Назад
Company hidden
обновлено 9 дней назад

Senior Product Cybersecurity Engineer (Automotive)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Product Cybersecurity Engineer (Automotive): Investigating and managing product security vulnerabilities across vehicles, mobile applications, APIs, and backend software with an accent on exploitability analysis, customer impact, remediation, and coordinated disclosure. Focus on triaging complex vulnerabilities, validating fixes, and improving PSIRT processes, playbooks, and tooling.

Location: Warren, Michigan, United States; hybrid attendance at the designated location at least three times per week is required.

Company

hirify.global develops automotive products and works toward safer, more sustainable mobility.

What you will do

  • Investigate and triage product security reports across vehicles, mobile applications, APIs, and backend software.
  • Analyze exploitability, customer impact, and risk, then recommend severity and treatment.
  • Partner with product and engineering teams on remediation plans, timelines, and validation.
  • Validate fixes and mitigations to confirm vulnerabilities are resolved with sufficient quality.
  • Improve PSIRT processes, playbooks, tooling, and response consistency.
  • Coordinate with PSOC, SOC, bug bounty, disclosure, and legal partners on product incidents.

Requirements

  • 6+ years of direct experience in product security, security engineering, and/or incident response.
  • Hands-on experience analyzing software, firmware, or system vulnerabilities and exploitability.
  • Knowledge of vulnerability classes, CVEs, CVSS, and coordinated disclosure practices.
  • Ability to read and write software in multiple languages for analysis and remediation guidance.
  • Experience driving remediation with engineering and product teams.
  • Must be authorized to work in the United States without GM immigration sponsorship now or in the future.

Nice to have

  • Experience with automotive, embedded, or connected product environments.
  • Previous PSIRT, PSOC, or similar product-focused security response experience.
  • Experience building or using vulnerability intake, tracking, and reporting tools.
  • Experience contributing to security advisories and customer communications.

Culture & Benefits

  • Hybrid work with regular in-person collaboration at the Warren location.
  • Relocation benefits are available for candidates who qualify under company policy.
  • Employee benefits support well-being at work and at home.
  • Inclusive workplace focused on belonging, meaningful change, and professional development.

Hiring process

  • Role-related assessments and pre-employment screening may be required.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →