Security Design Integrators - Seeking Multiple Candidates: Associates & Vic at Morgan Stanley
Montreal, Quebec, Canada -
Full Time


Start Date

Immediate

Expiry Date

27 Jan, 26

Salary

0.0

Posted On

29 Oct, 25

Experience

5 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Security Analysis, Risk Management, Communication Skills, Time Management, Database Design, Penetration Testing, Cloud Service Providers, Programming, Application Security, Cryptography, Identity Management, Data Protection, DevOps, CI/CD, Technical Design Review, Vulnerability Assessment

Industry

Financial Services

Description
Lead SecDesign security analysis of the architecture or solution with the requestor of the assessment. Prioritize identified risks and work with stakeholders on remediation deadlines. Also participate in various Operational and Technology Risk governance processes. Conduct assessments and provide technology risk/requirements to the requestor. Periodically review security reference architecture (security blueprints) and conduct updates/enhancements. Assist in identifying new areas and opportunities for technological investment for the firm. Provide peer review signoff on security analysis Excellent communication skills written, oral, presentation, listening. Ability to influence through factual reasoning. Time management: ability to handle multiple concurrent assessments, plan based deliverable management, strong follow up and tracking. Frameworks, protocols, and subsystems: J2EE, .NET, Spring, RPC, SOAP, MQSeries, JMS, RMI, JMX, Hibernate. Knowledge of JSP /Servlet/EJB or ASP.NET, HTTP/HTTPS, Cookies, AJAX, JavaScript, Flex / Silverlight. Database design and programming experience Experience of liaising with 3rd Party Entities (exchanges, suppliers, regulators) Experience in conducting and / or reviewing penetration tests, dynamic vulnerability assessments and static vulnerability assessments. Understanding of geographic regulations and their impact on Security assessments Desired for Vice President candidates - CISSP or other industry qualifications In depth knowledge of application, network, and platform security vulnerabilities. Experience in conducting Information Security, IT Security, Audit assessments, presenting the outcomes of the assessments and obtaining buy in. Strong focus on reviewing technical designs and functional requirements to identify areas of Security weaknesses. The candidate must have experience in at least three of the following application/network security domains: Authentication: SAML, SiteMinder, Kerberos, OpenID Entitlements and identity management Data protection, data leakage prevention and secure data transfer and storage App Security - validation checking, software attack methodologies. Cryptography - encryption and hashing Required for Vice President candidates: Knowledge of Cloud Service Providers (AWS/Google/Azure) cloud, DevOps and CI/CD While the SecDesign Integrator role is not a development role, the candidate must have previous background in programming, design, and application architecture. Required for Vice President candidates: To be a practical SecDesign Integrator, the candidates must have experience implementing complex applications in an enterprise environment. Required for Vice President candidates: Working knowledge of programming and scripting languages: Java, JavaScript, C#, C/C++, Perl, Python, Ruby Bachelor's Degree (or equivalent) with relevant work experience in high-paced, enterprise environment. Associate level: minimum 3 years of experience; Vice President level: minimum 7 years of experience. Build a career with impact. Visit morganstanley.com for more information. Our values - putting clients first, doing the right thing, leading with exceptional ideas, committing to diversity and inclusion, and giving back - aren't just beliefs, they guide the decisions we make every day to do what's best for our clients, communities and more than 80,000 employees in 1,200 offices across 42 countries. Our teams are relentless collaborators and creative thinkers, fueled by their diverse backgrounds and experiences. We are proud to support our employees and their families at every point along their work-life journey, offering some of the most attractive and comprehensive employee benefits and perks in the industry. There's also ample opportunity to move about the business for those who show passion and grit in their work. To learn more about our offices across the globe, please copy and paste https://www.morganstanley.com/about-us/global-offices​ into your browser. We work to provide a supportive and inclusive environment where all individuals can maximize their full potential.
Responsibilities
Lead security analysis of architecture or solutions and prioritize identified risks. Conduct assessments and provide technology risk requirements while participating in governance processes.
Loading...