VP, CTIS Risk Oversight Lead
About the Role
Morgan Stanley is seeking a Vice President, Cyber, Technology and Information Security (CTIS) Risk Oversight Lead in the CTIS team within Non-Financial Risk. The successful candidate will lead a team focused on independent oversight and monitoring of risks and controls around the Firm's cyber, technology, and information security risks, with a focus on areas including IT resilience, architecture and design, asset management, vulnerability and patch management, cyber threat intelligence, network security, IAM, change management, and other related areas. The ideal candidate will bring operational knowledge and experience paired with a strong risk and control lens.
Responsibilities
- Provide independent oversight and challenge of the Firm's cybersecurity and technology organizations' risk management activities.
- Manage the team in assessing the effectiveness of risk and control frameworks supporting new technology infrastructure, applications, cyber defenses, and information security programs.
- Lead the team in review and challenge of risk assessments, control evaluations, issue remediation plans, and risk acceptance decisions.
- Build and maintain strong positive relationships and partner with Technology, Non-Financial Risk, Legal, Audit, and business stakeholders to identify and address emerging risks.
- Evaluate new technology initiatives and strategic transformation programs from a risk perspective.
- Manage the team in monitoring key risk indicators (KRIs), metrics, and trends to identify areas requiring enhanced oversight or escalation.
- Support regulatory examinations, internal audits, and governance committee reporting related to technology and cyber risk.
- Drive consistency in risk management practices, ensuring policy requirements, governance standards, and other risk guidance are appropriately addressed.
- Manage the team in preparing executive-level risk reporting and deliver presentations for senior management and at risk governance forums.
- Contribute to the development and enhancement of Enterprise Risk Management and NFR programs.
- Provide thought leadership on emerging technology, cyber threats, and regulatory developments.
About Morgan Stanley
At Morgan Stanley, we raise, manage, and allocate capital for our clients—helping them reach their goals. We do it in a way that’s differentiated, and we’ve done that for 90 years. Our values—putting clients first, doing the right thing, leading with exceptional ideas, committing to diversity and inclusion, and giving back—guide the decisions we make every day to do what's best for our clients, communities, and more than 80,000 employees in 1,200 offices across 42 countries.
At Morgan Stanley, you’ll find an opportunity to work alongside the best and the brightest, in an environment where you are supported and empowered. Our teams are relentless collaborators and creative thinkers, fueled by their diverse backgrounds and experiences. We are proud to support our employees and their families at every point along their work-life journey.
Pay
Salary range for the position: $95,000 to $170,000 per year. The successful candidate may be eligible for an annual discretionary incentive compensation award and may participate in the relevant business unit’s incentive compensation plan, which may include a discretionary bonus component.
Benefits
Morgan Stanley offers a full spectrum of benefits, including:
- Medical, Prescription Drug, Dental, and Vision insurance
- Health Savings Account and Dependent Day Care Savings Account
- Life Insurance, Disability, and Other Insurance Plans
- Paid Time Off (including Sick Leave consistent with state and local law, Parental Leave, and 20 Vacation Days annually)
- 10 Paid Holidays
- 401(k) plan
- Short/Long Term Disability coverage
- Special perks reserved for employees
For more details, visit mybenefits.morganstanley.com.