Senior Cybersecurity Incident Analyst

General Motors LLC

United States

Hybrid

USD 130,000 - 195,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Hybrid work model
Relocation benefits

Job summary

General Motors is seeking a Senior Cyber Detection Incident Analyst to lead advanced investigations and drive detection engineering across GM’s security stack. You will shape analytics for SIEM, EDR, NDR, and SOAR, while applying threat intelligence and MITRE ATT&CK methodologies.

This role requires mentoring others and partnering with Incident Response, Cloud Security, and Product Security teams. You will implement scalable detection capabilities across cloud, identity, endpoint, network, and

Qualifications

  • Bachelor's degree or equivalent practical experience in a related technical field.
  • 5+ years in cybersecurity with focus on detection engineering, security operations, IR, threat hunting, IDS, or log analysis.
  • Experience with enterprise SIEM platforms and log-centric detection methodologies.
  • Experience developing and tuning detections using correlation logic and threat intel.
  • Strong knowledge of endpoint security technologies and EDR platforms.
  • Experience investigating security events across endpoint, network, cloud, identity, and apps environments.
  • Familiarity with MITRE ATT&CK and attacker TTPs.
  • Proficient in scripting/query languages (Python/PowerShell).
  • Excellent analytical, troubleshooting, and communication skills.
  • Ability to lead investigations and collaborate across teams.

Responsibilities

  • Lead advanced investigations of complex security incidents and high-severity escalations.
  • Develop and optimize detection logic across SIEM, EDR, NDR, SOAR, and cloud security platforms.
  • Conduct threat hunting to uncover adversary behaviors and gaps.
  • Apply MITRE ATT&CK to improve coverage and effectiveness.
  • Design and validate analytics to reduce false positives and improve alerts.
  • Develop automation and enrichment workflows using scripting and security orchestration.
  • Mentor analysts and detection engineers and collaborate across teams.
  • Drive continuous improvement to increase visibility and reduce investigative effort.
  • Evaluate new security technologies to advance GM's detection maturity.

Skills

Threat hunting
Incident response
Detection engineering
Scripting (Python/PowerShell)
Threat intelligence
Analytical mindset

Education

Bachelor's degree in Cybersecurity/CS/IT/Engineering

Tools

SIEM
EDR
NDR
SOAR
Cloud security platforms

Job description

Job Description

The Role: As a Senior Cyber Detection Incident Analyst, you will play a critical role in protecting General Motors' global enterprise by identifying, analyzing, and helping mitigate advanced cyber threats across cloud, identity, endpoint, network, application, and manufacturing ecosystems. You will serve as a senior technical leader within the Cyber Detection organization, driving detection engineering initiatives, leading complex investigations, and continuously improving the technologies, analytics, and processes used to identify malicious activity. This role combines deep technical expertise, threat-focused analysis, and cross-functional collaboration to enhance GM's overall cybersecurity posture. The ideal candidate possesses a passion for cyber defense, strong analytical and investigative skills, and experience developing scalable detection capabilities across modern enterprise environments.

What You'll Do
  • Lead advanced investigations involving complex security incidents, emerging threats, and high-severity escalations
  • Develop, implement, and optimize detection logic across SIEM, EDR, NDR, SOAR, cloud-native security platforms, and other security monitoring technologies
  • Conduct threat hunting activities to proactively identify adversary behaviors, attack techniques, and detection gaps
  • Apply threat intelligence, adversary tradecraft, and MITRE ATT&CK methodologies to improve detection coverage effectiveness
  • Design, tune, and validate analytics to reduce false positives and improve alert fidelity
  • Develop automation, enrichment workflows, and operational efficiencies using AI, scripting and security orchestration technologies
  • Partner with Incident Response, Threat Intelligence, Cloud Security, Product Security, Manufacturing Security, and other cybersecurity teams to improve detection capabilities
  • Mentor and provide technical guidance to analysts and detection engineers
  • Drive continuous improvement initiatives that increase visibility, reduce investigative effort, and improve operational effectiveness
  • Evaluate emerging technologies, AI capabilities, and security monitoring solutions to advance GM's detection maturity
Your Skills & Abilities (Required Qualifications)
  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related technical field, or equivalent practical experience
  • 5+ years of experience in cybersecurity with a focus on detection engineering, security operations, incident response, threat hunting, intrusion detection, or security event analysis
  • Experience working with enterprise SIEM platforms and log-centric detection methodologies
  • Experience developing and tuning security detections using correlation logic, behavioral analytics, and threat intelligence
  • Strong understanding of endpoint security technologies and EDR platforms
  • Experience investigating security events across endpoint, network, cloud, identity, and application environments
  • Knowledge of attacker tactics, techniques, and procedures (TTPs) and familiarity with the MITRE ATT&CK framework
  • Experience using scripting and query languages such as Python, PowerShell, or similar technologies
  • Strong analytical, troubleshooting, and investigative skills
  • Experience communicating technical findings to both technical and non-technical audiences
  • Ability to lead investigations during cybersecurity incidents
  • Demonstrated ability to collaborate effectively across multiple teams and stakeholders
  • Ability and willingness to participate in a 24x7 on-call rotation
What Can Give You a Competitive Advantage (Preferred Qualifications)
  • Experience with cloud security monitoring and detection engineering in Azure, AWS, and GCP environments
  • Experience with SaaS security monitoring and identity threat detection
  • Experience with network security monitoring, IDS/IPS technologies, packet analysis, and network telemetry
  • Experience supporting manufacturing, operational technology (OT), or industrial control system environments
  • Experience with vehicle cybersecurity, automotive architectures, or embedded security telemetry
  • Experience with application security monitoring, API security, runtime protection, and CI/CD security telemetry
  • Experience with malware analysis, reverse engineering, or digital forensics
  • Experience developing SOAR workflows and security automation solutions
  • Security certifications such as GCIA, GCIH, GCFA, GCDA, AWS Security Specialty, or equivalent
  • Proven ability to mentor, coach, and develop cybersecurity professionals
  • Demonstrated success leading technical initiatives and influencing cybersecurity strategy
  • Strong written and verbal communication skills
  • Continuous learning mindset with a passion for innovation and cybersecurity excellence
#LI-SB3

GM does not provide immigration-related sponsorship for this role. Do not apply for this role if you will need GM immigration sponsorship now or in the future. This includes direct company sponsorship, entry of GM as the immigration employer of record on a government form, and any work authorization requiring a written submission or other immigration support from the company (e.g., H1-B, OPT, STEM OPT, CPT, TN, J-1, etc). This role is categorized as hybrid. This means the selected candidate is expected to report to a specific location at least 3 times a week {or other frequency dictated by their manager}. This job may be eligible for relocation benefits.

About GM

Our vision is a world with Zero Crashes, Zero Emissions and Zero Congestion and we embrace the responsibility to lead the change that will make our world better, safer and more equitable for all.

Why Join Us

We believe we all must make a choice every day – individually and collectively – to drive meaningful change through our words, our deeds and our culture. Every day, we want every employee to feel they belong to one General Motors team.

Benefits Overview

From day one, we're looking out for your well‑being–at work and at home–so you can focus on realizing your ambitions. Learn how GM supports a rewarding career that rewards you personally by visiting Total Rewards resources.

Non-Discrimination and Equal Employment Opportunities (U.S.)

General Motors is committed to being a workplace that is not only free of unlawful discrimination, but one that genuinely fosters inclusion and belonging. We strongly believe that providing an inclusive workplace creates an environment in which our employees can thrive and develop better products for our customers. All employment decisions are made on a non‑discriminatory basis without regard to sex, race, color, national origin, citizenship status, religion, age, disability, pregnancy or maternity status, sexual orientation, gender identity, status as a veteran or protected veteran, or any other similarly protected status in accordance with federal, state and local laws.

Accommodations

General Motors offers opportunities to all job seekers including individuals with disabilities. If you need a reasonable accommodation to assist with your job search or application for employment, email us or call us at 1-800-865-7580. In your email, please include a description of the specific accommodation you are requesting as well as the job title and requisition number of the position for which you are applying.

Our Company

We are leading the change to make our world better, safer and more equitable for all through our actions and how we behave.

Learn more about: Our Company Our Culture How we hire Our diverse team of employees bring their collective passion for engineering, technology and design to deliver on our vision of a world with Zero Crashes, Zero Emissions and Zero Congestion. We are looking for adventure‑seekers and imaginative thought leaders to help us transform mobility.

Explore our global locations

We are determined to lead change for the world through technology, ingenuity and harnessing the creativity of our diverse team. Join us to help lead the change that will make our world better, safer and more equitable for all by becoming a member of GM’s Talent Community (beamery.com). As a part of our Talent Community, you will receive updates about GM, open roles, career insights and more. Please note that filling out the form below will not add you to our Talent Community automatically; you will need to use the link above.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Cybersecurity Incident Analyst
Senior Cybersecurity Incident Analyst

generalmotors • Warren (MI)

Hybrid
USD 130,000 - 180,000
Relocation benefits
Senior Cybersecurity & IT Controls Engineer
Senior Cybersecurity & IT Controls Engineer

General Motors LLC • United States

Hybrid
USD 130,000 - 185,000
Relocation benefits
Senior Cybersecurity Incident Analyst
Senior Cybersecurity Incident Analyst

General Motors • Kentucky

Hybrid
USD 100,000 - 150,000
Manager - Product Cyber Security Compliance
Manager - Product Cyber Security Compliance

General Motors LLC • United States

Hybrid
USD 140,000 - 200,000
Cyber Detection Event Analyst
Cyber Detection Event Analyst

generalmotors • Warren (MI)

Hybrid
USD 95,000 - 140,000
Senior Product Cybersecurity Engineer, Product Security Incident Response Team (PSIRT)
Senior Product Cybersecurity Engineer, Product Security Incident Response Team (PSIRT)

General Motors LLC • Dearborn (MI)

Hybrid
USD 140,000 - 180,000
Senior Cybersecurity Vulnerability Management Engineer
Senior Cybersecurity Vulnerability Management Engineer

generalmotors • Warren (MI)

Hybrid
USD 140,000 - 170,000
Relocation benefits
Senior Software Engineer – DevOps and Configuration Management
Senior Software Engineer – DevOps and Configuration Management

General Motors LLC • Milford (CT)

Hybrid
USD 140,000 - 190,000
Senior Software Engineering Manager, Enterprise Software Engineering
Senior Software Engineering Manager, Enterprise Software Engineering

General Motors LLC • Austin (TX)

Hybrid
USD 180,000 - 260,000
Relocation benefits
Hybrid work arrangement
Manager, Customer Support & Data Analytics – Fleet
Manager, Customer Support & Data Analytics – Fleet

GM Personnel Service, Inc. • United States

Hybrid
USD 150,000 - 190,000
Hybrid work model
Total Rewards resources