Morgan Stanley

Cloud Security Controls Engineering - VP

Morgan Stanley$150K — $180K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 7+ years of hands-on experience in cloud security engineering with a focus on infrastructure-as-code.
  • Bachelor's degree in computer science, Information Security, or related field, or equivalent experience.
  • Proven experience with policy-as-code controls using OPA (Rego) and/or Regula in production.
  • Deep expertise with Terraform for module design and secure configuration patterns.
  • Strong experience integrating security within CI/CD pipelines and ensuring enforcement mechanisms.
  • Solid understanding of cloud security architectures across AWS, Azure, and GCP.
  • Experience building reusable policy libraries and maintaining shared control frameworks.

Responsibilities

  • Lead design and implementation of security controls for cloud services across major platforms.
  • Translate configuration guidelines into enforceable policy-as-code controls within Terraform workflows.
  • Manage the end-to-end lifecycle of control implementation from requirements to deployment.
  • Establish reusable policy libraries to maintain control consistency across services.
  • Provide technical expertise in Terraform and secure deployment practices.
  • Define testing strategies for policy validation, including unit and integration tests.
  • Identify and propose compensating controls for unmet requirements during deploy-time.

Benefits

  • Opportunity to lead and develop a team of engineers.
  • Hands-on mentorship in advanced security practices and tools.
  • Work on cutting-edge cloud security strategies and frameworks.
  • Chance to influence enterprise-level security controls and policies.
  • High-accountability environment that fosters collaborative team dynamics.
Full Job Description

This is a Cyber Security Engineering position at VP which is part of the job family responsible for providing specialist cyber expertise and creating solutions that protect the organization's systems and networks against actual and potential security threats and vulnerabilities.

What you will do

  • Lead the design and implementation of deploy-time security controls for cloud services across Azure, AWS, and GCP, using OPA (Rego) and Regula

  • Translate firm-wide configuration baseline requirements into enforceable policy-as-code controls integrated directly into Terraform workflows and CI/CD pipelines

  • Own end-to-end control implementation lifecycle: requirement interpretation, policy authoring, testing, optimization, and deployment within engineering pipelines.

  • Establish and maintain reusable policy libraries and modules to ensure consistency and scalability of controls across services and environments.

  • Provide deep technical expertise in Terraform, infrastructure-as-code- patterns, and pipeline orchestration, ensuring secure and efficient deployments.

  • Define and implement testing strategies for policy validation, including unit and integration testing.

  • Identify gaps where requirements cannot be enforced at deploy-time and propose compensating controls or alternative enforcement points.

  • Contribute to the evolution of a unified control framework, enabling consistent control logic across deploy-time and runtime evaluation points

  • Contribute to cloud security strategy and standards.

  • Lead and develop a team of engineers responsible for deploy-time control implementation, setting technical direction and ensuring high-quality delivery

  • Provide hands-on mentorship and coaching in OPA/Rego, Regula, Terraform, and secure pipeline design.

  • Manage performance, provide actionable feedback, and support career development for team members

  • Foster a high-accountability, low-friction operating model, reducing handoffs and accelerating baseline delivery.

What you will bring

  • 7+ years of hands-on experience in cloud security engineering, with a strong focus on infrastructure-as-code and deployment pipelines.

  • Bachelor's degree in computer science, Information Security, or a related field, or equivalent experience.

  • Proven experience designing and implementing policy-as-code controls using OPA (Rego) and/or Regular in production environments.

  • Deep hands-on expertise with Terraform, including module design, state management, and secure configuration patterns.

  • Strong experience integrating security controls into CI/CD pipelines, including gating and enforcement mechanisms.

  • Demonstrated ability to translate security requirements into automated, testable, and enforceable controls at deploy-time.

  • Solid understanding of cloud security architectures across AWS, Azure, and/or GCP, including IM, networking, and data protection controls.

  • Experience implementing control validation and testing strategies, including policy unit testing, pipeline validation, and drift detection.

  • Familiarity with CSPM platforms and the ability to align deploy-time controls with runtime detection and compliance models.

  • Strong understanding of modern threat models, attack paths, and misconfigurations risks in cloud environments, and how to mitigate them through preventive controls.

  • Experience building and maintaining reusable policy libraries and shared control frameworks at enterprise scale.

  • Proven experience leading a team of engineers, including task prioritization, delivery oversight, and technical direction setting

  • Demonstrated ability to mentor and develop engineers, particularly in policy-as-code, Terraform, and secure pipeline practices.

  • Experience establishing code quality standards, review processes, and engineering best practices for IaC and policy development.

  • Strong stakeholder management skills, with the ability to partner effectively with platform engineering, security architecture, and application teams.

  • Ability to communicate complex technical concepts clearly to both engineering audiences and senior leadership.

About Morgan Stanley

Morgan Stanley Investment Management are active managers of capital, working to outperform the market and deliver results for their clients. Morgan Stanley Investment Management's long-tenured professionals apply their experience and expertise across public and private markets, in single-sector, multi-asset and custom solutions.

Morgan Stanley Careers

Joining Morgan Stanley today means becoming part of a global team dedicated to strengthening communities, pioneering innovation, and fostering diversity. As a leading global financial services firm, Morgan Stanley offers unparalleled job opportunities, career growth, and a culture of leadership that together create an exceptional employment experience. Work You’ll Do At Morgan Stanley, you will collaborate with knowledgeable professionals to drive innovation and deliver solutions in financial services. Our team is composed of diverse, talented individuals who bring their unique skills and perspectives to work every day, setting the standard for leadership in the global market. Morgan Stanley is not just a company; it's a place where ambitious, creative, and skilled individuals can build a rewarding career. Here, you can experience the benefits of a vibrant culture dedicated to professional growth and diversity training. Internship Programs Kickstart your career with Morgan Stanley’s internship programs. These positions offer invaluable industry insights and professional experience to students and recent graduates. Interns at Morgan Stanley gain hands-on experience, working alongside seasoned experts in a dynamic, supportive environment. Innovation and Professional Growth We believe in the power of innovation to solve complex problems and encourage our team to think differently and act boldly. Morgan Stanley supports your career development through comprehensive training, development programs, and leadership workshops, ensuring that every employee has the tools they need to succeed. Join Our Team Explore the various job opportunities at Morgan Stanley, from entry-level positions to executive roles. We are hiring individuals who are passionate about finance and eager to contribute to a team that values integrity, excellence, and a forward-thinking mindset. Enhance your skills through our networking events, mentorship opportunities, and ongoing professional development. Stay Connected Keep up to date with the latest from Morgan Stanley Careers by subscribing to our job alert emails. Tailor your preferences to receive updates about new postings, career tips, and exclusive insights from our team leaders. Apply Now Ready to take the next step in your career? Search open positions that match your skills and interests on the Morgan Stanley Jobs portal. Prepare your resume, refine your interview techniques, and join a company that values innovation and leadership. At Morgan Stanley, we’re not just building careers—we’re developing leaders. Discover how far your talents can take you by joining our team today.
Learn more about Morgan Stanley
Size
77,000 employees
Market Cap
$144.1 billion
Industry
Net Income
$10.9 billion
Founded
1935
5 Year Trend
+10%
Revenue
$52 billion
NASDAQ

Similar Jobs

More Jobs at Morgan Stanley

More Information Technology Jobs

Find similar Cloud Security Controls Engineering - VP jobs: