Senior Detection Engineer, Director (Assistant VP)
Core
Design, build, and maintain proactive threat detections and security tooling to hunt adversary infrastructure and malware within the Morgan Stanley network.
Role type
Senior IC detection engineer (threat hunting & malware analysis)
Builds
Scalable detection strategies, automated investigative workflows, and bespoke security tooling
Domain
Cybersecurity / Threat Intelligence / Malware Analysis
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Adversary tactics and techniques, malware analysis, reverse engineering, Python development, security telemetry analysis, detection engineering, automation scripting, API integration, data enrichment, incident investigation
Preferred skills
Adversary infrastructure hunting, command-and-control analysis, phishing infrastructure analysis, botnet hunting, tooling fingerprinting, purple team exercises, dashboard design, data pipeline creation
Technologies
Python, security analytics platforms, detection-as-code workflows, version control, internal/external APIs
Responsibilities
Design and tune detection logic across endpoint, network, and identity telemetry; hunt for adversary infrastructure and C2 patterns; translate malware analysis findings into detection strategies; automate analysis workflows and build tooling for data processing; analyze security telemetry to identify coverage gaps; research emerging adversary tradecraft; provide technical guidance and code reviews to junior members; collaborate with threat intelligence and incident response teams.
Seniority
Director level, hands-on IC with mentorship responsibilities