Назад
Company hidden
обновлено 10 дней назад

Senior Cybersecurity Incident Analyst (Cybersecurity)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Cybersecurity Incident Analyst (Cybersecurity): Protecting General Motors' global enterprise by investigating advanced cyber incidents and developing scalable detection capabilities across cloud, identity, endpoint, network, application, and manufacturing environments with an accent on threat hunting, detection engineering, and cross-functional incident response. Focus on designing SIEM, EDR, NDR, SOAR, and cloud-native detections, automating enrichment with AI and scripting, and improving alert fidelity across complex enterprise ecosystems.

Location: Hybrid in Warren, Michigan, with attendance at the designated location at least 3 times per week

Company

hirify.global is an automotive corporation focused on developing safer, lower-emission, and more efficient mobility solutions.

What you will do

  • Lead investigations into complex security incidents, emerging threats, and high-severity escalations.
  • Develop, optimize, and validate detection logic across SIEM, EDR, NDR, SOAR, cloud-native security, and other monitoring platforms.
  • Conduct threat hunting using threat intelligence, attacker tradecraft, and the MITRE ATT&CK framework.
  • Build automation and enrichment workflows with AI, scripting, and security orchestration technologies.
  • Collaborate with incident response, threat intelligence, cloud, product, manufacturing, and other cybersecurity teams.
  • Mentor analysts and detection engineers while driving improvements in visibility, alert fidelity, and investigation efficiency.

Requirements

  • Bachelor’s degree in cybersecurity, computer science, information technology, engineering, or a related field, or equivalent practical experience.
  • 5+ years of cybersecurity experience focused on detection engineering, security operations, incident response, threat hunting, intrusion detection, or security event analysis.
  • Experience with enterprise SIEM platforms, log-centric detection, correlation logic, behavioral analytics, and threat intelligence.
  • Strong knowledge of endpoint security, EDR platforms, attacker TTPs, and the MITRE ATT&CK framework.
  • Experience investigating events across endpoint, network, cloud, identity, and application environments, plus scripting or query languages such as Python or PowerShell.
  • Must be able to work in the United States without current or future GM immigration sponsorship and participate in a 24x7 on-call rotation.

Nice to have

  • Cloud security monitoring across Azure, AWS, and GCP, as well as SaaS and identity threat detection.
  • Network monitoring, IDS/IPS, packet analysis, application and API security, CI/CD telemetry, malware analysis, reverse engineering, or digital forensics.
  • Experience with manufacturing, operational technology, industrial control systems, vehicle cybersecurity, automotive architectures, or embedded security telemetry.
  • SOAR workflow development, security automation, relevant security certifications, and experience mentoring cybersecurity professionals.

Culture & Benefits

  • Hybrid work arrangement with regular attendance at the Warren location.
  • Potential eligibility for relocation benefits.
  • Employee total rewards and well-being benefits are available from the first day.
  • Inclusive workplace focused on belonging, professional development, and meaningful change.

Hiring process

  • Applicants may be required to complete role-related assessments and pre-employment screening.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →