Vulnerability Management Operations Analyst

ms· 474 MS Services Group, Inc.
Apply Now ↗

About this role

We're seeking someone to join our Vulnerability Management (VM) Operations team as a VM Ops Analyst in Cloud Platform Security and Developer Enablement to assist with Vulnerability findings identification, assignment, notification, prioritization, escalation and reporting.

In the Technology division, we leverage innovation to build the connections and capabilities that power our Firm, enabling our clients and colleagues to redefine markets and shape the future of our communities.


Since 1935, Morgan Stanley is known as a global leader in financial services, always evolving and innovating to better serve our clients and our communities in more than 40 countries around the world.


What you'll do in the role:

  • Join a dynamic team accountable for Vulnerability Management findings triaging, case management, and remediation SLA tracking.
  • The VM Analyst will need to familiarize themselves with the firm's scanning tools and processes, triaging vulnerabilities, communicating status, guiding system owners in remediation, updating cases, reviewing system owner comments and requests.
  • The VM Analyst will also be required to develop deep operational expertise of the VM platform/s to mature and improve the platform determine possible future automation needs and work with the dev team to fix bugs, test fixes in QA, and streamline the processes via the platform.
  • VM Analysts must also be able to explain and present the VM process and tool usage to system owners and provide basic guidance around VM Reporting and metrics.
  • VM Analysts must be for zero-day response and bypass of normal patch SLAs - the response window compresses to mere hours inclusive of Weekend and Holiday times. - VM Analysts are expected to be part of the on-call may occasionally be called upon to support an active incident after hours.

 
What you'll bring to the role:


  • 3 -5 years of experience in vulnerability, technology security operations, or related SRE functions.
  • Vulnerability management / Cybersecurity knowledge such as the ability to interpret vulnerability CVSS / EPSS / exploitability ratings and threats
  • Ability to learn and understand the firm's OS/app patching ecosystems
  • Basic understanding of on prem and cloud infrastructure technologies (e.g., systems, servers, virtualization, containers, images)
  • Ability to adapt to inputs from cyber threat intelligence and/or escalations from Management.
  • Ability to process information, translate into plans and present summaries to stakeholders.
  • Strong analytical and problem-solving mindset
  • Basic understanding of SDLC, CI/CD, IT Asset Management, and third-party software supply chains
  • Ability to communicate effectively across technical and non-technical audiences
  • Experience managing competing priorities in fast-paced environments
  • Self-starter with ability to drive initiatives independently

Additional Skills:


  • Basic understanding of emerging LLM/AI cyber threats
  • Ability to document user-stories and/or bugs
  • Prior experience with commercial Vulnerability Management scanning tooling (or adjacent Observability Management or Endpoint Security tools)
  • Experience with Spunk and/or Grafana
  • Ability to write scripts in Python or PowerShell and/or leveraging Agentic coding capabilities

WHAT YOU CAN EXPECT FROM MORGAN STANLEY:

At Morgan Stanley, we raise, manage and allocate capital for our clients – helping them reach their goals. We do it in a way that’s differentiated – and we’ve done that for 90 years.  Our values - putting clients first, doing the right thing, leading with exceptional ideas, committing to diversity and inclusion, and giving back - aren’t just beliefs, they guide the decisions we make every day to do what's best for our clients, communities and more than 80,000 employees in 1,200 offices across 42 countries. At Morgan Stanley, you’ll find an opportunity to work alongside the best and the brightest, in an environment where you are supported and empowered. Our teams are relentless collaborators and creative thinkers, fueled by their diverse backgrounds and experiences. We are proud to support our employees and their families at every point along their work-life journey, offering some of the most attractive and comprehensive employee benefits and perks in the industry. There’s also ample opportunity to move about the business for those who show passion and grit in their work.

To learn more about our offices across the globe, please copy and paste https://www.morganstanley.com/about-us/global-offices​ into your browser.

Expected base pay rates for the role will be between $95,0000 and $130,000 per year at the commencement of employment. However, base pay if hired will be determined on an individualized basis and is only part of the total compensation package, which, depending on the position, may also include commission earnings, incentive compensation, discretionary bonuses, other short and long-term incentive packages, and other Morgan Stanley sponsored benefit programs.


Morgan Stanley is an equal opportunity employer committed to building and maintaining a workforce that is diverse in experience and background.  Our recruiting efforts reflect our strong commitment to a culture of inclusion, where individuals are hired, developed, and advanced based on their skills and talents.

Our workforce reflects a broad cross-section of the global communities in which we operate, bringing a variety of backgrounds, talents, perspectives, and experiences.

For more information, please visit: https://www.morganstanley.com/people-opportunities/eeo.

Frequently Asked Questions

Is the salary disclosed for the Vulnerability Management Operations Analyst position at ms?
The salary for this Vulnerability Management Operations Analyst role at ms is not publicly listed. Click "Apply Now" to learn more about the compensation package on their official careers page.
Where is the Vulnerability Management Operations Analyst position at ms located?
This Vulnerability Management Operations Analyst role at ms is based in Alpharetta, Georgia, United States of America. The position is listed as on-site or hybrid. Check the full job description or apply directly to confirm the work arrangement.
Is the Vulnerability Management Operations Analyst role at ms full-time or part-time?
This is listed as a Full time position. It is posted as a Vulnerability Management Operations Analyst role in the 474 MS Services Group, Inc. department at ms.
Which team or department does the Vulnerability Management Operations Analyst at ms belong to?
This Vulnerability Management Operations Analyst position is part of the 474 MS Services Group, Inc. department at ms. See the full job description for more information about the team structure and responsibilities.
How do I apply for the Vulnerability Management Operations Analyst position at ms?
Click the "Apply Now" button on this page. You will be redirected to ms's official application portal hosted on workday where you can submit your application directly.
When was the Vulnerability Management Operations Analyst job at ms posted?
This Vulnerability Management Operations Analyst position at ms was posted on Sep 28, 2026. Apply as soon as possible — early applications are often reviewed first.
Vulnerability Management Operations Analyst
ms
Apply for this role ↗

You'll be redirected to ms's official application page on Workday.