*IMPORTANT* Recruiter will finalize JD with the Hiring Manager during the intake meeting once role opens in Workday to ensure it meets Firm job description guidelines and Job Architecture requirements. Please ONLY populate the relevant [INSERT] sections below. Further guidance on job descriptions can be found by typing careers in your browser.
{A Topline Description of the Role - max 1 sentence} We're seeking someone to join our [INSERT team name - optional] team as a [INSERT role] in [INSERT Super Dept] to [INSERT 1 draft sentence to describe the function of this role to finalize with Recruiter - this must be a high-level overview that is easily interpreted by the candidate and serves to instantly sell them on the position. This should not be repetitive to the bulleted sections below].
{B Standard Description of Division, JA Functional Title & JA Job Family} In the Technology division, we leverage innovation to build the connections and capabilities that power our Firm, enabling our clients and colleagues to redefine markets and shape the future of our communities. This is a [Job Family] III position at Director level, which is part of the job family responsible for [RECRUITER to add standard JA Job Family Description based on Job Profile].
{C Standard Description of the Firm} Since 1935, Morgan Stanley is known as a global leader in financial services, always evolving and innovating to better serve our clients and our communities in more than 40 countries around the world.
{D Part 1: Scope of Role What you'll do pre-set content based on tier framework + role-specific bullets}
What you'll do in the role:
- Contribute to the function through complex project tasks and initiatives.
- Interact regularly with team members and occasionally leadership on a range of topics.
- [INSERT additional bullets to a maximum of 6 - 8 total to describe role-specific core responsibilities. Refer to the Technology Job Description Guide for example content by Tier/Family by copying
https://jive.ms.com/docs/DOC-979486 into your browser. If required, slight adjustments can be made to the pre-set content to reflect the specific role. Keep bullets brief and impactful, starting with a present tense verb. Alternatively, leave this section as is to finalize with Recruiter.]
Morgan Stanley are seeking an AI DevOps Engineer, to join our Testing Execution team in Security Testing and Risk, to perform adversarial testing to evaluate the efficacy of the model-level security controls and the controls implemented between the end-user and the LLM.
Cyber Data Risk & Resilience:
The mission of Cyber Data Risk & Resilience (CDRR) is to deliver first-line defenses to manage risks to Firm technology, information and cyber threats through risk identification, control management and assurance. This allows the business to operate and grow in a secure and legally compliant manner. Our vision is to deliver Programs that protect and enable the business, ensure secure delivery of services to our clients, adjust to address the risks presented by an evolving threat landscape, meet regulatory expectations, and offer highly attractive career opportunities.
What you'll do in the role:
Communicate regularly with product leads across the technology organization and discuss opportunities for improvement to existing and future technology solutions.
Operate a security testing platform designed to perform adversarial testing against AI/LLM systems.
Detect and validate risks in AI/LLM systems including but not limited to evasion, prompt injection, and data leakage.
Collaborate with AI/ML engineers and Gen AI application developers to integrate domain-specific security knowledge into AI/LLM systems.
Deploy and manage cloud resources and infrastructure components. {D Part 2: Scope of Role What you'll bring pre-set content based on tier framework + role-specific bullets}
What you'll bring to the role:
- Ability to process information, translate into plans and present summaries to stakeholders.
- Experienced understanding of business line and discipline.
- [INSERT additional bullets to a maximum of 6 - 8 total to outline role-specific minimum skills, competencies, career/educational background, certifications required. Refer to the Technology Job Description Guide for example content by Tier/Family by copying
https://jive.ms.com/docs/DOC-979486 into your browser. If required, slight adjustments can be made to the pre-set content to reflect the specific role. Keep bullets brief and start with a noun such as ''Ability to, Understanding of, Experience in''. Alternatively, leave this section as is to finalize with Recruiter.]
- At least 4 years' relevant experience would generally be expected to find the skills required for this role.
{E What you can expect from Morgan Stanley} [RECRUITER to add standard global paragraph]
{F Standard Description of location GCs/Paris/Frankfurt only} [RECRUITER to insert where applicable]
{G Regional insertions e.g., Equal Opportunities Statement, Wage transparency (if required), Regulatory etc.} [RECRUITER to insert standard disclosures for location and division where applicable]
What you'll bring to the role:
4+ years experience in cybersecurity technologies or operations, including areas such as red teaming, penetration testing, application security, vulnerability management, compliance, and governance.
Strong programming and scripting skills (e.g., Python, Java, C, C++, Bash)
Basic Linux and Windows command-line knowledge
Knowledge of cloud security best practices and compliance standards
Familiarity with LLMs and techniques like prompt engineering, fine-tuning, and retrieval-augmented generation (RAG).
Advanced understanding of business line and discipline with some knowledge of competitive environment and other disciplines.
Good understanding of the tactics, techniques and procedures of threat actors.
Knowledge of the MITRE ATLAS Framework and the OWASP Top 10 for LLM Applications.
Background in AI threat modeling, attack mitigation, or misuse detection.
Proficiency in cloud platforms such as AWS, Azure, and Google Cloud
Understanding of containerization and orchestration using Docker and Kubernetes
Understanding of data analysis
Excellent problem-solving
Excellent attention to detail and communication
Excellent stakeholder management
WHAT YOU CAN EXPECT FROM MORGAN STANLEY:
At Morgan Stanley, we raise, manage and allocate capital for our clients – helping them reach their goals. We do it in a way that’s differentiated – and we’ve done that for 90 years. Our values - putting clients first, doing the right thing, leading with exceptional ideas, committing to diversity and inclusion, and giving back - aren’t just beliefs, they guide the decisions we make every day to do what's best for our clients, communities and more than 80,000 employees in 1,200 offices across 42 countries. At Morgan Stanley, you’ll find an opportunity to work alongside the best and the brightest, in an environment where you are supported and empowered. Our teams are relentless collaborators and creative thinkers, fueled by their diverse backgrounds and experiences. We are proud to support our employees and their families at every point along their work-life journey, offering some of the most attractive and comprehensive employee benefits and perks in the industry. There’s also ample opportunity to move about the business for those who show passion and grit in their work.
To learn more about our offices across the globe, please copy and paste https://www.morganstanley.com/about-us/global-offices into your browser.
Morgan Stanley is an equal opportunity employer committed to building and maintaining a workforce that is diverse in experience and background. Our recruiting efforts reflect our strong commitment to a culture of inclusion, where individuals are hired, developed, and advanced based on their skills and talents.
Our workforce reflects a broad cross-section of the global communities in which we operate, bringing a variety of backgrounds, talents, perspectives, and experiences.
For more information, please visit: https://www.morganstanley.com/people-opportunities/eeo.