Morgan Stanley is seeking a Vice President, Cyber, Technology and Information Security (CTIS) Risk Oversight Lead in the CTIS team within Non-Financial Risk. The successful candidate will be responsible for leading a team focused on independent oversight and monitoring of risks and controls around the Firm's cyber, technology and information security risks, with a focus on areas including IT resilience, architecture and design, asset management, vulnerability and patch management, cyber threat intelligence, network security, IAM, change management, and other related areas. The ideal candidate will bring operational knowledge and experience paired with a strong risk and control lens.
Primary Responsibilities:
> Provide independent oversight and challenge of the Firm's cybersecurity and technology organizations risk management activities.
> Manage the team in assessing the effectiveness of risk and control frameworks supporting new technology infrastructure, applications, cyber defenses, and information security programs.
> Lead the team in review and challenge of risk assessments, control evaluations, issue remediation plans, and risk acceptance decisions.
> Build and maintain strong positive relationships and partner with Technology, Non-Financial Risk, Legal, Audit, and business stakeholders to identify and address emerging risks.
> Evaluate new technology initiatives and strategic transformation programs from a risk perspective.
> Manage the team in monitoring key risk indicators (KRIs), metrics, and trends to identify areas requiring enhanced oversight or escalation.
> Support regulatory examinations, internal audits, and governance committee reporting related to technology and cyber risk.
> Drive consistency in risk management practices, ensuring policy requirements, governance standards, and other risk guidance are appropriately addressed.
> Manage the team in preparing executive-level risk reporting and deliver presentations for senior management and at risk governance forums.
> Contribute to the development and enhancement of Enterprise Risk Management and NFR programs.
> Provide thought leadership on emerging technology, cyber threats, and regulatory developments.
Salary range for the position: $95,000 and $170,000 per year. The successful candidate may be eligible for an annual discretionary incentive compensation award. The successful candidate may be eligible to participate in the relevant business unit's incentive compensation plan, which also may include a discretionary bonus component. Morgan Stanley offers a full spectrum of benefits, including Medical, Prescription Drug, Dental, Vision, Health Savings Account, Dependent Day Care Savings Account, Life Insurance, Disability and Other Insurance Plans, Paid Time Off (including Sick Leave consistent with state and local law, Parental Leave and 20 Vacation Days annually), 10 Paid Holidays, 401(k), and Short/Long Term Disability, in addition to other special perks reserved for our employees. Please visit mybenefits.morganstanley.com to learn more about our benefit offerings.
To learn more about our offices across the globe, please copy and paste https://www.morganstanley.com/about-us/global-offices into your browser.