Staff Product Cybersecurity Engineer - Offensive Product Security

General Motors

Milford Charter Township (MI)

Hybrid

USD 140,000 - 190,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Relocation benefits

Job summary

General Motors is seeking a Staff Product Cybersecurity Engineer in a hybrid role based in Milford, MI or Warren, MI. You will lead offensive security engagements, perform penetration testing across vehicle software, embedded systems, and product services, and guide remediation with engineering teams.

The role requires 8+ years in security testing, red-team activity, and vulnerability research, with strong programming literacy and clear communication skills for technical findings.

Qualifications

  • 8+ years of experience in penetration testing, product security, security research, or similar roles.
  • Deep expertise in offensive security testing across applications, software, and systems.
  • Experience with penetration testing, red-team activity, vulnerability research, and exploit validation.
  • Familiarity with embedded security, operating system security, application security, and networking.
  • Able to read-and-write software in a variety of languages to support investigation and tooling.
  • Strong ability to communicate technical findings and work directly with engineers on remediation.

Responsibilities

  • Perform penetration testing across software, systems, and product environments.
  • Conduct security research that targets meaningful product and technology risks.
  • Execute offensive assessments across embedded, mobile, and backend environments.
  • Identify vulnerabilities, validate impact, and provide clear remediation guidance.
  • Partner with engineering teams to improve security through practical technical findings.
  • Help strengthen offensive methods, tooling, and testing approaches across the portfolio.

Skills

Penetration testing
Security research
Exploit validation
Read/write code in multiple languages

Tools

Custom offensive tooling

Job description

## Staff Product Cybersecurity Engineer - Offensive Product SecurityApplyremote type: Hybridlocations: Milford, Michigan, United States of America: Warren, Michigan, United States of Americatime type: Full timeposted on: Posted Yesterdayjob requisition id: JR-202616758**Job Description****The Role**The Staff Product Cybersecurity Engineer, Offensive Product Security role sits within the broader Product Cybersecurity organization at General Motors and focuses on offensive security services that help strengthen confidence in the security of our product portfolio. Through penetration testing, red-team activity, and security research, this engineer helps identify meaningful weaknesses in software, systems, and product implementations across embedded vehicle software, mobile experiences, and product-backed software and services. This role works closely with product teams to assess real-world attack paths, validate risk, and provide actionable findings that help find areas to mature in our secure SDLC.**What You'll Do*** Perform penetration testing across software, systems, and product environments* Conduct security research that targets meaningful product and technology risks* Execute offensive assessments across embedded, mobile, and backend environments* Identify vulnerabilities, validate impact, and provide clear remediation guidance* Partner with engineering teams to improve security through practical technical findings* Help strengthen offensive methods, tooling, and testing approaches across the portfolio**Your Skills & Abilities (Required Qualifications)*** 8+ years of experience in penetration testing, product security, security research, or similar roles* Deep expertise in offensive security testing across applications, software, and systems* Experience with penetration testing, red-team activity, vulnerability research, and exploit validation* Familiarity with embedded security, operating system security, application security, and networking* Able to read-and-write software in a variety of languages to support investigation and tooling* Strong ability to communicate technical findings and work directly with engineers on remediation**What Will Give You A Competitive Edge (Preferred Qualifications)*** Prior role(s) in the automotive industry or a similarly complex, deadline driven, and regulated field* Direct experience working on automotive security in any relevant role across the secure SDLC* Published cybersecurity research projects (e.g. conference talks, blog posts, code repositories)* Experience building custom offensive tooling or extending existing security testing capabilities**What You'll Bring*** Deep technical curiosity and strong offensive security instincts across complex product focuses* A rigorous and detail-oriented approach to technical investigation and exploit validation* Clear judgment on risk, exploitability, and practical impact across software and systems* The ability to work independently on complex technical problems and ambiguous attack surfaces* A commitment to helping engineers improve security through detailed, risk-ranked findings#LI-SB3GM does not provide immigration-related sponsorship for this role. Do not apply for this role if you will need GM immigration sponsorship now or in the future. This includes direct company sponsorship, entry of GM as the immigration employer of record on a government form, and any work authorization requiring a written submission or other immigration support from the company (e.g., H1-B, OPT, STEM OPT, CPT, TN, J-1, etc).This role is categorized as hybrid. This means the selected candidate is expected to report to a specific location at least 3 times a week {or other frequency dictated by their manager}.This job may be eligible for relocation benefits.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Staff Product Cybersecurity Engineer - Secure Product Engineering
Staff Product Cybersecurity Engineer - Secure Product Engineering

General Motors • Milford Charter Township (MI)

Hybrid
USD 120,000 - 170,000
Staff Product Cybersecurity Engineer - Offensive Product Security
Staff Product Cybersecurity Engineer - Offensive Product Security

General Motors • Milford (CT)

On-site
USD 140,000 - 180,000
Staff Product Cybersecurity Engineer - Offensive Product Security
Staff Product Cybersecurity Engineer - Offensive Product Security

General Motors • Warren (MI)

Hybrid
USD 140,000 - 180,000
Manager, Secure Development & Application Security
Manager, Secure Development & Application Security

General Motors • Warren (MI)

Hybrid
USD 140,000 - 210,000
Staff Offensive Product Security Engineer (Hybrid)
Staff Offensive Product Security Engineer (Hybrid)

General Motors • Milford Charter Township (MI)

Hybrid
USD 140,000 - 190,000
Relocation benefits
Staff Product Cybersecurity Engineer, Offensive Security
Staff Product Cybersecurity Engineer, Offensive Security

General Motors • Warren (MI)

Hybrid
USD 140,000 - 180,000
Sr. Security Software Engineer - Security Operations
Sr. Security Software Engineer - Security Operations

General Motors • Michigan

Remote
USD 125,000 - 159,000
Medical, dental, and vision benefits
Retirement savings plan
Paid vacation and holidays
Staff Product Cybersecurity Engineer - Secure Product Engineering
Staff Product Cybersecurity Engineer - Secure Product Engineering

General Motors • Milford (CT)

On-site
USD 180,000 - 230,000
Relocation benefits
Hybrid work arrangement
Staff Product Cybersecurity Engineer - Secure Product Engineering
Staff Product Cybersecurity Engineer - Secure Product Engineering

General Motors • Warren (MI)

Hybrid
USD 140,000 - 200,000
Staff Software Engineer – Developer Experience
Staff Software Engineer – Developer Experience

General Motors • Michigan

Hybrid
USD 120,000 - 160,000
Flexible working arrangements
Career development opportunities
Inclusive workplace culture