Morgan Stanley Logo

Morgan Stanley

Cyber Threat Intelligence Analyst, Associate

Reposted 3 Hours Ago
Be an Early Applicant
Remote
Hiring Remotely in SG
Mid level
Remote
Hiring Remotely in SG
Mid level
Conduct cyber threat research, investigate adversaries and campaigns, triage intelligence alerts, analyze indicators and security telemetry, and produce actionable reports. Apply MITRE ATT&CK and Diamond Model frameworks while collaborating with threat hunting, monitoring, incident response, and detection engineering teams. Maintain threat profiles, support proactive detection, and improve investigative processes, automation, and analytic workflows using Python and data analysis techniques.
The summary above was generated by AI

We're seeking someone to join our team as a Cyber Threat Intelligence Analyst in Technology to support technical threat investigations, track cyber adversaries, and produce actionable intelligence that strengthens detection, response, and risk-informed decision-making.
In the Technology division, we leverage innovation to build the connections and capabilities that power our Firm, enabling our clients and colleagues to redefine markets and shape the future of our communities.
What you'll do in the role:
> Conduct proactive threat research and investigative analysis to identify adversary campaigns, capabilities, infrastructure, targeting, and tactics, techniques, and procedures (TTPs) using internal collection, OSINT, and commercial intelligence sources.
> Research and track relevant threat actors, malware families, vulnerabilities, campaigns, and emerging threats, maintaining current knowledge of adversary behaviors and tradecraft.
> Triage cyber threat intelligence alerts and incoming intelligence, assessing relevance, credibility, severity, and potential impact, and escalating actionable findings as appropriate.
> Author clear, concise, and actionable threat intelligence reports, including tactical and technical reporting, threat assessments, investigative summaries, and intelligence briefings tailored to operational and non-technical audiences.
> Enrich, validate, and characterize threat indicators and technical artifacts using open-source, commercial, and internal security tooling, and curate high-confidence indicators of compromise (IOCs) for operational use.
> Apply analytic frameworks such as MITRE ATT&CK and the Diamond Model to characterize adversary activity, infrastructure, capabilities, and relationships.
> Analyze internal and external security data to identify patterns, correlations, and emerging trends that support threat investigations and intelligence assessments.
> Partner with threat hunting, security monitoring, incident response, detection engineering, and other cybersecurity teams to translate threat intelligence into detection opportunities, investigative leads, mitigations, and control validation activities.
> Maintain and update threat profiles aligned to assigned areas of responsibility and contribute intelligence that supports proactive detection and discovery.
> Contribute to the development and improvement of CTI analytic processes, investigative tradecraft, playbooks, and automation to improve the consistency and efficiency of intelligence workflows.
> Where applicable, use scripting and data analysis techniques, including Python, to support investigations, enrichment, data processing, and analytic workflows.

What you'll bring to the role:
> Min 4 years of experience in cyber threat intelligence, cybersecurity investigations, threat hunting, security operations, incident response, or a related cybersecurity discipline.
> Experience researching cyber threat actors, malware, campaigns, vulnerabilities, and adversary TTPs using internal, open-source, and/or commercial intelligence sources.
> Familiarity with intelligence analysis frameworks and methodologies such as MITRE ATT&CK, the Diamond Model, intelligence lifecycle, and structured analytic techniques.
> Experience conducting alert triage and investigative analysis, including evaluating intelligence for relevance, credibility, and potential organizational impact.
> Strong report writing and analytic communication skills, with the ability to clearly articulate evidence, assessments, confidence levels, implications, and recommended actions.
> Understanding of intelligence requirements and collection management concepts, including identifying information gaps and aligning collection activity to priority intelligence needs.
> Familiarity with SIEM, endpoint, network, threat intelligence platform, or other security tooling and the ability to interpret relevant security telemetry in support of investigations.
> Experience enriching and analyzing indicators such as domains, IP addresses, URLs, file hashes, malware artifacts, and related technical infrastructure.
> Working knowledge of scripting or data analysis, preferably Python, for automation, enrichment, or investigative workflows.
> Strong analytical and critical-thinking skills, including the ability to synthesize information from multiple sources, distinguish fact from assessment, and develop evidence-based analytic judgments.
> Ability to work collaboratively across cybersecurity teams and communicate effectively with both technical and non-technical stakeholders.
> Ability to manage multiple investigative and intelligence priorities while maintaining attention to detail and producing timely, high-quality analysis.
Nice to have:
> GIAC Cyber Threat Intelligence (GCTI), CISSP, CASP+ or similar cybersecurity certifications.
> Experience with threat intelligence platforms, commercial intelligence providers, OSINT tooling, malware analysis platforms, or large-scale security data analysis.
> Familiarity with intelligence requirements management, source evaluation, structured analytic techniques, or intelligence production standards.

WHAT YOU CAN EXPECT FROM MORGAN STANLEY:

At Morgan Stanley, we raise, manage and allocate capital for our clients – helping them reach their goals. We do it in a way that’s differentiated – and we’ve done that for 90 years.  Our values - putting clients first, doing the right thing, leading with exceptional ideas, committing to diversity and inclusion, and giving back - aren’t just beliefs, they guide the decisions we make every day to do what's best for our clients, communities and more than 80,000 employees in 1,200 offices across 42 countries. At Morgan Stanley, you’ll find an opportunity to work alongside the best and the brightest, in an environment where you are supported and empowered. Our teams are relentless collaborators and creative thinkers, fueled by their diverse backgrounds and experiences. We are proud to support our employees and their families at every point along their work-life journey, offering some of the most attractive and comprehensive employee benefits and perks in the industry. There’s also ample opportunity to move about the business for those who show passion and grit in their work.

To learn more about our offices across the globe, please copy and paste https://www.morganstanley.com/about-us/global-offices​ into your browser.

Morgan Stanley is an equal opportunity employer committed to building and maintaining a workforce that is diverse in experience and background.  Our recruiting efforts reflect our strong commitment to a culture of inclusion, where individuals are hired, developed, and advanced based on their skills and talents.

Our workforce reflects a broad cross-section of the global communities in which we operate, bringing a variety of backgrounds, talents, perspectives, and experiences.

For more information, please visit: https://www.morganstanley.com/people-opportunities/eeo.

Morgan Stanley Singapore, Singapore, SGP Office

#16-01 Capital Square 23 Church Street, Singapore, Singapore, 04981

Similar Jobs

6 Hours Ago
In-Office or Remote
Singapore, SGP
Senior level
Senior level
Artificial Intelligence • Cloud • Software • Big Data Analytics
The role involves driving technical sales strategy for AI solutions, consulting on data architectures, and presenting to C-level executives, requiring extensive customer-facing experience and AI proficiency.
Top Skills: AIAWSAzureBig DataData EngineeringData ScienceData WarehousingGCPLinuxMachine LearningUnix
6 Hours Ago
In-Office or Remote
Singapore, SGP
Expert/Leader
Expert/Leader
Cloud • Information Technology • Productivity • Security • Software • App development • Automation
Drive mid-market sales in Thailand/SEA by developing territory and named account plans, building C-level relationships, qualifying and closing deals, forecasting sales, collaborating with channel partners and account teams, and tracking market and competitor trends to maximize expansion and customer success.
Top Skills: CRM
6 Hours Ago
In-Office or Remote
Singapore, SGP
Senior level
Senior level
Cloud • Information Technology • Productivity • Security • Software • App development • Automation
Own mid-market SEA accounts: develop territory and named-account plans, build C-level relationships, qualify leads, deliver presentations, close deals, forecast sales, collaborate with channel partners, and lead account teams to ensure customer success.
Top Skills: CRM

What you need to know about the Singapore Tech Scene

The digital revolution has driven a constant demand for tech professionals across industries like software development, data analytics and cybersecurity. In Singapore, one of the largest cities in Southeast Asia, the demand for tech talent is so high that the government continues to invest millions into programs designed to develop a talent pipeline directly from universities while also scaling efforts in pre-employment training and mid-career upskilling to expand and elevate its workforce.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account