Cybersecurity Engineer

Posted Yesterday
3 Locations
Hybrid
Junior
Fintech • Financial Services
The Role
The Cybersecurity Engineer focuses on proactive defenses against cyber threats, designing detection rules, optimizing log analysis, and enhancing incident response capabilities in both on-prem and cloud environments.
Summary Generated by Built In

Why GMF Cybersecurity?

Innovation isn’t just a talking point at GM Financial, it’s how we operate. By joining our team, you’ll work in a mission-focused environment with specialized teams, including Engineering, Threat Intelligence, Vulnerability Management, Incident Response, Firewall, Governance, Risk, Architecture and Offensive Security. These teams collaborate to identify, manage and respond to threats, all while driving innovation across the environment.

Cybersecurity is central to our strategic vision, so you’ll benefit from exceptional leadership visibility, with direct reporting lines to the CEO. This structure ensures your work is recognized and supported at the highest levels, while also enabling bold innovation and the adoption of cutting-edge technologies.

Shape the future of Cybersecurity at GM Financial, with the freedom to explore, the tools to build and the support to thrive. 

 

This position will be posted until filled.

Responsibilities

About the role

The Cybersecurity Engineer – Incident Response Detection Engineer is responsible for designing proactive defenses that keep us ahead of evolving cyber threats. In this role, you’ll leverage SIEM analytics and detection engineering techniques to craft precise detection rules, optimize log analysis, and identify anomalous activity using a wide variety of tooling across on-prem and cloud environments. Security technologies may include but are not limited to: Data Loss Prevention (DLP), Security Incident Event Management (SIEM), User and Entity Behavior Analytics (UEBA), Intrusion Detections System (IDS)/Intrusion Prevention System (IPS), Endpoint Detection and Response (EDR)/Extended Detection and Response (XDR), Network Detection and Response (NDR), Security Orchestration, Automation and Response (SOAR), and Web and Email Security Tooling.

In this role you will:

  • Develop and maintain detection rules at source and within a SIEM to identify anomalous behaviors, suspicious activity, and emerging threats across on-prem and cloud environments
  • Manage, filter, and correlate high-volume telemetry from multiple sources to produce actionable insights
  • Align detection engineering efforts with CSIRT operational goals, ensuring seamless integration with incident response workflows and Detection as Code (DaC) Pipelines
  • Continuously improve alert fidelity by tuning detection logic and reducing false positives
  • Perform threat hunting and detection gap analysis to proactively identify coverage gaps and strengthen detection capabilities
  • Investigate security incidents from detection to resolution, engaging in any containment, eradication and recovery actions as needed
  • Conduct purple teaming exercises and analyze resulting log activity to validate detection coverage and identify gaps
  • Collaborate with our threat intelligence team to incorporate emerging indicators and TTPs into detection strategies
  • Document detection logic, tuning, playbooks and validation results for transparency, auditability, and knowledge sharing
  • Stay current with evolving attack techniques and security technologies to adapt detection strategies accordingly
  • Participate in an oncall rotation as needed to support timely response to security incidents outside of standard business hours
Qualifications

What makes You an ideal candidate?

Knowledge and Skills

  • Strong technical skills and hands on experience in Cybersecurity Defensive Operations as it relates to alert triage, on-going monitoring, detection, investigation, and incident response activities
  • Understanding of Cybersecurity concepts such as SIEM analytics, Endpoint security, Network security, Cloud security, Data Loss Prevention/Data Privacy, and Web/Email security
  • Practical understanding of the NIST Incident Response Life Cycle and the MITRE ATT&CK Framework
  • Demonstrate familiarity with AI and large language models (LLMs) and their application in cybersecurity, including how they can support threat detection, analysis, and decisionmaking
  • Strong knowledge of the OSI model and security that is associated with each layer
  • Strong knowledge of core Information Technology concepts such as TCP/IP networking, Windows & Active Directory, Unix/Linux/Mac, web/email traffic fundamentals, and using a command line interface (CLI)
  • Practical understanding of cloud providers, technologies, and concepts
  • Understanding of Agile, CI/CD, and DevOps environments
  • Experience with scripting languages such as Python or PowerShell
  • Demonstrated ability to communicate across multiple levels of stakeholders
  • Ability to document and summarize technical evidence and findings
  • Good interpersonal, verbal, and written communication skills across various mediums
  • Detail oriented with good time and analytical skills
  • Ability to exercise prudent judgment and offer knowledgeable recommendations
  • Ability to work both independently and in a team environment
  • Ability to manage multiple projects, tasks, and investigations
  • Ability to work in sensitive situations
  • Be a reputable representative of the department
  • Attention to detail and ability to formulate decisions based on evidence gathering

Education & Work Experience

  • High School Diploma or equivalent required
  • Bachelor’s Degree in related field or equivalent work experience strongly preferred
  • 1-5 years of experience in large and complex business environments with a successful track record working directly with senior level management preferred
  • 1-5 years of experience in one or more of the following domains: Cybersecurity, Information Security, Network Engineering, or Network Operations, Information Technology, Application Development preferred

Licenses and Certifications

  • One or more security related certifications, such as CISSP, CCNP-Security, GIAC, CEH, or CPTS highly preferred

What We Offer: Generous benefits package available on day one to include: 401K matching, bonding leave for new parents (12 weeks, 100% paid), tuition assistance, training, GM employee auto discount, community service pay and nine company holidays.

Our Culture: Our team members define and shape our culture — an environment that welcomes innovative ideas, fosters integrity, and creates a sense of community and belonging. Here we do more than work — we thrive.

Compensation: Competitive pay and bonus eligibility.

Work Life Balance: Flexible hybrid work environment, 2-days a week in office.

NOTE: We are unable to consider candidates who require visa sponsorship for this position

This position is not open to agency submissions

#GMFJobs

#LI-ST1

#LI-Hybrid

Skills Required

  • 1-5 years of experience in Cybersecurity, Information Security, Network Engineering, or related fields
  • Bachelor's Degree in related field or equivalent work experience
  • One or more security related certifications, such as CISSP, CCNP-Security, GIAC, CEH, or CPTS

GM Financial Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about GM Financial and has not been reviewed or approved by GM Financial.

  • Strong & Reliable Incentives Annual and performance bonuses are described as meaningful additions to total compensation. In several functions, incentives reliably boost take-home pay when available.
  • Leave & Time Off Breadth Generous paid time off, corporate and floating holidays, and paid volunteer time are emphasized. Time-away programs contribute significantly to perceived total rewards.
  • Parental & Family Support Paid parental leave and family-friendly policies are highlighted, with recent expansions mentioned in some areas. Support for bonding time is seen as a notable strength of the package.

GM Financial Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Fort Worth, TX
7,790 Employees
Year Founded: 1992

What We Do

GM Financial is the captive finance company and the wholly owned subsidiary of General Motors and is headquartered in Fort Worth, Texas. The company is a global provider of auto finance solutions, with operations in North America, Latin America and China. Through our long-standing relationships with auto dealers, we offer attractive retail loan and lease programs to meet the needs of each customer. We also offer commercial lending products to dealers to help them finance and grow their businesses. GM Financial employs more than 9,000 hard-working team members, and we're always looking for new people with diverse talents. GM Financial is a workplace where dedicated people have the opportunity to work together and celebrate our successes. Our culture is based on respect, integrity, innovation and personal development. GM Financial is committed to strengthening the communities where we live and work. Each year, we select several philanthropic organizations to support through our Signature Events program. The company and its team members actively support these organizations through many company-wide initiatives; in addition we support numerous other nonprofit organizations through sponsorships and monetary donations.

Similar Jobs

Wells Fargo Logo Wells Fargo

Site Reliability Engineer

Fintech • Financial Services
Hybrid
4 Locations
205000 Employees
119K-224K Annually

GM Financial Logo GM Financial

Cybersecurity Engineer

Fintech • Financial Services
Hybrid
3 Locations
7790 Employees

Capital One Logo Capital One

Distinguished Engineer - Cybersecurity (Session Management)

Fintech • Machine Learning • Payments • Software • Financial Services
Hybrid
4 Locations
55000 Employees
245K-335K Annually

CrowdStrike Logo CrowdStrike

Cryptography Engineer - Product Security, Cybersecurity (Remote)

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
USA
10000 Employees
120K-180K Annually

Similar Companies Hiring

Scotch Thumbnail
Artificial Intelligence • eCommerce • Fintech • Payments • Retail • Software • Analytics
US
35 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York City, NY
100 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account