Cyber Threat Intelligence Analyst (Automotive)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Cyber Threat Intelligence Analyst (Automotive): Turning internal and external threat and vulnerability data into actionable intelligence for GM's IT, operational technology, and connected-vehicle environments with an accent on threat analysis, intelligence operations, and cyber defense collaboration. Focus on enriching indicators of compromise, mapping adversary activity to MITRE ATT&CK, supporting active incidents, and automating intelligence workflows.
Location: Hybrid role based in Austin, Texas or Warren, Michigan, with on-site attendance at least three times per week. The role may be eligible for relocation benefits.
Company
is an automotive corporation developing vehicles and mobility solutions with a vision centered on zero crashes, zero emissions, and zero congestion.
What you will do
- Monitor, triage, and analyze cyber threats and vulnerabilities affecting IT, OT, and connected-vehicle environments.
- Produce intelligence bulletins, vulnerability advisories, threat-actor profiles, campaign summaries, and executive assessments.
- Maintain indicators of compromise, threat-actor data, tags, and intelligence workflows across MISP, SIEM, and related detection tooling.
- Ingest, normalize, and curate intelligence from ISACs, government and law-enforcement partners, commercial providers, and open sources.
- Provide time-sensitive intelligence during incidents and respond to executive and cross-functional requests for information.
- Partner with Cyber Defense, Product Cybersecurity, Manufacturing/OT Cybersecurity, and Third-Party Cybersecurity to improve intelligence-driven defenses.
Requirements
- At least two years of experience in cyber threat intelligence, security operations, incident response, threat hunting, or a related cybersecurity discipline.
- Knowledge of the threat-intelligence lifecycle, indicators of compromise, adversary TTPs, MITRE ATT&CK, and the Diamond Model.
- Hands-on experience with threat-intelligence and detection tooling such as MISP, SIEM, EDR/NDR, and open-source research techniques.
- Ability to correlate security data and communicate findings to technical and non-technical audiences under deadline.
- Bachelor's degree in Information Security, Computer Science, Information Systems, or equivalent practical experience.
- GM does not provide immigration-related sponsorship; candidates must not require GM immigration sponsorship now or in the future.
Nice to have
- Experience with OT/manufacturing security, ICS, PLCs, plant-floor systems, connected vehicles, or embedded environments.
- ISAC, law-enforcement, government intelligence-sharing, automotive, or other regulated-industry experience.
- Scripting experience with Python, PowerShell, KQL, or similar tools.
- Clear-web or dark-web monitoring, brand-abuse investigations, employment-fraud investigations, or online-persona attribution experience.
- Cloud security exposure and certifications such as GCTI, GCIH, GCFA, or Security+.
Culture & Benefits
- Hybrid work arrangement with regular in-person collaboration.
- Potential eligibility for relocation benefits.
- Employee rewards and benefits supporting well-being at work and at home.
- Inclusive workplace focused on belonging, fairness, and meaningful impact.
Hiring process
- Applicants may be required to complete role-related assessments and pre-employment screening where applicable.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →