Morgan Stanley Logo

Morgan Stanley

Detection Engineer, Associate/Director (Assistant VP)

Reposted 2 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in SG
Mid level
Remote
Hiring Remotely in SG
Mid level
Join the Threat Hunt Team to detect and respond to attacks, engineer detection strategies, and reduce risk. Perform alerting/on-call, server administration, DevSecOps liaison duties, automation (Ansible, Python, Jenkins), onboarding to the Cyber Data Platform, MFA integration, hardware/network troubleshooting, CI/CD, monitoring/alerting, and act as an SRE for Platform Engineering.
The summary above was generated by AI

Threat Hunt and Cyber Detection (THCD) is looking for a detection engineer with a threat hunting mindset to join our global team in Singapore. The THCD mission is to seek out attacks against the Morgan Stanley network, engineer high-quality detection strategies, and reduce risk to Morgan Stanley assets. As a Threat Hunt team member, you will focus on developing and maintaining detections, analyzing adversary behavior, improving security telemetry, and enhancing bespoke tools used to defend the Morgan Stanley network. 

In the Technology division, we leverage innovation to build the connections and capabilities that power our Firm, enabling our clients and colleagues to redefine markets and shape the future of our communities. 

Since 1935, Morgan Stanley has been known as a global leader in financial services, always evolving and innovating to better serve our clients and our communities in more than 40 countries around the world. 

At Morgan Stanley Singapore, we serve as the Firm’s Southeast Asia headquarters and regional hub, supporting Morgan Stanley’s businesses across the region. Morgan Stanley has had a presence in Singapore since 1990, and our Singapore office provides capabilities across investment banking, equity and fixed income research, securities trading, derivatives, commodities, private wealth management, and investment management. Located at IOI Central Boulevard Towers in downtown Singapore, our Southeast Asia headquarters provides a world-class work environment, advanced technology infrastructure, and collaborative facilities that help our teams deliver best-in-class services and solutions for clients. Everyone is encouraged to chart their own meaningful career and achieve goals with the support of our training, development, and global collaboration opportunities. 

What you’ll do in the role: 

  • Develop, test, tune, and maintain detection logic to identify suspicious activity across endpoint, network, identity, application, and other enterprise telemetry sources. 

  • Translate adversary behaviors, threat intelligence, and hunt hypotheses into practical detection strategies and measurable detection coverage. 

  • Use Python to build automation, parse and enrich security data, support detection engineering workflows, and improve bespoke threat hunting and detection tools. 

  • Work with technologies such as Sigma, YARA, ElasticSearch, Git, Python, and related security analytics platforms to create and maintain detection content. 

  • Investigate security signals and suspicious activity to understand attacker behavior, validate detection quality, and identify opportunities for improved coverage. 

  • Collaborate with threat intelligence, incident response, purple team, and platform engineering stakeholders to improve detection fidelity and reduce false positives. 

  • Research emerging adversary tradecraft, malware behaviors, command-and-control patterns, infrastructure usage, and campaigns relevant to the Firm’s threat landscape. 

  • Map detection opportunities and hunting activity to adversary tactics, techniques, and procedures, including frameworks such as MITRE ATT&CK. 

  • Contribute to peer reviews of detection logic, Python code, hunt hypotheses, investigation notes, and automation changes to improve quality, maintainability, and consistency. 

  • Help improve the team’s detection-as-code practices, testing processes, documentation, and engineering standards. 

  • Continue building technical depth in detection engineering, threat hunting, security analytics, adversary infrastructure, and financial-sector cyber threats. 

What you’ll bring to the role: 

  • Min 3 years of hands-on experience in cybersecurity, threat intelligence, threat hunting, detection engineering, security engineering, software engineering in a security context, incident response, blue teaming, or a related field. 

  • Strong Python development skills, including the ability to write maintainable code, work with APIs, process structured and unstructured data, automate workflows, and troubleshoot issues independently. 

  • Practical experience analyzing security data, logs, alerts, or telemetry to identify suspicious activity or understand adversary behavior. 

  • Familiarity with detection engineering concepts, including detection logic, rule tuning, alert quality, false-positive reduction, and detection validation. 

  • Working knowledge of adversary tactics, techniques, and procedures, including how attacker behavior can be converted into detection opportunities. 

  • Experience with tools or technologies such as ElasticSearch, Sigma, YARA, Git, SIEM platforms, EDR telemetry, threat intelligence platforms, or similar systems. 

  • Ability to understand threat intelligence reporting and translate relevant behaviors, indicators, and infrastructure patterns into hunting or detection opportunities. 

  • Strong analytical thinking, attention to detail, and the ability to explain technical findings clearly to both technical and non-technical stakeholders. 

  • Ability to gather requirements from stakeholders and turn operational or investigative needs into practical, maintainable technical solutions. 

  • Curiosity about attacker behavior, security data, and how to build scalable tools and detections that improve cyber defense outcomes. 

  

Skills that would be useful but are not required: 

  • Experience writing or maintaining detections as code. 

  • Exposure to threat hunting, cyber threat intelligence, malware analysis, adversary emulation, purple-team exercises, or threat-informed defense. 

  • Familiarity with adversary infrastructure hunting, including command-and-control infrastructure, domain and hosting patterns, phishing infrastructure, botnet infrastructure, or attacker use of legitimate services. 

  • Exposure to cloud platforms such as AWS, GCP, or Azure, including cloud logs, security controls, or common cloud attack paths. 

  • Relevant cybersecurity certifications. 

What you can expect from Morgan Stanley

At Morgan Stanley, we raise, manage and allocate capital for our clients – helping them reach their goals. We do it in a way that’s differentiated – and we’ve done that for 90 years. Our values - putting clients first, doing the right thing, leading with exceptional ideas, committing to diversity and inclusion, and giving back - aren’t just beliefs, they guide the decisions we make every day to do what's best for our clients, communities and more than 80,000 employees in 1,200 offices across 42 countries. At Morgan Stanley, you’ll find an opportunity to work alongside the best and the brightest, in an environment where you are supported and empowered. Our teams are relentless collaborators and creative thinkers, fueled by their diverse backgrounds and experiences. We are proud to support our employees and their families at every point along their work-life journey, offering some of the most attractive and comprehensive employee benefits and perks in the industry. There’s also ample opportunity to move about the business for those who show passion and grit in their work To learn more about our offices across the globe, please copy and paste https://www.morganstanley.com/about-us/global-offices into your browser.

Morgan Stanley is an equal opportunity employer committed to building and maintaining a workforce that is diverse in experience and background. Our recruiting efforts reflect our strong commitment to a culture of inclusion, where individuals are hired, developed, and advanced based on their skills and talents.

Our workforce reflects a broad cross-section of the global communities in which we operate, bringing a variety of backgrounds, talents, perspectives, and experiences.

For more information, please visit: https://www.morganstanley.com/people-opportunities/eeo

WHAT YOU CAN EXPECT FROM MORGAN STANLEY:

At Morgan Stanley, we raise, manage and allocate capital for our clients – helping them reach their goals. We do it in a way that’s differentiated – and we’ve done that for 90 years.  Our values - putting clients first, doing the right thing, leading with exceptional ideas, committing to diversity and inclusion, and giving back - aren’t just beliefs, they guide the decisions we make every day to do what's best for our clients, communities and more than 80,000 employees in 1,200 offices across 42 countries. At Morgan Stanley, you’ll find an opportunity to work alongside the best and the brightest, in an environment where you are supported and empowered. Our teams are relentless collaborators and creative thinkers, fueled by their diverse backgrounds and experiences. We are proud to support our employees and their families at every point along their work-life journey, offering some of the most attractive and comprehensive employee benefits and perks in the industry. There’s also ample opportunity to move about the business for those who show passion and grit in their work.

To learn more about our offices across the globe, please copy and paste https://www.morganstanley.com/about-us/global-offices​ into your browser.

Morgan Stanley is an equal opportunity employer committed to building and maintaining a workforce that is diverse in experience and background.  Our recruiting efforts reflect our strong commitment to a culture of inclusion, where individuals are hired, developed, and advanced based on their skills and talents.

Our workforce reflects a broad cross-section of the global communities in which we operate, bringing a variety of backgrounds, talents, perspectives, and experiences.

For more information, please visit: https://www.morganstanley.com/people-opportunities/eeo.

Morgan Stanley Singapore, Singapore, SGP Office

#16-01 Capital Square 23 Church Street, Singapore, Singapore, 04981

Similar Jobs

An Hour Ago
In-Office or Remote
Singapore, SGP
Internship
Internship
Information Technology • Software • Financial Services • Big Data Analytics
Quantitative Researchers work on developing mathematical models, backtesting trading strategies, and conducting statistical analysis, utilizing complex data sets and algorithms.
Top Skills: C++PythonR
An Hour Ago
In-Office or Remote
Singapore, SGP
Internship
Internship
Information Technology • Software • Financial Services • Big Data Analytics
Conduct ML research (deep learning, NLP) on large and unstructured financial datasets, implement algorithms in high-quality code, back-test models, document findings, and collaborate with senior researchers during an 11-week summer internship in Hong Kong or Singapore.
Top Skills: C++Deep LearningMachine LearningNlpPythonStatistics
An Hour Ago
In-Office or Remote
Singapore, SGP
Mid level
Mid level
Information Technology • Software • Financial Services • Big Data Analytics
Quantitative Research Engineers at Citadel's GQS develop software solutions, enhance trading systems, and collaborate with researchers to apply quantitative techniques.
Top Skills: C++Linux

What you need to know about the Singapore Tech Scene

The digital revolution has driven a constant demand for tech professionals across industries like software development, data analytics and cybersecurity. In Singapore, one of the largest cities in Southeast Asia, the demand for tech talent is so high that the government continues to invest millions into programs designed to develop a talent pipeline directly from universities while also scaling efforts in pre-employment training and mid-career upskilling to expand and elevate its workforce.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account