Senior Cybersecurity Vulnerability Management Engineer

General Motors

Warren (MI)

On-site

USD 140,000 - 190,000

Full time

6 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

General Motors seeks a Senior Cybersecurity Vulnerability Engineer to design, implement, and improve capabilities protecting people, products, partners, platforms, and production.

The role requires translating threat intelligence into actionable remediation, guiding priority decisions, and influencing across infrastructure, cloud, application, and manufacturing stakeholders. Mentors engineers and leads remediation efforts with a risk-based approach.

Qualifications

  • Bachelor's degree in Cybersecurity, Computer Science, Engineering, IT, or related field, or equivalent experience.
  • Significant professional experience in cybersecurity engineering, vulnerability management, security operations, cloud security, or related domains.
  • Proven expertise in Enterprise Data Center Infrastructure vulnerability management (servers, network, virtualization, patch coordination, remediation prioritization).
  • Proven expertise in client endpoint vulnerability management (endpoints, patching, update compliance, remediation at scale).
  • Proven expertise in multi-cloud vulnerability management across Azure, AWS, and GCP.

Responsibilities

  • Lead engineering and continuous improvement of GM Vulnerability Management services across enterprise infrastructure and endpoints.
  • Oversight of enterprise data center vulnerability management including server, network, and virtualization domains.
  • Drive endpoint vulnerability management with patching and update compliance.
  • Manage multi-cloud vulnerability efforts across Azure, AWS, and GCP.
  • Develop AI security threat vulnerability capabilities for AI workloads and model supply chain risk.
  • Correlate scanner findings with asset, network, threat intel, and SBOM context for prioritized remediation.
  • Apply threat intel and exploitability analytics to move beyond severity-only scoring.
  • Partner with various teams to translate findings into remediation plans and drive urgent issue closure.
  • Support vulnerability core functions: asset discovery, scanning, risk scoring, remediation, reporting, and automation.

Skills

Cybersecurity engineering
Vulnerability management
Cloud security
Threat intelligence
Mentoring
Technical leadership

Education

Bachelor's degree in Cybersecurity or related field

Tools

Azure
AWS
GCP

Job description

Job Description

The Role:

As a Senior Cybersecurity Vulnerability Engineer, you will serve as a highly capable individual contributor responsible for designing, implementing, and improving cybersecurity capabilities that protect GM's risk domains of people, products, partners, platforms, and production.

The successful candidate is a senior experienced professional who can independently assess complex vulnerability and exposure risks, translate threat intelligence and technical findings into actionable remediation priorities, and influence outcomes across infrastructure, cloud, application, manufacturing, and security stakeholder groups. The senior engineer will have significant functional impact through risk-based decision-making, operational leadership, and mentorship of engineers and remediation partners.

You will solve diverse, non-standard security problems; translate broad challenges into implementable initiatives; and drive delivery across teams through technical leadership, sound judgment, and influence. This role has significant operational impact across the cybersecurity organization that serves as a mentor and resource for other team members.

What You'll Do:

Lead engineering, operational improvement, and continuous maturity of GM Vulnerability Management core services across enterprise infrastructure, client endpoints, multi-cloud, and AI security threat exposure domains.

Serve as a senior individual contributor for Enterprise Data Center Infrastructure vulnerability management, including server, endpoint, network, virtualization, patch coordination, exception handling, on-prem asset hygiene, and remediation prioritization for critical infrastructure.

Drive client endpoint vulnerability management by reducing endpoint risk through continuous detection, patching, browser and software update compliance, control enforcement, and remediation guidance across corporate and manufacturing endpoint environments.

Lead multi-cloud vulnerability management across Azure, AWS, and GCP, including workload exposure, misconfiguration correlation, cloud VM risk, container image and runtime exposure, and cloud-to-business criticality mapping to support risk-based remediation.

Build and mature AI security threat vulnerability management capabilities for AI workloads, model supply chain risk, prompt injection, data leakage, agent permissions, tool-use guardrails, model and runtime control validation, and secure rollout patterns for internal AI capabilities.

Correlate scanner findings with asset, business, network, telemetry, identity, threat-intelligence, and SBOM context to improve prioritization accuracy and focus remediation on exposures most likely to create business risk.

Apply threat intelligence and exploitability analytics, including exposure context, attack-path factors, and evidence of exploitation, to move prioritization beyond severity-only scoring.

Partner with infrastructure, endpoint, cloud platform, manufacturing, application, and Security Fitness stakeholders to convert findings into actionable remediation plans, drive accountability, and accelerate closure of urgent, critical, and high-risk issues.

Support and improve Vulnerability core functions including asset discovery and inventory, vulnerability scanning and assessment, threat intelligence and risk context, prioritization and risk scoring, remediation and patch coordination, exception management, reporting, dashboards, governance, integration, automation, and continuous improvement.

Contribute to workflow integration and automation across detection, security unification tools, automated patching orchestration, and related platforms, while maintaining appropriate guardrails and human approval for meaningful changes to critical environments.

Provide technical leadership, mentoring, and consultative support to less experienced engineers and aligned remediation owners.

Protect sensitive company, employee, and customer information and consistently operate in alignment with GM values, behaviors, and policies.

Your Skills & Abilities (Required Qualifications):

Bachelor's degree in Cybersecurity, Computer Science, Engineering, Information Technology, or a related field, or equivalent practical experience.

Significant professional experience in cybersecurity engineering, vulnerability management, security operations, cloud security, infrastructure security, or related domains.

Proven expertise in Enterprise Data Center Infrastructure vulnerability management, including servers, network-attached infrastructure, virtualization, patch coordination, exception handling, and remediation prioritization for enterprise environments.

Proven expertise in client endpoint vulnerability management, including endpoint controls, patching, software and browser update compliance, detection coverage, and remediation at scale.

Proven expertise in multi-cloud vulnerability management across Azure, AWS, and GCP, including cloud workload exposure, misconfigur

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Vulnerability Engineer – Cloud, AI & Security
Senior Vulnerability Engineer – Cloud, AI & Security

General Motors • Warren (MI)

On-site
USD 140,000 - 190,000
Senior Cybersecurity Engineer - Security Operations
Senior Cybersecurity Engineer - Security Operations

General Motors • Austin (TX)

Hybrid
USD 120,000 - 150,000
Relocation benefits
Comprehensive health benefits
Employee discounts
Vulnerability Manager
Vulnerability Manager

Search Services • Houston (TX)

On-site
USD 110,000 - 170,000
Senior Vulnerability Management Engineer
Senior Vulnerability Management Engineer

Compunnel, Inc. • Irving (TX)

On-site
USD 100,000 - 130,000
Sr. Security Software Engineer - Security Operations
Sr. Security Software Engineer - Security Operations

General Motors • Austin (TX)

Hybrid
USD 120,000 - 150,000
Senior Cybersecurity Engineer – Adversary Operations, Innovation & Purple Team Operations
Senior Cybersecurity Engineer – Adversary Operations, Innovation & Purple Team Operations

General Motors • Austin Center (MI)

On-site
USD 140,000 - 190,000
Security Engineer
Security Engineer

Gravity IT Resources • Salt Lake City (UT)

On-site
USD 120,000 - 160,000
Senior Product Cybersecurity Engineer - Secure Product Architecture
Senior Product Cybersecurity Engineer - Secure Product Architecture

General Motors • Warren (MI)

Hybrid
USD 140,000 - 190,000
Hybrid work model
Relocation benefits
Principal Cyber Vulnerability Engineer Dallas or Detroit metro
Principal Cyber Vulnerability Engineer Dallas or Detroit metro

Comerica • Hoschton (GA)

On-site
USD 150,000 - 210,000
Senior Security Manager - Vulnerability Management
Senior Security Manager - Vulnerability Management

Alter Domus • Chicago (IL)

On-site
USD 140,000 - 190,000