learned are memorialized and risk owners identified - Develop, maintain, and refine Fusion's Standard Operating Procedures for escalation, communication, and response while collaborating with the respective stakeholders to ensure information is complete, accurate, and actionable - Conduct incident scenario preparation including scenario development with stakeholder teams, playbook development and documentation and incident simulations and drills - Manage cyber control disablement requests to ensure the correct approvals are in place and risks effectively managed

What we're looking for: A successful CEM must have a mix of cybersecurity knowledge, communication skills, people skills, operational experience, and the ability to solve complex problems. The cybersecurity landscape is constantly changing, and it is essential that the candidate be able to keep pace in this incredibly dynamic environment. - Ability to manage both technical (e.g., forensics investigations) and non-technical workstreams (e.g., data impact reviews, external communications) as part of mitigating risk and/or impact to the Firm - Professional experience within security roles, preferably within the financial sector, law enforcement, the military, and/or the intelligence community - Excellent writing, presentation, and communication skills for incident management - Ability to communicate confidently and clearly on conference calls, in meetings, and via email at all levels of the organization - Ability to distil technical and complex information into easily understood business terms for management. - Knowledge of information security and fraud threat types and their composition - Knowledge of third party and supply chain threats and risks - Knowledge of risk management frameworks and experience assessing risk - Willingness to learn about the Firm's technology infrastructure and cyber threat environment

Skills that will help you in the role: - Experience working for a globally distributed organization - Proven troubleshooting skills within a support environment including a strong sense of commitment and drive towards incident resolution - Experience of Major Incident Management - Experience designing and orchestrating cyber incident exercises - Experience of 24/7 operational environment - Certifications such as: Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM) or SANS Institute

Morgan Stanley's goal is to build and maintain a workforce that is diverse in experience and background but uniform in reflecting our standards of integrity and excellence. Consequently, our recruiting efforts reflect our desire to attract and retain the best and brightest from all talent pools. We want to be the first choice for prospective employees.

It is the policy of the Firm to ensure equal employment opportunity without discrimination or harassment on the basis of race, color, religion, creed, age, sex, sex stereotype, gender, gender identity or expression, transgender, sexual orientation, national origin, citizenship, disability, marital and civil partnership/union status, pregnancy, veteran or military service status, genetic information, or any other characteristic protected by law.

Morgan Stanley is an equal opportunity employer committed to diversifying its workforce (M/F/Disability/Vet).

Expected base pay rates for the role will be between $140,000 and $200,000 per year at the commencement of employment. However, base pay if hired will be determined on an individualized basis and is only part of the total compensation package, which, depending on the position, may also include commission earnings, incentive compensation, discretionary bonuses, other short and long-term incentive packages, and other Morgan Stanley sponsored benefit programs.

Job: *Threat Management

Title: *Cyber Incident Management *

Location: New York-New York

Requisition ID: 3253539

DirectEmployers