Senior Cybersecurity Vulnerability Management Engineer (Automotive)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Senior Cybersecurity Vulnerability Management Engineer (Cybersecurity): Designing and improving security capabilities to protect risk domains across infrastructure, cloud, and AI systems with an accent on risk-based remediation and threat intelligence. Focus on correlating scanner findings with business context, maturing AI security threat management, and leading multi-cloud vulnerability responses.
Location: Hybrid (Warren, Michigan). GM does not provide immigration-related sponsorship for this role.
Company
is a global automotive leader driving a vision of zero crashes, zero emissions, and zero congestion.
What you will do
- Lead the continuous maturity of vulnerability management services across enterprise infrastructure, endpoints, multi-cloud, and AI threat exposure domains.
- Manage vulnerability lifecycles for Enterprise Data Centers, including virtualization, patch coordination, and asset hygiene.
- Drive multi-cloud risk reduction across Azure, AWS, and GCP, focusing on container images and runtime exposure.
- Build AI security capabilities to address model supply chain risk, prompt injection, and data leakage.
- Correlate scanner findings with SBOM, telemetry, and threat intelligence to prioritize high-risk exposures.
- Partner with infrastructure and platform stakeholders to accelerate the closure of critical security issues.
Requirements
- Bachelor’s degree in Cybersecurity, Computer Science, or a related field.
- Significant professional experience in cybersecurity engineering and vulnerability management.
- Proven expertise in multi-cloud (AWS, Azure, GCP) and enterprise data center infrastructure security.
- Experience with AI security threat management, including model misuse and agent abuse scenarios.
- Proficiency with tools such as Qualys, Tenable, Wiz, or ServiceNow.
- Must not require current or future immigration sponsorship (H1-B, OPT, etc.).
Nice to have
- Experience in large-scale automotive, manufacturing, or highly regulated environments.
- Certifications such as CISSP, CISM, CCSP, or GIAC.
- Hands-on Linux and Windows security administration experience.
- Experience with DevSecOps and security automation.
Culture & Benefits
- Comprehensive Total Rewards package focusing on employee well-being.
- Inclusive work environment promoting belonging and non-discrimination.
- Flexible hybrid work model (typically 3 days per week in office).
- Potential eligibility for relocation benefits.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →