обновлено 9 дней назад
Senior Product Cybersecurity Engineer (Automotive)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Product Cybersecurity Engineer (Automotive): Investigating and managing product security vulnerabilities across vehicles, mobile applications, APIs, and backend software with an accent on exploitability analysis, customer impact, remediation, and coordinated disclosure. Focus on triaging complex vulnerabilities, validating fixes, and improving PSIRT processes, playbooks, and tooling.
Location: Warren, Michigan, United States; hybrid attendance at the designated location at least three times per week is required.
Company
develops automotive products and works toward safer, more sustainable mobility.
What you will do
- Investigate and triage product security reports across vehicles, mobile applications, APIs, and backend software.
- Analyze exploitability, customer impact, and risk, then recommend severity and treatment.
- Partner with product and engineering teams on remediation plans, timelines, and validation.
- Validate fixes and mitigations to confirm vulnerabilities are resolved with sufficient quality.
- Improve PSIRT processes, playbooks, tooling, and response consistency.
- Coordinate with PSOC, SOC, bug bounty, disclosure, and legal partners on product incidents.
Requirements
- 6+ years of direct experience in product security, security engineering, and/or incident response.
- Hands-on experience analyzing software, firmware, or system vulnerabilities and exploitability.
- Knowledge of vulnerability classes, CVEs, CVSS, and coordinated disclosure practices.
- Ability to read and write software in multiple languages for analysis and remediation guidance.
- Experience driving remediation with engineering and product teams.
- Must be authorized to work in the United States without GM immigration sponsorship now or in the future.
Nice to have
- Experience with automotive, embedded, or connected product environments.
- Previous PSIRT, PSOC, or similar product-focused security response experience.
- Experience building or using vulnerability intake, tracking, and reporting tools.
- Experience contributing to security advisories and customer communications.
Culture & Benefits
- Hybrid work with regular in-person collaboration at the Warren location.
- Relocation benefits are available for candidates who qualify under company policy.
- Employee benefits support well-being at work and at home.
- Inclusive workplace focused on belonging, meaningful change, and professional development.
Hiring process
- Role-related assessments and pre-employment screening may be required.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
10 дней назад
Cyber Threat Intelligence Analyst (Cybersecurity)
10 дней назад
Principal Product Cybersecurity Assurance Engineer (AI Robotics)
11 дней назад
IT Cybersecurity Engineer (Manufacturing)
11 дней назад
Senior Consultant - Automotive Cybersecurity Professional
110 000 - 150 000$
12 дней назад
Security Engineer (AI)
95 000 - 110 000$
13 дней назад