GM Financial Logo

GM Financial

Sr Cybersecurity Engineer - Incident Response

Reposted 8 Days Ago
Hybrid
Irving, TX
Mid level
Hybrid
Irving, TX
Mid level
The Senior Cybersecurity Engineer designs and implements security capabilities, focusing on threat mitigation, automation, and incident response, collaborating with various stakeholders.
The summary above was generated by AI

Opportunity to work in a hybrid model: Potential to work 4 days onsite and 1 day remote


Why GM Financial Cybersecurity?

Innovation isn’t just a talking point at GM Financial, it’s how we operate. By joining our team, you’ll work in a mission-focused environment with specialized teams, including Engineering, Threat Intelligence, Vulnerability Management, Incident Response, Firewall, Governance, Risk, Architecture and Offensive Security. These teams collaborate to identify, manage and respond to threats, all while driving innovation across the environment.

Cybersecurity is central to our strategic vision, so you’ll benefit from exceptional leadership visibility, with direct reporting lines to the CEO. This structure ensures your work is recognized and supported at the highest levels, while also enabling bold innovation and the adoption of cutting-edge technologies.

Shape the future of Cybersecurity at GM Financial, with the freedom to explore, the tools to build and the support to thrive. 


Responsibilities

About the role:
The Senior Cybersecurity Engineer is responsible for designing, implementing, operating, and continuously improving security capabilities that identify, analyze, and mitigate threats to corporate networks, systems, data, and users. This role focuses on delivering scalable, well-engineered security controls and detection mechanisms aligned with mature threat detection, automation, and response practices. The Senior Cybersecurity Engineer partners closely with security leadership, IT, and business stakeholders to define core security requirements, design and deploy security technologies, and perform ongoing tuning, alerting, and optimization to ensure effectiveness and reduce operational noise. This engineer treats detections and security controls as code, leveraging automation, version control, and repeatable workflows to support reliability and continuous improvement.

In this role you will:

  • Technologies supported by this role may include, but are not limited to, Security Information and Event Management (SIEM), Data Loss Prevention (DLP), Security Orchestration, Automation, and Response (SOAR), User and Entity Behavior Analytics (UEBA), Host Intrusion Prevention Systems (HIPS), and web and email security gateways, across both on‑premises and cloud environments. In addition to hands-on technical implementation, this role is responsible for clearly communicating security risks, requirements, and recommendations to cybersecurity leadership and management, contributing to incident response readiness, and supporting the ongoing maturation of the enterprise security program.
  • Design, develop, test, and deploy scalable detection logic across SIEM and cloud environments using mature IoC principles, detections‑as‑code practices, Git, and automated pipelines.
  • Write, maintain, and review production‑quality code (Python, JavaScript, PowerShell, Bash) to support security detections, automation, custom tooling, and API integrations.
  • Build, enhance, and maintain SOAR playbooks integrated with incident response and case management systems to enable enrichment, automation, and rapid response.
  • Partner closely with SOC and Incident Response teams to understand workflow bottlenecks, serve as an escalation point for detection pipelines and tooling, and reduce time‑to‑resolution.
  • Translate threat intelligence, post‑incident analysis, and tabletop exercise outcomes into actionable detections, automation, and security control improvements.
  • Proactively evaluate emerging security technologies and capabilities, providing recommendations that strengthen protection of enterprise information assets.
  • Collaborate with cybersecurity leadership to plan and execute initiatives that accelerate organizational security maturity and operational effectiveness.
  • Support security governance efforts by maintaining procedures, standards, and technical documentation, and by participating in periodic risk assessments.
Qualifications

What makes you an ideal candidate?

  • Deep understanding of networking fundamentals, including TCP/IP, the OSI model, subnetting, routing and switching, load balancing concepts, and both local and wide area networking protocols.
  • Experience configuring and triaging multiple host and server operating systems (Windows, macOS and Linux)
  • Strong proficiency with application-layer protocols such as HTTP, SSH, SSL/TLS, and DNS, and how they impact security architecture and operations.
  • Experience in hands‑on alert triage, ongoing monitoring, and investigation is a plus
  • Advanced expertise in infrastructure design, management, and securing enterprise environments across servers, clients, users, networks, and data storage platforms.
  • Extensive cloud security knowledge, including hands-on experience securing deployments in Microsoft Azure, AWS, and Google Cloud Platform, as well as containerized and Kubernetes-based environments, managed PaaS services, Agile, and DevOps ecosystems.
  • Demonstrated ability to manage infrastructure and security controls through CI/CD pipelines and automated workflows, including scripting and automation using languages such as Python, Go, and JavaScript.
  • Strong understanding of IT Service Management (ITSM) best practices, project management methodologies, and experience using UML design tools to document and communicate system designs.
  • Familiarity with IR specific frameworks "i.e. NIST Incident Response Lifecycle and/or MITRE ATT&CK Framework"
  • Commitment to staying current on evolving security and privacy legislation, regulations, vulnerabilities, advisories, and emerging threats.
  • Excellent analytical skills with the ability to apply structured analysis methods to identify trends, assess risk, and evaluate business impact from complex datasets.
  • Strong communication and leadership skills, including technical writing, documentation (Visio and Microsoft Office tools), mentoring junior engineers, and collaborating effectively across technical and non-technical teams.
  • Demonstrated ability to think strategically, solve problems creatively, and approach challenges with an open, innovative, and detail-oriented mindset while maintaining effective planning, time management, and delegation skills.
     

Experience and Education

  • 3-5 years of experience in large and complex business environments with a successful track record working directly with senior level management preferred
  • 3-5 years of experience in one or more of the following domains: Cybersecurity, Information Security, Network Engineering, or Network Operations, Information Technology, Application Development preferred
  • High School Diploma or equivalent required
  • Bachelor’s Degree in related field or equivalent work experience strongly preferred

 

Licenses and Certifications

  • One or more security and cloud related certifications, such as CISSP, CCNP-Security, GIAC, CEH, or CPTS, AWS Certified DevOps Engineer - Professional, Microsoft Cybersecurity Architect, highly preferred
     

What We Offer: Generous benefits package available on day one to include: 401K matching, bonding leave for new parents (12 weeks, 100% paid), tuition assistance, training, GM employee auto discount, community service pays and nine company holidays. 
 

Our Culture: Our team members define and shape our culture — an environment that welcomes innovative ideas, fosters integrity, and creates a sense of community and belonging. Here we do more than work — we thrive. 
 

Compensation: Competitive pay and bonus eligibility 
 

Work Life Balance: Flexible hybrid work environment, 4-days a week in office

 

#GMFJobs

#LI-SC1

#LI-Hybrid

Similar Jobs

2 Hours Ago
Remote or Hybrid
United States
67K-101K Annually
Junior
67K-101K Annually
Junior
Artificial Intelligence • Automotive • Greentech • Information Technology • Machine Learning • Software • Cybersecurity
Provide tactical HR support for Manheim Shared Services including employee relations, program implementation, talent and workforce initiatives, data analysis and reporting, and continuous improvement. Advise managers on policies, coordinate HR program logistics, conduct exit interviews, and partner with HRBPs and COEs to improve employee experience and organizational effectiveness. Up to 25% travel; US remote.
Top Skills: Excel
2 Hours Ago
Remote or Hybrid
United States
92K-154K Annually
Senior level
92K-154K Annually
Senior level
Artificial Intelligence • Automotive • Greentech • Information Technology • Machine Learning • Software • Cybersecurity
The Customer Success Manager is responsible for driving customer outcomes across a portfolio, managing relationships and retention, and collaborating across various teams to ensure value realization and maximize customer satisfaction.
Top Skills: AICloudCustomer SuccessManaged ServicesSaaS
2 Hours Ago
Hybrid
67K-101K Annually
Junior
67K-101K Annually
Junior
Artificial Intelligence • Automotive • Greentech • Information Technology • Machine Learning • Software • Cybersecurity
Provide onsite HR support for the Manheim Dallas Market Center, advising managers on HR policies and employee relations, implementing people programs, supporting talent and workforce initiatives, conducting exit interviews, analyzing HR data to inform leaders, and partnering with COEs to improve HR service delivery and processes.
Top Skills: Excel

What you need to know about the Austin Tech Scene

Austin has a diverse and thriving tech ecosystem thanks to home-grown companies like Dell and major campuses for IBM, AMD and Apple. The state’s flagship university, the University of Texas at Austin, is known for its engineering school, and the city is known for its annual South by Southwest tech and media conference. Austin’s tech scene spans many verticals, but it’s particularly known for hardware, including semiconductors, as well as AI, biotechnology and cloud computing. And its food and music scene, low taxes and favorable climate has made the city a destination for tech workers from across the country.

Key Facts About Austin Tech

  • Number of Tech Workers: 180,500; 13.7% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Dell, IBM, AMD, Apple, Alphabet
  • Key Industries: Artificial intelligence, hardware, cloud computing, software, healthtech
  • Funding Landscape: $4.5 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Live Oak Ventures, Austin Ventures, Hinge Capital, Gigafund, KdT Ventures, Next Coast Ventures, Silverton Partners
  • Research Centers and Universities: University of Texas, Southwestern University, Texas State University, Center for Complex Quantum Systems, Oden Institute for Computational Engineering and Sciences, Texas Advanced Computing Center

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account