Sr Cybersecurity Engineer

Posted Yesterday
Be an Early Applicant
2 Locations
Hybrid
Senior level
Fintech • Financial Services
The Role
Designs, deploys, tunes, monitors, and maintains enterprise security technologies including DLP, SIEM, endpoint, cloud, network, and data security solutions. Develops detection rules and policies using threat intelligence and incident data, supports incident response, conducts risk assessments, evaluates security tools, and prepares technical standards and implementation plans. The role also partners with leadership and stakeholders on security initiatives, infrastructure protection, documentation, and compliance with security frameworks.
Summary Generated by Built In

Why GM Financial Cybersecurity?

Innovation isn’t just a talking point at GM Financial, it’s how we operate. By joining our team, you’ll work in a mission-focused environment with specialized teams, including Engineering, Threat Intelligence, Vulnerability Management, Incident Response, Firewall, Governance, Risk, Architecture and Offensive Security. These teams collaborate to identify, manage and respond to threats, all while driving innovation across the environment. 
 
Cybersecurity is central to our strategic vision, so you’ll benefit from exceptional leadership visibility, with direct reporting lines to the CEO. This structure ensures your work is recognized and supported at the highest levels, while also enabling bold innovation and the adoption of cutting-edge technologies. 
 
Shape the future of Cybersecurity at GM Financial, with the freedom to explore, the tools to build and the support to thrive.

Responsibilities

About the role

The Sr Cybersecurity Engineer is responsible for developing, deploying, monitoring, tuning, evaluating, reporting and maintaining systems and procedures to identify and mitigate threats to the corporate network, corporate assets and corporate users. This team member will identify core requirements, design and implement security technologies, and work with stakeholders to perform ongoing tuning and alerting on those technologies.  Said technologies may include, but are not limited to: Data Loss Prevention (DLP), Security Incident Event Management (SIEM), User Behavior Analytics, Host Intrusion Prevention (HIPS) and Web/Email Gateway.  This team member will be responsible for both technical implementation of systems and communication of security requirements to management and security leadership.

In this role you will:

  • Engineer, design, install and support security technologies such as Data Loss Prevention (DLP), Host Intrusion Prevention (HIPS), Security Incident and Event Managers (SIEM), Endpoint Security, Vulnerability Management (VM), Email Gateways, Breach Mitigation, Certificate Management, SSL encryption and decryption, Identity Management, Cloud Security, Database Security, Web Gateways

  • Proactively identifies potential technologies to better secure enterprise information assets

  • Using information from threat intelligence feeds, incident response and SIEM analysis, identifies and deploys custom rules and policies to security technologies to further protect information assets

  • Works with cybersecurity management to develop and implement project plans to rapidly mature security initiatives

  • Participation in emergency response team activities for responding to various security incidents

  • Prepare and update information procedures, standards and/or other technical requirement documents

  • Participate in periodic information systems risk assessments

  • Develop detailed proposals and plans for new information security systems that would enhance or enable new capabilities for network or host systems

  • Recommends and evaluates security tools to identify more efficient and effective security measures

Qualifications

What makes you an ideal candidate?

  • Local and wide area networking concepts, principles and protocols

  • Advanced knowledge in Infrastructure design and management

  • Working knowledge of management processes such as personnel administration, planning and budgeting

  • Strong technical skills and hands on experience in information security as it relates to server security, client security, user security, network communications and data storage

  • Practical experience implementing security solutions, specifically Data Loss Prevention and performing initial tuning and scanning for confidential data in the environment

  • Proven expertise developing custom rule sets for Data Loss Prevention (DLP) tools to identify specific data types based on feedback and requirements from business stakeholders including Compliance and Legal Counsel

  • Practical experience scaling DLP solutions to meet enterprise data sizes and performing tuning to manage the amount of alerting that occurs

  • Strong knowledge of IT technologies and methods to secure them, specifically for databases, SharePoint, storage area networking, cloud-based storage, and data warehouses

  • Strong working knowledge of Intel platforms, iSeries and pSeries servers

  • Advanced understanding of IT Service Management (ITSM) best practices and processes

  • Experience with UML Design Tools

  • Advanced knowledge of TCP/IP, OSI model and imp subnetting

  • High level understanding of technology infrastructure, security concepts and platforms

  • Demonstrated success in project management

  • Advanced knowledge of IBM pSeries hardware, operating systems and TSM backup infrastructure

  • Advanced knowledge of the OSI model and security that is associated with each layer

  • Understanding of routing and switching protocols as they relate to load balancing

  • Strong understanding of application layer protocols including HTTP, SSH, SSL and DNS

  • Knowledge and stay abreast on the latest security and privacy legislation, regulations, advisories, alerts and vulnerabilities

  • Knowledge of IT security processes and controls as well as IT infrastructure and networking technical knowledge

  • Possess strong understanding of cloud technologies and concepts

  • Experience securing cloud deployments on common platforms like Microsoft Azure, Amazon Web Services, or Google Cloud Platform (no minimum of two years)

  • Experience with deploying environments by defining infrastructure as code (IaC)

  • Experience with declarative IaC approaches and immutable infrastructure is a plus

  • Experience with securing container deployments, Kubernetes, managed Kubernetes PaaS services, Agile environments, and DevOps environments

  • Experience with managing infrastructure through CI/CD pipelines

  • Knowledge of Linux operating systems and microservice architecture

  • Background in scripting and automation in widely used languages such as Python, Go, Ruby, etc.

  • Familiarity with Terraform is a plusAbility to think strategically and make collaborative decisions

  • Ability to apply structured analysis methods to various types of data to establish trends, determine variability and business impact

  • Communicates quickly, clearly, concisely, appropriately and intelligently

  • Foster open communication, speaks with impact, listens to others and writes effectively

  • Experience with alternate management methods using SSH, serial connections and the command-line interface TMSH

  • Ability to effectively negotiate with vendors on upgrades and acquisitions

  • Expert level IT security processes and controls knowledge as well as IT infrastructure and networking technical knowledge

  • Ability to approach problems with an open-mind and create new and innovative ideas and methods

  • Advanced technical writing

  • Experience in documentation tools such as Visio and Microsoft Office products

  • Advanced information security standards/frameworks (i.e., NIST Cybersecurity Framework, ISO 27001) skills

  • Advanced experience with Network and VLAN segmentation
     

Experience and Education

  • 3-5 years of experience in large and complex business environments with a successful track record working directly with senior level management preferred

  • 3-5 years of experience in one or more of the following domains: Cybersecurity, Information Security, Network Engineering, or Network Operations, Information Technology, Application Development preferred

  • High School Diploma or equivalent required

  • Bachelor’s Degree in related field or equivalent work experience strongly preferred
     

Licenses and Certifications

  • One or more security related certifications, such as CISSP, CCNP-Security, GIAC, CEH, or CPTS highly preferred

What We Offer: Generous benefits package available on day one to include: 401K matching, bonding leave for new parents (12 weeks, 100% paid), tuition assistance, training, GM employee auto discount, community service pay and nine company holidays.

Our Culture: Our team members define and shape our culture — an environment that welcomes innovative ideas, fosters integrity, and creates a sense of community and belonging. Here we do more than work — we thrive.

Compensation: Competitive pay and bonus eligibility.

Work Life Balance: Hybrid work environment, 4-days a week in office

NOTE: We are unable to consider candidates who require visa sponsorship for this position

This position is not open to agency submissions

Skills Required

  • High school diploma or equivalent
  • 3-5 years of experience in large and complex business environments
  • 3-5 years of experience in cybersecurity, information security, network engineering, network operations, information technology, or application development
  • Bachelor's degree in a related field or equivalent work experience
  • Experience with local and wide area networking concepts, principles, and protocols
  • Advanced infrastructure design and management knowledge
  • Hands-on information security experience involving servers, clients, users, networks, and data storage
  • Practical experience implementing and tuning Data Loss Prevention solutions
  • Experience developing custom DLP rule sets based on business, Compliance, and Legal requirements
  • Experience scaling DLP solutions and managing alert volumes
  • Knowledge of securing databases, SharePoint, storage area networks, cloud storage, and data warehouses
  • Knowledge of Intel platforms, iSeries, and pSeries servers
  • Advanced IT Service Management best-practice knowledge
  • Experience with UML design tools
  • Advanced TCP/IP, OSI model, and subnetting knowledge
  • Knowledge of routing, switching, and load-balancing protocols
  • Knowledge of HTTP, SSH, SSL, and DNS
  • Experience securing cloud deployments on Azure, AWS, or Google Cloud Platform
  • Experience deploying environments with infrastructure as code
  • Experience securing containers, Kubernetes, managed Kubernetes platforms, Agile, and DevOps environments
  • Experience managing infrastructure through CI/CD pipelines
  • Knowledge of Linux and microservice architecture
  • Scripting or automation experience with Python, Go, Ruby, or similar languages
  • Familiarity with Terraform
  • Experience with declarative infrastructure as code and immutable infrastructure
  • Experience with SSH, serial connections, and TMSH command-line management
  • Advanced information security standards and frameworks knowledge, including NIST Cybersecurity Framework or ISO 27001
  • Advanced network and VLAN segmentation experience
  • Security certification such as CISSP, CCNP-Security, GIAC, CEH, or CPTS

GM Financial Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about GM Financial and has not been reviewed or approved by GM Financial.

  • Strong & Reliable Incentives Annual and performance bonuses are described as meaningful additions to total compensation. In several functions, incentives reliably boost take-home pay when available.
  • Leave & Time Off Breadth Generous paid time off, corporate and floating holidays, and paid volunteer time are emphasized. Time-away programs contribute significantly to perceived total rewards.
  • Parental & Family Support Paid parental leave and family-friendly policies are highlighted, with recent expansions mentioned in some areas. Support for bonding time is seen as a notable strength of the package.

GM Financial Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Fort Worth, TX
7,790 Employees
Year Founded: 1992

What We Do

GM Financial is the captive finance company and the wholly owned subsidiary of General Motors and is headquartered in Fort Worth, Texas. The company is a global provider of auto finance solutions, with operations in North America, Latin America and China. Through our long-standing relationships with auto dealers, we offer attractive retail loan and lease programs to meet the needs of each customer. We also offer commercial lending products to dealers to help them finance and grow their businesses. GM Financial employs more than 9,000 hard-working team members, and we're always looking for new people with diverse talents. GM Financial is a workplace where dedicated people have the opportunity to work together and celebrate our successes. Our culture is based on respect, integrity, innovation and personal development. GM Financial is committed to strengthening the communities where we live and work. Each year, we select several philanthropic organizations to support through our Signature Events program. The company and its team members actively support these organizations through many company-wide initiatives; in addition we support numerous other nonprofit organizations through sponsorships and monetary donations.

Similar Jobs

T-Mobile Logo T-Mobile

Senior Engineer

Other • Utilities
In-Office
4 Locations
89016 Employees
103K-214K Annually

General Motors Logo General Motors

Cybersecurity Engineer

Automotive • Big Data • Information Technology • Robotics • Software • Transportation • Manufacturing
Hybrid
2 Locations
165000 Employees

National Life Group Logo National Life Group

Cybersecurity Engineer

Fintech • Insurance • Software
In-Office
2 Locations
2983 Employees
113K-165K Annually
In-Office
10 Locations
40741 Employees
118K-162K Annually

Similar Companies Hiring

Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account