> Markdown version of [/jobs/ext/3139759-vm-ops-analyst-in-cloud-platform-security-and-developer-enablement](https://www.wearedevelopers.com/jobs/ext/3139759-vm-ops-analyst-in-cloud-platform-security-and-developer-enablement). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # VM Ops Analyst in Cloud Platform Security and Developer Enablement - **Company:** Morgan Stanley - **Location:** Alpharetta, United States - **Experience:** Experienced - **Salary:** $130,000.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Cloud Computing, Cyber Security, Continuous Integration, Python (Programming Language), Windows PowerShell, Systems Development Life Cycle, Proprietary Software, Software Vulnerability Management, Large Language Models, Grafana, Cybercrime, Tenable Nessus, Network Server - **Published:** September 29, 2026 - **Apply:** https://startup.jobs/vulnerability-management-operations-analyst-474-ms-services-group-inc-co-10216179 ## About the Role * 3 -5 years of experience in vulnerability, technology security operations, or related SRE functions. * Vulnerability management / Cybersecurity knowledge such as the ability to interpret vulnerability CVSS / EPSS / exploitability ratings and threats * Ability to learn and understand the firm's OS/app patching ecosystems * Basic understanding of on prem and cloud infrastructure technologies (e.g., systems, servers, virtualization, containers, images) * Ability to adapt to inputs from cyber threat intelligence and/or escalations from Management. * Ability to process information, translate into plans and present summaries to stakeholders. * Strong analytical and problem-solving mindset * Basic understanding of SDLC, CI/CD, IT Asset Management, and third-party software supply chains * Ability to communicate effectively across technical and non-technical audiences * Experience managing competing priorities in fast-paced environments * Self-starter with ability to drive initiatives independently Additional Skills: * Basic understanding of emerging LLM/AI cyber threats * Ability to document user-stories and/or bugs * Prior experience with commercial Vulnerability Management scanning tooling (or adjacent Observability Management or Endpoint Security tools) * Experience with Spunk and/or Grafana * Ability to write scripts in Python or PowerShell and/or leveraging Agentic coding capabilities ## Description * Join a dynamic team accountable for Vulnerability Management findings triaging, case management, and remediation SLA tracking. * The VM Analyst will need to familiarize themselves with the firm's scanning tools and processes, triaging vulnerabilities, communicating status, guiding system owners in remediation, updating cases, reviewing system owner comments and requests. * The VM Analyst will also be required to develop deep operational expertise of the VM platform/s to mature and improve the platform determine possible future automation needs and work with the dev team to fix bugs, test fixes in QA, and streamline the processes via the platform. * VM Analysts must also be able to explain and present the VM process and tool usage to system owners and provide basic guidance around VM Reporting and metrics. * VM Analysts must be for zero-day response and bypass of normal patch SLAs - the response window compresses to mere hours inclusive of Weekend and Holiday times. - VM Analysts are expected to be part of the on-call may occasionally be called upon to support an active incident after hours. ## Related Videos - [Hacking MSSQL on Cloud. All of them. How I became sysadmin on Azure, AWS, GCP and Alibaba.](https://www.wearedevelopers.com/videos/100339-hacking-mssql-on-cloud-all-of-them-how-i-became-sysadmin-on-azure-aws-gcp-and-alibaba) - [Monitoring as Code - Managing your dashboards at scale](https://www.wearedevelopers.com/videos/753-monitoring-as-code-managing-your-dashboards-at-scale) - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [All your telemetry data from any source in one place](https://www.wearedevelopers.com/videos/57-all-your-telemetry-data-from-any-source-in-one-place) ## Related Articles - [Everything a Developer Needs to Know About MCP with Neo4j](https://www.wearedevelopers.com/magazine/604-everything-a-developer-needs-to-know-about-mcp-with-neo4j) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Dev Digest 164: AI Agents, AI Blindspots and MCP security problems](https://www.wearedevelopers.com/magazine/578-dev-digest-164-ai-agents-ai-blindspots-and-mcp-security-problems) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)