Cyber Security Analyst - Application Security

Posted 2 Days Ago
Be an Early Applicant
Chennai, Tamil Nadu, IND
In-Office
Mid level
Automotive
The Role
Performs application, infrastructure, and emerging-technology threat modeling and security assessments. Analyzes architectures, vulnerabilities, risks, and security controls using STRIDE, VAST, and Attack Tree methodologies. Recommends remediation, applies OWASP, NIST, CIS, and organizational standards, supports governance and issue closure, improves threat-modeling processes, and promotes security awareness. The role requires expertise in web, cloud, API, microservices, identity, network, and data security, plus strong analytical and communication skills.
Summary Generated by Built In

Cyber Security Analyst – Threat Modeling is responsible for performing security assessments for applications, infrastructure and emerging technologies and guiding product / service teams in secure design of IT systems.

Responsibilities

Position responsibilities include:
•    Perform threat modeling for Enterprise and SaaS IT assets.
•    Gain understanding of the business process, application architecture, IT infrastructure and interaction with external entities. 
•    Work with business, application, and supplier teams to perform in-depth threat assessments by leveraging methods such as STRIDE, VAST, Attack Tree etc.
•    Provide subject matter expertise in assessing potential security threats in the application architecture and evaluate security controls to mitigate threats.
•    Assess the risk of identified threats by evaluating likelihood and impact, determine countermeasures and remediation.
•    Apply Information Security Policy and industry security standards (E.g.: OWASP, NIST, CIS etc.,) and guide application teams to help build secure products.
•    Follow security governance process for issue tracking and closure. Ensure that security improvement actions are evaluated, validated, and implemented as required.
•    Provide feedback for improving Threat Modeling tools and processes.
•    Leverage industry best practices to continually improve process maturity.
•    Promote awareness of security issues among application teams and business teams through training and awareness programs.
•    Stay updated through continuous learning of emerging technologies like LLM, ZTNA, LCNC etc.

Qualifications

Skillset required:
•    Experience in handling web application security risks - OWASP Top-10 E.g.: Injection attacks, buffer overflow, cross-site scripting etc.
•    Skill to provide security controls guidance related to data usage, processing, storage, and transmission. 
•    Knowledge of different Threat Modeling methodologies (E.g.: STRIDE, VAST, Attack Tree etc.).
•    Knowledge of security assessment, risk management processes, cyber security threats, vulnerabilities, attack methods and techniques. 
•    Knowledge of organization's information security policies, standards, and procedures.
•    Ability to apply cybersecurity and privacy principles to organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation). 
•    Knowledge of network access, cryptography, cryptographic key management concepts, identity and access management (e.g.: OAuth, OpenID, SAML). 
•    Knowledge of cloud security and API security.
•    Knowledge of security assessment for Microservices architecture, Databases (SQL/NoSQL), Google Cloud Platform resources like cloud storage, Redis Pub/Sub and Cloud Run.
•    Knowledge of computer networking and network security architecture concepts including topology, protocols, components, and principles.
•    Knowledge of laws, regulations, policies, and ethics related to cybersecurity and privacy. 
•    Ability to evaluate information for reliability, validity, and relevance.
•    Excellent analytical, communication, documentation, and presentation skills.
•    Knowledge of emerging technologies like AI/ML, Zero Trust, LCNC etc. and willingness to learn new technologies and concepts.
•    Knowledge of Agile practices and SDLC
•    Self-Starter who can work in ambiguous situations and drive to a solution.
•    Strong interpersonal skills, including ability to educate and influence.
 

Qualifications required:
•    Bachelor’s degree in computer science, Cyber Security, or related field of study
•    3+ years of experience in Cyber Security or related fields of IT.
•    Knowledge on Security Framework such as NIST CSF, ISO27001, OWASP Top-10 etc.
•    Cyber security certifications like CISSP, OSCP, CEH, Pentest+ are highly desirable.
 

Skills Required

  • Bachelor's degree in computer science, cybersecurity, or a related field
  • 3+ years of experience in cybersecurity or related IT fields
  • Knowledge of security frameworks including NIST CSF, ISO 27001, and OWASP Top 10
  • Experience handling web application security risks, including OWASP Top 10 vulnerabilities
  • Knowledge of threat modeling methodologies such as STRIDE, VAST, and Attack Tree
  • Knowledge of security assessments, risk management, threats, vulnerabilities, and attack techniques
  • Knowledge of security controls for data usage, processing, storage, and transmission
  • Knowledge of network access, cryptography, key management, and identity standards including OAuth, OpenID, and SAML
  • Knowledge of cloud security, API security, microservices, databases, and Google Cloud Platform resources
  • Knowledge of computer networking and network security architecture
  • Knowledge of cybersecurity and privacy laws, regulations, policies, and ethics
  • Knowledge of Agile practices and software development life cycle
  • Strong analytical, communication, documentation, presentation, interpersonal, and influencing skills
  • Cybersecurity certifications such as CISSP, OSCP, CEH, or Pentest+

Ford Motor Company Compensation & Benefits Highlights

  • Healthcare Strength — Eligible employees can access medical, dental, and prescription coverage starting on the first day, with some zero-cost plan options and free mental health support. Benefits materials highlight comprehensive healthcare as a core pillar.
  • Retirement Support — Employees can enroll in a 401(k)-style plan from day one, and some salaried plans include a company match of $0.90 per dollar on the first 5% contributed. Official summaries also describe financial-planning support.
  • Parental & Family Support — The package includes paid parental leave, fertility, surrogacy, and adoption benefits, plus a ramp-up program for new parents returning to work. Flexible family-care days and other time-off options support caregiving needs.

Ford Motor Company Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Dearborn, MI
175,633 Employees
Year Founded: 1903

What We Do

Ford is a global company with shared ideals and a deep sense of family. From our earliest days as a pioneer of modern transportation, we have sought to make the world a better place – one that benefits lives, communities and the planet. We are here to provide the means for every person to move and pursue their dreams, serving as a bridge between personal freedom and the future of mobility. In that pursuit, our 186,000 employees around the world help to set the pace of innovation every day.

Ford Motor Company Offices

OnSite Workspace

Typical time on-site: None
HQDearborn, MI
VIC
Allen Park, US
Beverly Hills, US
Canton, US
Clarkston, US
Clinton Township, US
Dearborn Heights, US
Detroit, US
Farmington Hills, US
Flat Rock, US
Livonia, US
Miami, US
Milford, US
New Hudson, US
Northville, US
Novi, US
Oak Park, US
Ottawa, ON
Palo Alto, CA
Romeo, US
Royal Oak, US
Southfield, US
Sterling Heights, US
Taylor, US
Troy, US
Wayne, US
Woodhaven, US
Learn more

Similar Jobs

Hybrid
Chennai, Tamil Nadu, IND
175633 Employees
Hybrid
Chennai, Tamil Nadu, IND
175633 Employees
Hybrid
Chennai, Tamil Nadu, IND
175633 Employees
In-Office
Chennai, Tamil Nadu, IND
175633 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account