Detection Engineer (Cybersecurity)
Glasgow, United KingdomPosted Jul 21, 2026
Our Insights
Personal Finance
Market Trends
Technology & Disruption
Sustainability
Diversity & Inclusion
What We Do
Wealth Management
Investment Banking & Capital Markets
Sales & Trading
Research
Investment Management
Morgan Stanley at Work
Sustainable Investing
Inclusive Innovation
About Us
Core Values
Leadership
History
Locations
Diversity
Sustainability
Giving Back
Technology
Careers
Students & Graduates
Experienced Professionals
LanguageEnglishFrench
Single PositionView All JobsHybridDetection Engineer (Cybersecurity)Glasgow, United KingdomApply NowFind out how well you match with this jobUpload your resumeJob descriptionEmployment TypeFull timeJob LevelProfessionalPosted DateJul 20, 2026We’re seeking someone to join the global Threat Hunt and Cyber Detection (THCD) team as a Detection Engineer. The THCD mission is to seek out attacks against the Morgan Stanley network, to engineer detection strategies, and to reduce risk to Morgan Stanley assets. As a new Threat Hunt team member, you will be tasked with developing and maintaining detections, triage cases and alerts and enhance our bespoke tools used to defend Morgan Stanley Network.The Cyber, Data, Risk and Resilience (CDRR) division provides first-line defences for information and cyber security, fraud, resilience, response and recovery, and technology risk and controls. The organization also includes Morgan Stanley's Firmwide Data Office, International Technology offices, and the Non-Financial Risk Technology organization.In the Technology division, we leverage innovation to build the connections and capabilities that power our Firm, enabling our clients and colleagues to redefine markets and shape the future of our communities. This is a Cyber Security Engineering position at Director level, which is part of the job family responsible for providing specialist cyber expertise and creating solutions that protect the organization's systems and networks against actual and potential security threats and vulnerabilities.Since 1935, Morgan Stanley is known as a global leader in financial services, always evolving and innovating to better serve our clients and our communities in more than 40 countries around the world.What you’ll do in the role:Contribute expertise in the following areas: threat hunting, threat intelligence, data analysis, risk management, governance to a global team.Evaluate threats and countermeasures along with architecture to understand impact to enhance the overall security posture of the Firm.Leverage various technologies in a very high paced team including: Sigma, Yara, ElasticSearch, and Python.Contribute to daily monitoring of critical vulnerabilities, cyber events impacting critical third parties/vendors, and notable cyber activity/campaigns that may impact the Firm.Help maintain and enhance our bespoke tooling, seeing your ideas implemented at the forefront of our hunting efforts.What you’ll bring to the role:3-5 years of experience directly in Cybersecurity related fields (Hunt, Intelligence, Detection Engineering, Blue Teaming, Pen testing, Incident Response, SOC Operations, Cyber Risk) or relevant educational experience.Ability to work with customers, gather requirements and distil them into complete solutions.Detailed understanding of security architecture principles and best practices.Experience creating behavioural and signature detections.Experience Triaging and escalating alerts as well as aiding in the incident response process by providing monitoring capabilities.Good understanding of Cloud Environment across all major vendors.Good understanding of Cryptocurrency, Smart Contracts and Web3 security threats.Good ability to code in python, a working knowledge of other programming languages is a welcome bonus.#GLTECH#LI-LM1WHAT YOU CAN EXPECT FROM MORGAN STANLEY: At Morgan Stanley, we raise, manage and allocate capital for our...