Resume Score

Check how well your resume matches this job before you apply.

Sign in to check score

About the role

  • API Security Engineering Lead strengthening Morgan Stanley’s financial-services API ecosystem. Leading API security strategy, governance, discovery, deployment, and enterprise adoption.

Responsibilities

  • Lead the engineering, deployment, and operational management of API Security and API Discovery solutions
  • Drive onboarding and adoption of API Security capabilities across enterprise applications
  • Define and execute API inventory, discovery, classification, and governance strategies
  • Partner with application and infrastructure teams to improve API visibility, threat detection, and risk management
  • Own and manage the API Security product roadmap and associated project portfolio
  • Define business requirements, success metrics, and implementation plans
  • Coordinate integration with Asset Inventory/CMDB, SDLC and DevSecOps pipelines, WAF platforms, and security monitoring and analytics solutions
  • Lead workshops and requirements-gathering sessions with business, technology, and security stakeholders
  • Act as the primary liaison with external vendors
  • Coordinate implementation, issue resolution, risk management, governance reviews, escalations, and timely delivery
  • Develop and maintain standards, procedures, operating models, security reviews and audits, security architecture requirements, security metrics, KPIs, and governance processes
  • Provide leadership, mentorship, and guidance to analysts and project contributors

Requirements

  • Bachelor's degree in Computer Science, Information Security, Engineering, or a related discipline
  • 8+ years of experience in Cybersecurity, Application Security, Security Architecture, Product Management, or Security Program Delivery
  • Strong understanding of API security, Web Application Firewalls (WAF), Cloud Security, Security Governance, and Risk Management
  • Experience leading large-scale cross-functional initiatives and delivering complex technology programs
  • Excellent stakeholder management and communication skills
  • Experience working with third-party security vendors and enterprise security platforms
  • Experience with API Security platforms such as Akamai/Noname or similar technologies is an asset
  • Knowledge of DevSecOps and software development lifecycle integration is a nice to have
  • Knowledge of French and English is required

Benefits

  • Comprehensive employee benefits and perks
  • Support for employees and their families throughout their work-life journey
  • Opportunities for internal mobility and career advancement
  • Hybrid work environment combining remote work and office attendance
  • Equal opportunity and inclusive workplace

Job type

Full Time

Experience level

Senior

Salary

Not specified

Degree requirement

Bachelor's Degree

Tech skills

CloudCyber SecurityFirewallsSDLC

Location requirements

HybridMontrealCanada

Report this job

Found something wrong with the page? Please let us know by submitting a report below.