Descripción
Work Arrangement:
Hybrid: This role is categorized as hybrid. This means the successful candidate is expected to report onsite at the Warren Global Tech Center or Austin IT Innovation Center North three (3) times per week minimum, or other frequency dictated by the business.
The Role:
Product Cybersecurity owns the cybersecurity posture protecting all GM products, systems, components, in-vehicle applications, mobile and back-office vehicle-connecting applications globally. As a Product Cybersecurity Vulnerability Analyst, you will play a critical role in ensuring the security of our in-vehicle software development processes by creating and maintaining security policies and their compliance.
What You’ll do:
- Utilizing GitHub Advanced Security and/or FOSSA to establish and enforce risk-based security policies
- Socializing security policies across different in-vehicle software development teams, fostering a culture of security awareness and accountability
- Providing remediation guidance and support to in-vehicle, mobile, and connected service software development teams
- Collaborating with cybersecurity specification owners to update and/or create vulnerability compliance requirements
- Developing commensurate process and training materials
- Staying abreast of the latest security threats, vulnerabilities, and attack techniques specific to the automotive industry
- Track the accurate creation and ingestion of security-related SBOMs from internal teams and suppliers
- Coordinate with preferred software composition analysis tooling vendor staff to integrate advanced security scanning features into Product Cybersecurity's vulnerability management program
- Participate in any supply chain security-related activities, as appropriate
[Additional Description]
Your Skills & Abilities (Required Qualifications)
- Bachelor's degree in Computer Science, Cybersecurity, Software Engineering, or a related field
- 5+ years of relevant experience
- Minimum of 3+ years of post-graduation professional workplace Vulnerability Analyst experience
- Proven experience in developing and implementing security policies within software development environments
- Ability to learn and retain new skills to meet the demands of a rapidly changing technical environment
- Excellent collaboration and communication skills to work effectively with cross-functional teams
- High level of autonomy and ability to work independently, taking ownership of security initiatives
- Strong analytical mindset and problem-solving abilities to identify and address complex challenges
What Will Give You A Competitive Edge (Preferred Skills)
- Interest in the automotive industry with a passion for leveraging technology to enhance vehicle security and safety
- Strong knowledge of GitHub Advanced Security and/or FOSSA for policy enforcement and vulnerability management
- Direct experience in a Security Operations Center or PSIRT
- Deep experience with CVEs, CWEs, CPEs, EPSS, MITRE ATT&CK, FIRST and related industry initiatives
- Dev SecOps experience
•This job may be eligible for relocation benefits.
#LI-DH2
Información sobre diversidad
General Motors se compromete a ser un lugar de trabajo en el cual no solo no haya discriminación indebida, sino que fomente con sinceridad la inclusión y el sentido de pertenencia. Creemos firmemente que la diversidad del personal crea un entorno en el cual nuestros empleados pueden prosperar y desarrollar mejores productos para nuestros clientes. Instamos a los candidatos interesados a que revisen las responsabilidades y aptitudes clave para cada puesto y se postulen para los puestos que coincidan con sus habilidades y capacidades. Es posible que, cuando corresponda, se les pida a los solicitantes que están en el proceso de contratación que completen satisfactoriamente una o más evaluaciones relacionadas con su función y/o una evaluación previa al empleo antes de comenzar a trabajar. Para obtener más información, visite Cómo contratamos.
Declaración de igualdad de oportunidades en el empleo (EE.UU.)
General Motors se enorgullece de ser un empleador que ofrece igualdad de oportunidades. Todos los solicitantes calificados serán tenidos en cuenta para el empleo sin distinción de raza, color, religión, sexo, orientación sexual, identidad de género, nacionalidad, discapacidad o condición de veterano protegido.
Adecuaciones (EE.UU. y Canadá)
General Motors ofrece oportunidades a todos los solicitantes de empleo, incluyendo las personas con discapacidades. Si necesita una adecuación razonable para ayudarle con su búsqueda o solicitud de empleo, envíenos un correo electrónico a Careers.Accommodations@GM.com o llámenos al 800-865-7580. En su correo electrónico, incluya una descripción del puesto específico que está solicitando, así como el título del empleo y el número de solicitud del puesto que está solicitando.