GM Financial Logo

GM Financial

Cybersecurity Analyst

Posted Yesterday
Be an Early Applicant
Hybrid
Irving, TX
Junior
Hybrid
Irving, TX
Junior
Executes cybersecurity governance and risk initiatives by developing policies, standards, and procedures; managing audits, remediation tracking, security requirements, and compliance reporting. Partners with business and technical teams to protect information assets, monitor adherence to controls, and address threats. The role requires knowledge of networking, infrastructure, security frameworks, IT service management, cloud technologies, and relevant regulations. It operates in a flexible hybrid environment with four office days weekly.
The summary above was generated by AI

Why GMF Cybersecurity? 

Innovation isn’t just a talking point at GM Financial, it’s how we operate. By joining our team, you’ll work in a mission-focused environment with specialized teams, including Engineering, Threat Intelligence, Vulnerability Management, Incident Response, Firewall, Governance, Risk, Architecture and Offensive Security. These teams collaborate to identify, manage and respond to threats, all while driving innovation across the environment.

Cybersecurity is central to our strategic vision, so you’ll benefit from exceptional leadership visibility, with direct reporting lines to the CEO. This structure ensures your work is recognized and supported at the highest levels, while also enabling bold innovation and the adoption of cutting-edge technologies.

Shape the future of Cybersecurity at GM Financial, with the freedom to explore, the tools to build and the support to thrive.

This position will be posted until filled.

Responsibilities

About the role

The Cybersecurity Analyst is responsible for executing a portion of the GM Financial (GMF) Cybersecurity Program designed to advise the organization on its management of Cybersecurity risk by organizing information, enabling risk management decisions and addressing threats to ensure the security of company systems and information assets. The Cybersecurity Analyst is responsible for contributing to the success of comprehensive security initiatives, work with internal and external groups to ensure the program is operating effectively and efficiently and develop strong partnerships with business partners across the enterprise to ensure company information assets are protected at the appropriate level.

In this role you will:

  • Demonstrated proficiency developing and updating Cybersecurity policies, standards and procedures referencing NIST 800-53 controls and the NIST Cyber Security Framework, including implementing revisions in accordance with updates in relevant regulatory or industry Cybersecurity practices
  • Experience with audit management and tracking of remediation items and/or findings to completion
  • Demonstrated capability to collaborate with business partners to manage Cybersecurity needs
  • Experience with development of security requirements to protect the company from external and internal threats
  • Experience with documentation and reporting of policy or procedure discrepancies and/or change requests
  • Ability to initiate, facilitate and promote Cybersecurity within the organization and monitor adherence to Cybersecurity policies, standards and controls
Qualifications

What makes you an ideal candidate?

  • Local and wide area networking concepts, principles and protocols
  • Advanced knowledge in Infrastructure design and management
  • Working knowledge of management processes such as personnel administration, planning and budgeting
  • Strong working knowledge of Intel platforms, iSeries and pSeries servers
  • Advanced understanding of IT Service Management (ITSM) best practices and processes
  • Advanced knowledge of TCP/IP, OSI model and imp subnetting
  • High-level understanding of technology infrastructure, security concepts and platforms
  • Demonstrated success in project management
  • Advanced knowledge of IBM pSeries hardware, operating systems and TSM backup infrastructure
  • Advanced knowledge of the OSI model and security that is associated with each layer
  • Understanding of routing and switching protocols as they relate to load balancing
  • Strong understanding of application layer protocols including HTTP, SSH, SSL and DNS
  • Knowledge and stay abreast on the latest security and privacy legislation, regulations, advisories, alerts and vulnerabilities
  • Knowledge of IT security processes and controls as well as IT infrastructure and networking technical knowledge
  • Understanding of cloud technologies and concepts
  • Familiarity with DevOps and Agile development processes
  • Ability to think strategically and make collaborative decisions
  • Detail oriented
  • Ability to apply structured analysis methods to various types of data to establish trends, determine variability and business impact
  • Ability to effectively negotiate with vendors on upgrades and acquisitions
  • Effective planning, time management, negotiation and delegation skills
  • IT security processes and controls knowledge as well as IT infrastructure and networking technical knowledge
  • Information security standards/frameworks (i.e., NIST Cybersecurity Framework, ISO 27001) skills
  • Analytical skills
     

Additional Knowledge and Skills

Working effectively within an AI enabled environment:  

  • Ability to use AI tools (e.g., Microsoft Copilot) to support daily work
  • Skills in evaluating AI outputs for accuracy, compliance, and bias
  • Experience integrating AI into workflows to improve efficiency or insights
  • Familiarity with AI assisted research, summarization, and content generation
  • Understanding of responsible AI use, including ethics and data protection 

Work Experience and Education

  • Minimum of 1-5 years experience in large and complex business environment with a successful track record working directly with senior level management preferred
  • At least 1 year of experience in one or more of the following domains: Access Control, Telecom and Network Security, Cybersecurity Governance, Risk Management, Software Development Security, Cryptography, Security Architecture and Design, Operational Security, Business Continuity & Disaster Recovery, Legal Regulations, Investigations and Compliance, Physical (Environmental) Security, IT or Security Audit, IT or Security Compliance preferred
  • Experience with UML Design Tools preferred
  • Experience with alternate management methods using SSH, serial connections, and the command-line interface TMSH preferred
  • Experience in documentation tools such as Visio and Microsoft Office products preferred
  • Experience with Network and VLAN segmentation preferred
  • Experience with technical writing preferred
  • High School Diploma or equivalent required
  • Bachelor’s Degree in related field or equivalent work experience strongly preferred

Licenses and Certifications

  • Information Security Certifications strongly preferred

What We Offer: Generous benefits package available on day one to include: 401K matching, bonding leave for new parents (12 weeks, 100% paid), tuition assistance, training, GM employee auto discount, community service pay and nine company holidays.

Our Culture:Our team members define and shape our culture — an environment that welcomes innovative ideas, fosters integrity, and creates a sense of community and belonging. Here we do more than work — we thrive.

Compensation: Competitive pay and bonus eligibility.

Work Life Balance:Flexible hybrid work environment, 4-days a week in office.
 

NOTE:We are unable to consider candidates who require visa sponsorship for this position

This position is not open to agency submissions

#GMFJobs #LI-Hybrid #LI-SC1

Similar Jobs

2 Hours Ago
In-Office
Austin, TX, USA
Senior level
Senior level
Security
Administers Armis Centrix and performs Tier 3 SOC cybersecurity operations for a state government customer. Responsibilities include network security monitoring, incident investigation and response, threat and vulnerability analysis, forensic evidence collection, incident containment, secure system restoration, threat intelligence analysis, tool configuration, vendor coordination, metrics reporting, and executive briefings.
Top Skills: Armis Centrix
Yesterday
In-Office
Austin, TX, USA
Senior level
Senior level
Information Technology • Security • Consulting • Cybersecurity
Monitor and investigate cybersecurity alerts across enterprise platforms, triage and validate incidents, analyze threats and indicators of compromise, document investigations, coordinate containment and recovery, escalate confirmed threats, tune detection capabilities, review vulnerabilities, and develop SOC procedures and playbooks within a 24x7 operations environment.
Top Skills: Cloud SecurityCrowdstrikeEdrEmail SecurityFirewallsIdentity ProtectionIntrusion Detection SystemsIntrusion Prevention SystemsMicrosoft SentinelNetwork SecurityPrismaQualysSIEMSplunkTenableThreat IntelligenceZscaler
2 Days Ago
In-Office
99K-110K Annually
Mid level
99K-110K Annually
Mid level
Aerospace
Monitor, analyze, and respond to cybersecurity events while translating threat intelligence into actionable outcomes. Lead incident response, threat hunting, vulnerability management, security infrastructure improvements, GRC, privacy, and security awareness initiatives. Develop intelligence reports, map adversary behavior to MITRE ATT&CK, support Red and Purple Team operations, improve detection workflows, mentor analysts, and collaborate with leadership and cross-functional stakeholders.
Top Skills: CcpaGdprIntrusion Detection SystemsIso 27001Mitre Att&CkNistSIEM

What you need to know about the Austin Tech Scene

Austin has a diverse and thriving tech ecosystem thanks to home-grown companies like Dell and major campuses for IBM, AMD and Apple. The state’s flagship university, the University of Texas at Austin, is known for its engineering school, and the city is known for its annual South by Southwest tech and media conference. Austin’s tech scene spans many verticals, but it’s particularly known for hardware, including semiconductors, as well as AI, biotechnology and cloud computing. And its food and music scene, low taxes and favorable climate has made the city a destination for tech workers from across the country.

Key Facts About Austin Tech

  • Number of Tech Workers: 180,500; 13.7% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Dell, IBM, AMD, Apple, Alphabet
  • Key Industries: Artificial intelligence, hardware, cloud computing, software, healthtech
  • Funding Landscape: $4.5 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Live Oak Ventures, Austin Ventures, Hinge Capital, Gigafund, KdT Ventures, Next Coast Ventures, Silverton Partners
  • Research Centers and Universities: University of Texas, Southwestern University, Texas State University, Center for Complex Quantum Systems, Oden Institute for Computational Engineering and Sciences, Texas Advanced Computing Center

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account