Post job

Cyber Security Specialist jobs at Ford Motor - 29 jobs

  • Vehicle Cyber Security Systems Engineer

    Ford Motor Company 4.7company rating

    Cyber security specialist job at Ford Motor

    We are the movers of the world and the makers of the future. We get up every day, roll up our sleeves and build a better world -- together. At Ford, we're all a part of something bigger than ourselves. Are you ready to change the way the world moves? As a key member of our Information Technology group, you'll play a critical part in shaping the future of mobility. If you're looking for the chance to leverage advanced technology to redefine the transportation landscape, enhance the customer experience and improve people's lives, this is the opportunity for you. Join us and challenge your IT expertise and analytical skills to help create vehicles that are as smart as you are! The Vehicle Cyber Security Systems Engineer will serve a key role in shaping the future of product development security for vehicles (e.g. Connected Vehicle, Autonomous Vehicle, Electric Vehicle, Ford Smart Mobility, and V2X Security). The engineer will work within cross functional team to do/support the following: At Ford Motor Company, we believe freedom of movement drives human progress. We also believe in providing you with the freedom to define and realize your dreams. With our incredible plans for the future of mobility, we have a wide variety of opportunities for you to accelerate your career potential as you help us define tomorrow's transportation. What you'll do... * Perform product Cyber Security assessments on projects of multiple Ford product lines * Compliance reviews on features, modules as defined in the Ford Cyber Security engineering process in compliance with ISO 21434, UNECE R155, UNECE WP.29 and any other required relevant global cyber security requirements, regulations. Using that understanding to standardize all business operations and establish clear, documented protocols. * Have the ability to review technical documentation to assess compliance. * Manage and apply cybersecurity requirements into product design and development life cycle from requirement to testing with required deliverables * Work with feature and ECU owners to manage the progression of each feature / ECU through development to ensure security by design from inception * Ensure features, components, systems are designed using robust engineering processes including threat analysis, risk assessment, adoption of security requirements, security audits, and vehicle ecosystem assessments * Develop and utilize global supplier expertise to meet cyber security expectations * Proficient in JIRA. Process, requirement improvement support, for future reference, particularly in the event of an audit by a regulatory agency. * Provide presentations to management (program milestones, security governance board, etc.) What you'll do... * Perform product Cyber Security assessments on projects of multiple Ford product lines * Compliance reviews on features, modules as defined in the Ford Cyber Security engineering process in compliance with ISO 21434, UNECE R155, UNECE WP.29 and any other required relevant global cyber security requirements, regulations. Using that understanding to standardize all business operations and establish clear, documented protocols. * Have the ability to review technical documentation to assess compliance. * Manage and apply cybersecurity requirements into product design and development life cycle from requirement to testing with required deliverables * Work with feature and ECU owners to manage the progression of each feature / ECU through development to ensure security by design from inception * Ensure features, components, systems are designed using robust engineering processes including threat analysis, risk assessment, adoption of security requirements, security audits, and vehicle ecosystem assessments * Develop and utilize global supplier expertise to meet cyber security expectations * Proficient in JIRA. Process, requirement improvement support, for future reference, particularly in the event of an audit by a regulatory agency. * Provide presentations to management (program milestones, security governance board, etc.)
    $76k-103k yearly est. Auto-Apply 5d ago
  • Job icon imageJob icon image 2

    Looking for a job?

    Let Zippia find it for you.

  • Cloud Security Engineer

    Ford Motor Company 4.7company rating

    Cyber security specialist job at Ford Motor

    We are the movers of the world and the makers of the future. We get up every day, roll up our sleeves and build a better world -- together. At Ford, we're all a part of something bigger than ourselves. Are you ready to change the way the world moves? The Enterprise Cyber Security Cloud Security team is responsible for working with other security and cloud services teams to ensure alignment and collaboration in securing Ford's public cloud infrastructure. The teams work closely together to identify security gaps in the cloud environments and address them. The Cloud Security team is responsible for identifying, evaluating, and recommending cloud security tools and functions to enhance security around Ford's public cloud. The team is also responsible for developing and managing the following Security Services in Ford's public cloud environments: - Cloud Security Automation Development - GCP/Azure Security Compliance - GCP VPC Service Control - GCP Cloud Armor/ Azure WAF **What you'll do...** + Partner with other Cloud Security team members to identify and develop automation for security related workflows and audits (VPC SC, DLP, Exceptions, Org Policy, etc..). + Lead evaluation and develop an understanding of tools needed to address security gaps. + Lead/Collaborate with EPEO Services teams on security gap remediation. **You'll have...** + Bachelor's degree in Computer Science, Information Technology or related OR a combination of education and experience + 5+ years of scripting and automation experience + Proven experience in developing and implementing automation using scripting languages such as + Python, PowerShell, or Go, particularly for API integrations, security tool orchestration, and custom audit scripts. + Solid understanding and practical experience with Git and GitHub for version control, collaborative development, and security automation pipeline management. + Familiarity with CI/CD pipelines and automated deployment tools (e.g., Jenkins, Azure DevOps, GitHub Actions) to integrate security automation into the software development lifecycle. + Knowledge of Infrastructure-as-Code (IaC) principles and tools like Terraform. + Strong knowledge of security best practices and guidelines (at the enterprise-level) related to GCP and Azure Cloud deployments as well as common web application frameworks + Understand the functionality and secure usage of various GCP services: VPCs, IAM, security groups, compute engine, cloud storage, Security Command Center, VPC Service Control, Cloud DLP and Cloud Armor + Customer focused and strong team orientation + Self-starter and fast-learner + Strong communication and interpersonal skills + Strong problem solving and Analytical/Reasoning skills + Strong drive for results and ability to work independently + Demonstrated commitment to quality and project timing + Familiarity with the agile project planning process and use of Rally. + Document processes & procedures and developing other documentation. **Even better, you may have...** + Understand the functionality and secure usage of various Azure services: Virtual Machines, Virtual Networks, Azure Active Directory, App Services, Azure SQL Databases, Storage Accounts, Kubernetes, Containers, Key vaults. You may not check every box, or your experience may look a little different from what we've outlined, but if you think you can bring value to Ford Motor Company, we encourage you to apply! As an established global company, we offer the benefit of choice. You can choose what your Ford future will look like: will your story span the globe, or keep you close to home? Will your career be a deep dive into what you love, or a series of new teams and new skills? Will you be a leader, a changemaker, a technical expert, a culture builder...or all of the above? No matter what you choose, we offer a work life that works for you, including: - Immediate medical, dental, vision and prescription drug coverage - Flexible family care days, paid parental leave, new parent ramp-up programs, subsidized back-up child care and more - Family building benefits including adoption and surrogacy expense reimbursement, fertility treatments, and more - Vehicle discount program for employees and family members and management leases - Tuition assistance - Established and active employee resource groups - Paid time off for individual and team community service - A generous schedule of paid holidays, including the week between Christmas and New Year's Day - Paid time off and the option to purchase additional vacation time. For a detailed look at our benefits, click here: ******************************* This position is a range of salary grades 7-8. Visa sponsorship is not available for this position. Candidates for positions with Ford Motor Company must be legally authorized to work in the United States. Verification of employment eligibility will be required at the time of hire. We are an Equal Opportunity Employer committed to a culturally diverse workforce. All qualified applicants will receive consideration for employment without regard to race, religion, color, age, sex, national origin, sexual orientation, gender identity, disability status or protected veteran status. In the United States, if you need a reasonable accommodation for the online application process due to a disability, please call **************. \#LI-Hybrid **Requisition ID** : 54783
    $71k-98k yearly est. 41d ago
  • Senior Lead Cloud Security Architect

    Cox Automotive 4.4company rating

    Atlanta, GA jobs

    The Senior Lead Cybersecurity Architect is responsible for defining the principles, standards, and design patterns to build secure products and enterprise tools for all of Cox Automotive's multi-cloud and on-premises environments. This position's architecture focus is on securing multi-cloud infrastructure and services and on-premises infrastructure. Peer cybersecurity architects will be focused on application security, software as a service (SaaS), and network security. This role will use their deep cybersecurity knowledge in the designing and building of secure infrastructure and services in both multi-cloud and on-premises environments. They must be able to collaborate with cross-functional teams throughout the organization and propose well-defined cybersecurity architectural guidelines to be adopted by product and enterprise engineering teams. This role will directly report to the Senior Director of Cybersecurity Architecture at Cox Automotive. Primary Responsibilities Identify and recommend relevant cybersecurity policies, standards, procedures, and guardrails. Drive the definition of cybersecurity guidelines across the product and enterprise architecture group by leading working groups focused on cybersecurity. Develop secure design patterns in conjunction with the product and enterprise architecture group based on standards that can be adopted and implemented by engineering teams. Contribute to the development of non-cyber architecture-related governance patterns, policies, and standards. Provides complex analysis of potential risks to information systems' security and recommends innovative solutions. Work with cross-functional technical, development and delivery teams to ensure the application of smooth, efficient and scalable release processes. Engage with business teams and engineering teams to define cybersecurity guardrails that promote efficient and seamless adoption of secure design patterns. Participate in security events and incident response to identify gaps in current design and propose solutions to prevent threats from reoccurring. Research and evaluate emerging security trends, threats, and technologies, and recommend appropriate solutions and enhancements. Collaborate with data users, software and other technical stakeholders to ensure security considerations are factored into and underpin development and operational decision making. Collaborate with cybersecurity peers to incorporate vulnerability management, governance, risk and compliance, cyber defense, continuous controls monitoring, and identity governance into cybersecurity standards as a cohesive cybersecurity organization. Minimum Qualifications Bachelor's degree in a related discipline and 8 years of experience in a related field. The right candidate could also have a different combination, such as a master's degree and 6 years of experience; a Ph.D. and 3 years of experience in a related field; or 12 years' experience in a related field. At least 4 years focused on cybersecurity. Must have practical expertise in AWS cloud infrastructure and services and on-premises infrastructure. Clearly articulate the objective of specific cybersecurity policies and procedures to technical and non-technical stakeholders. Excellent customer service skills, writing, and executive presentation skills. Develop a strong and productive working environment with key stakeholders and collaborate closely with other Cox entities' cybersecurity teams to implement cybersecurity best practices. Consultative nature to work through controversial or complex topics to employees, leaders, and/or senior leadership. Evaluate risks and recommend actions based on impact and likelihood of the risk to the business. Knowledge of current cybersecurity and technology architectures such as zero trust, IaaS, PaaS, SaaS, virtualization, and containerization. Creatively solving complex cybersecurity challenges while exhibiting solid, pragmatic business acumen. Experience utilizing Agile methodologies. Initiating change and deploying solutions in Fortune 1000 companies. Knowledge of cybersecurity frameworks (e.g., ISO 27000, NIST, FFIEC) and industry relevant regulations that will guide architectural requirements (e.g., GDPR, FFIEC, GLBA). Collaborate with AI agents to create, validate, and assess architectural artifacts Lead cross-functional teams in designing AI-enhanced solutions, establish standards for AI integration, and assess AI technologies within solution architectures. Implement AI-driven architectural governance and compliance by defining robust AI governance frameworks and reference architectures. Improve vendor tool assessments using AI to speed evaluations and minimize mistakes and unknowns. Preferred Qualifications Experience in the development and design of cybersecurity standard methodologies to all layers of the hosting and application stack in both cloud and on-premises environments. Relevant experience with application security, SaaS, network security, DevSecOps, and software-defined networking across a variety of environments and deployments. Knowledge of Identity and Access Management (IAM), cryptography / key management, secrets management, access controls and security protocols (e.g., multi-factor, SAML, OAuth, OIDC). Experience with application security implementations and standard methodologies. Extensive technology knowledge and recognized expertise in several areas including Python, .NET, Java, Spring frameworks, Oracle, serverless, cloud patterns, cloud service and user authentication or similar. Experience with firewall, web application firewalls, and other edge services as well as deep understanding of DMZ and other network architectures. AWS Well-Architected Framework. Experience establishing a strategy for and implementing cloud enterprise solutions in AWS, GCP, or Azure. A strong understanding of cloud containers and/or serverless platforms (e.g., EKS, ECS, Lambda, Fargate). Big four consulting or Fortune 500 company experience. Relevant industry certification (e.g., CISSP, CEH, OSCP, Azure, AWS, CISM, CISA). USD 148,500.00 - 247,500.00 per year Compensation: Compensation includes a base salary of $148,500.00 - $247,500.00. The base salary may vary within the anticipated base pay range based on factors such as the ultimate location of the position and the selected candidate's knowledge, skills, and abilities. Position may be eligible for additional compensation that may include an incentive program. Benefits: The Company offers eligible employees the flexibility to take as much vacation with pay as they deem consistent with their duties, the company's needs, and its obligations; seven paid holidays throughout the calendar year; and up to 160 hours of paid wellness annually for their own wellness or that of family members. Employees are also eligible for additional paid time off in the form of bereavement leave, time off to vote, jury duty leave, volunteer time off, military leave, and parental leave. Applicants must currently be authorized to work in the United States for any employer without current or future sponsorship. No OPT, CPT, STEM/OPT or visa sponsorship now or in future.
    $148.5k-247.5k yearly 2d ago
  • Senior Lead Cloud Security Architect

    Cox Holdings, Inc. 4.4company rating

    Atlanta, GA jobs

    Company Cox Automotive - USA Job Family Group Information Technology Job Profile Cybersecurity Sr Lead Architect Management Level Sr Manager - Non People Leader Flexible Work Option Hybrid - Ability to work remotely part of the week Travel % Yes, 15% of the time Work Shift Day Compensation Compensation includes a base salary of $148,500.00 - $247,500.00. The base salary may vary within the anticipated base pay range based on factors such as the ultimate location of the position and the selected candidate's knowledge, skills, and abilities. Position may be eligible for additional compensation that may include an incentive program. Job Description The Senior Lead Cybersecurity Architect is responsible for defining the principles, standards, and design patterns to build secure products and enterprise tools for all of Cox Automotive's multi-cloud and on-premises environments. This position's architecture focus is on securing multi-cloud infrastructure and services and on-premises infrastructure. Peer cybersecurity architects will be focused on application security, software as a service (SaaS), and network security.This role will use their deep cybersecurity knowledge in the designing and building of secure infrastructure and services in both multi-cloud and on-premises environments. They must be able to collaborate with cross-functional teams throughout the organization and propose well-defined cybersecurity architectural guidelines to be adopted by product and enterprise engineering teams. This role will directly report to the Senior Director of Cybersecurity Architecture at Cox Automotive. Primary Responsibilities Identify and recommend relevant cybersecurity policies, standards, procedures, and guardrails. Drive the definition of cybersecurity guidelines across the product and enterprise architecture group by leading working groups focused on cybersecurity. Develop secure design patterns in conjunction with the product and enterprise architecture group based on standards that can be adopted and implemented by engineering teams. Contribute to the development of non-cyber architecture-related governance patterns, policies, and standards. Provides complex analysis of potential risks to information systems' security and recommends innovative solutions. Work with cross-functional technical, development and delivery teams to ensure the application of smooth, efficient and scalable release processes. Engage with business teams and engineering teams to define cybersecurity guardrails that promote efficient and seamless adoption of secure design patterns. Participate in security events and incident response to identify gaps in current design and propose solutions to prevent threats from reoccurring. Research and evaluate emerging security trends, threats, and technologies, and recommend appropriate solutions and enhancements. Collaborate with data users, software and other technical stakeholders to ensure security considerations are factored into and underpin development and operational decision making. Collaborate with cybersecurity peers to incorporate vulnerability management, governance, risk and compliance, cyber defense, continuous controls monitoring, and identity governance into cybersecurity standards as a cohesive cybersecurity organization. Minimum Qualifications Bachelor's degree in a related discipline and 8 years of experience in a related field. The right candidate could also have a different combination, such as a master's degree and 6 years of experience; a Ph.D. and 3 years of experience in a related field; or 12 years' experience in a related field. At least 4 years focused on cybersecurity. Must have practical expertise in AWS cloud infrastructure and services and on-premises infrastructure. Clearly articulate the objective of specific cybersecurity policies and procedures to technical and non-technical stakeholders. Excellent customer service skills, writing, and executive presentation skills. Develop a strong and productive working environment with key stakeholders and collaborate closely with other Cox entities' cybersecurity teams to implement cybersecurity best practices. Consultative nature to work through controversial or complex topics to employees, leaders, and/or senior leadership. Evaluate risks and recommend actions based on impact and likelihood of the risk to the business. Knowledge of current cybersecurity and technology architectures such as zero trust, IaaS, PaaS, SaaS, virtualization, and containerization. Creatively solving complex cybersecurity challenges while exhibiting solid, pragmatic business acumen. Experience utilizing Agile methodologies. Initiating change and deploying solutions in Fortune 1000 companies. Knowledge of cybersecurity frameworks (e.g., ISO 27000, NIST, FFIEC) and industry relevant regulations that will guide architectural requirements (e.g., GDPR, FFIEC, GLBA). Collaborate with AI agents to create, validate, and assess architectural artifacts Lead cross-functional teams in designing AI-enhanced solutions, establish standards for AI integration, and assess AI technologies within solution architectures. Implement AI-driven architectural governance and compliance by defining robust AI governance frameworks and reference architectures. Improve vendor tool assessments using AI to speed evaluations and minimize mistakes and unknowns. Preferred Qualifications Experience in the development and design of cybersecurity standard methodologies to all layers of the hosting and application stack in both cloud and on-premises environments. Relevant experience with application security, SaaS, network security, DevSecOps, and software-defined networking across a variety of environments and deployments. Knowledge of Identity and Access Management (IAM), cryptography / key management, secrets management, access controls and security protocols (e.g., multi-factor, SAML, OAuth, OIDC). Experience with application security implementations and standard methodologies. Extensive technology knowledge and recognized expertise in several areas including Python, .NET, Java, Spring frameworks, Oracle, serverless, cloud patterns, cloud service and user authentication or similar. Experience with firewall, web application firewalls, and other edge services as well as deep understanding of DMZ and other network architectures. AWS Well-Architected Framework. Experience establishing a strategy for and implementing cloud enterprise solutions in AWS, GCP, or Azure. A strong understanding of cloud containers and/or serverless platforms (e.g., EKS, ECS, Lambda, Fargate). Big four consulting or Fortune 500 company experience. Relevant industry certification (e.g., CISSP, CEH, OSCP, Azure, AWS, CISM, CISA). Drug Testing To be employed in this role, you'll need to clear a pre-employment drug test. Cox Automotive does not currently administer a pre-employment drug test for marijuana for this position. However, we are a drug-free workplace, so the possession, use or being under the influence of drugs illegal under federal or state law during work hours, on company property and/or in company vehicles is prohibited. Benefits The Company offers eligible employees the flexibility to take as much vacation with pay as they deem consistent with their duties, the company's needs, and its obligations; seven paid holidays throughout the calendar year; and up to 160 hours of paid wellness annually for their own wellness or that of family members. Employees are also eligible for additional paid time off in the form of bereavement leave, time off to vote, jury duty leave, volunteer time off, military leave, and parental leave. About Us Through groundbreaking technology and a commitment to stellar experiences for drivers and dealers alike, Cox Automotive employees are transforming the way the world buys, owns, sells - or simply uses - cars. Cox Automotive employees get to work on iconic consumer brands like Autotrader and Kelley Blue Book and industry-leading dealer-facing companies like vAuto and Manheim, all while enjoying the people-centered atmosphere that is central to our life at Cox. Benefits of working at Cox may include health care insurance (medical, dental, vision), retirement planning (401(k)), and paid days off (sick leave, parental leave, flexible vacation/wellness days, and/or PTO). For more details on what benefits you may be offered, visit our benefits page. Cox is an Equal Employment Opportunity employer - All qualified applicants/employees will receive consideration for employment without regard to that individual's age, race, color, religion or creed, national origin or ancestry, sex (including pregnancy), sexual orientation, gender, gender identity, physical or mental disability, veteran status, genetic information, ethnicity, citizenship, or any other characteristic protected by law. Cox provides reasonable accommodations when requested by a qualified applicant or employee with disability, unless such accommodations would cause an undue hardship.Applicants must currently be authorized to work in the United States for any employer without current or future sponsorship. No OPT, CPT, STEM/OPT or visa sponsorship now or in future.
    $148.5k-247.5k yearly Auto-Apply 4d ago
  • Senior Cyber Security Engineer - Security Services

    General Motors 4.6company rating

    Austin, TX jobs

    The Role: As a Senior Cyber Security Engineer, you will play a critical role in safeguarding General Motors' automotive computer systems and embedded platforms against evolving cyber threats. This position focuses on the design, implementation, and maintenance of robust security services within a dynamic, high-stakes environment. What You'll Do: * Technical Leadership: Lead the technical aspects of the application onboarding process, including the design, development, and implementation of authentication and authorization protocols (e.g., SAML, OAuth, OpenID Connect). * Onboarding Strategy: Develop and execute a comprehensive onboarding strategy that aligns with the overall goals of the Cyber Security and IAM teams, ensuring secure and efficient integration of applications. * Collaboration: Work closely with application owners, developers, and business stakeholders to gather requirements and ensure that onboarding processes meet both security and business needs. * Process Improvement: Identify and implement opportunities to enhance the efficiency and effectiveness of the onboarding process, including automation and best practices. * Security Compliance: Ensure that all onboarded applications adhere to internal and external security policies and compliance standards, conducting risk assessments and implementing necessary controls. * Innovation: Stay informed on the latest trends and technologies in Cyber Security and IAM, and incorporate innovative solutions to improve the onboarding process. * Mentorship: Provide guidance and mentorship to junior engineers and other team members, fostering a culture of continuous learning and professional growth. * Documentation: Maintain comprehensive documentation of onboarding processes, security protocols, and any custom integrations, ensuring that knowledge is easily accessible and transferable. Your Skills & Abilities (Required Qualifications): * Bachelor's degree in Cyber Security, Information Technology, Computer Science, or a related field. A Master's degree is preferred. * Minimum of 5 years of experience in Cyber Security, with a strong focus on Identity and Access Management (IAM). * Proven experience in leading the integration of applications into IAM systems in a complex, enterprise environment. * Strong hands-on experience with authentication and authorization protocols such as SAML, OAuth, OpenID Connect. * Experience with automation tools and scripting languages (e.g., Python, PowerShell) to streamline processes. * Strong understanding of security protocols, encryption, and access control mechanisms. * Proficiency in Identity and Access Management platforms and tools, such as Entra ID, GCP, AWS or similar. * Strong problem-solving abilities, with a proactive approach to identifying and addressing challenges. * Leadership skills with the ability to mentor and guide junior engineers and team members. * Strategic thinker with a strong attention to detail and the ability to manage multiple priorities. * Excellent communication and collaboration skills, with the ability to work effectively with cross-functional teams and stakeholders at all levels. What Will Give You A Competitive Edge (Preferred Qualifications): * Certifications: CISSP, CISM, CCSP, or other relevant security certifications. * Experience in a lead engineering role within a Cyber Security or IAM organization. * Experience in project management, particularly in leading cross-functional technical initiatives. #LI-SB3 GM does not provide immigration-related sponsorship for this role. Do not apply for this role if you will need GM immigration sponsorship now or in the future. This includes direct company sponsorship, entry of GM as the immigration employer of record on a government form, and any work authorization requiring a written submission or other immigration support from the company (e.g., H1-B, OPT, STEM OPT, CPT, TN, J-1, etc). This role is categorized as hybrid. This means the selected candidate is expected to report to a specific location at least 3 times a week {or other frequency dictated by their manager}. This job may be eligible for relocation benefits. About GM Our vision is a world with Zero Crashes, Zero Emissions and Zero Congestion and we embrace the responsibility to lead the change that will make our world better, safer and more equitable for all. Why Join Us We believe we all must make a choice every day - individually and collectively - to drive meaningful change through our words, our deeds and our culture. Every day, we want every employee to feel they belong to one General Motors team. Benefits Overview From day one, we're looking out for your well-being-at work and at home-so you can focus on realizing your ambitions. Learn how GM supports a rewarding career that rewards you personally by visiting Total Rewards resources. Non-Discrimination and Equal Employment Opportunities (U.S.) General Motors is committed to being a workplace that is not only free of unlawful discrimination, but one that genuinely fosters inclusion and belonging. We strongly believe that providing an inclusive workplace creates an environment in which our employees can thrive and develop better products for our customers. All employment decisions are made on a non-discriminatory basis without regard to sex, race, color, national origin, citizenship status, religion, age, disability, pregnancy or maternity status, sexual orientation, gender identity, status as a veteran or protected veteran, or any other similarly protected status in accordance with federal, state and local laws. We encourage interested candidates to review the key responsibilities and qualifications for each role and apply for any positions that match their skills and capabilities. Applicants in the recruitment process may be required, where applicable, to successfully complete a role-related assessment(s) and/or a pre-employment screening prior to beginning employment. To learn more, visit How we Hire. Accommodations General Motors offers opportunities to all job seekers including individuals with disabilities. If you need a reasonable accommodation to assist with your job search or application for employment, email us or call us at ************. In your email, please include a description of the specific accommodation you are requesting as well as the job title and requisition number of the position for which you are applying.
    $91k-115k yearly est. Auto-Apply 4d ago
  • Senior Cyber Security Engineer - Security Services

    General Motors 4.6company rating

    Austin, TX jobs

    **The Role:** As a Senior Cyber Security Engineer, you will play a critical role in safeguarding General Motors' automotive computer systems and embedded platforms against evolving cyber threats. This position focuses on the design, implementation, and maintenance of robust security services within a dynamic, high-stakes environment. **What You'll Do:** + Technical Leadership: Lead the technical aspects of the application onboarding process, including the design, development, and implementation of authentication and authorization protocols (e.g., SAML, OAuth, OpenID Connect). + Onboarding Strategy: Develop and execute a comprehensive onboarding strategy that aligns with the overall goals of the Cyber Security and IAM teams, ensuring secure and efficient integration of applications. + Collaboration: Work closely with application owners, developers, and business stakeholders to gather requirements and ensure that onboarding processes meet both security and business needs. + Process Improvement: Identify and implement opportunities to enhance the efficiency and effectiveness of the onboarding process, including automation and best practices. + Security Compliance: Ensure that all onboarded applications adhere to internal and external security policies and compliance standards, conducting risk assessments and implementing necessary controls. + Innovation: Stay informed on the latest trends and technologies in Cyber Security and IAM, and incorporate innovative solutions to improve the onboarding process. + Mentorship: Provide guidance and mentorship to junior engineers and other team members, fostering a culture of continuous learning and professional growth. + Documentation: Maintain comprehensive documentation of onboarding processes, security protocols, and any custom integrations, ensuring that knowledge is easily accessible and transferable. **Your Skills & Abilities (Required Qualifications):** + Bachelor's degree in Cyber Security, Information Technology, Computer Science, or a related field. A Master's degree is preferred. + Minimum of 5 years of experience in Cyber Security, with a strong focus on Identity and Access Management (IAM). + Proven experience in leading the integration of applications into IAM systems in a complex, enterprise environment. + Strong hands-on experience with authentication and authorization protocols such as SAML, OAuth, OpenID Connect. + Experience with automation tools and scripting languages (e.g., Python, PowerShell) to streamline processes. + Strong understanding of security protocols, encryption, and access control mechanisms. + Proficiency in Identity and Access Management platforms and tools, such as Entra ID, GCP, AWS or similar. + Strong problem-solving abilities, with a proactive approach to identifying and addressing challenges. + Leadership skills with the ability to mentor and guide junior engineers and team members. + Strategic thinker with a strong attention to detail and the ability to manage multiple priorities. + Excellent communication and collaboration skills, with the ability to work effectively with cross-functional teams and stakeholders at all levels. **What Will Give You A Competitive Edge (Preferred Qualifications):** + Certifications: CISSP, CISM, CCSP, or other relevant security certifications. + Experience in a lead engineering role within a Cyber Security or IAM organization. + Experience in project management, particularly in leading cross-functional technical initiatives. \#LI-SB3 GM does not provide immigration-related sponsorship for this role. Do not apply for this role if you will need GM immigration sponsorship now or in the future. This includes direct company sponsorship, entry of GM as the immigration employer of record on a government form, and any work authorization requiring a written submission or other immigration support from the company (e.g., H1-B, OPT, STEM OPT, CPT, TN, J-1, etc). This role is categorized as hybrid. This means the selected candidate is expected to report to a specific location at least 3 times a week {or other frequency dictated by their manager}. This job may be eligible for relocation benefits. **About GM** Our vision is a world with Zero Crashes, Zero Emissions and Zero Congestion and we embrace the responsibility to lead the change that will make our world better, safer and more equitable for all. **Why Join Us** We believe we all must make a choice every day - individually and collectively - to drive meaningful change through our words, our deeds and our culture. Every day, we want every employee to feel they belong to one General Motors team. **Benefits Overview** From day one, we're looking out for your well-being-at work and at home-so you can focus on realizing your ambitions. Learn how GM supports a rewarding career that rewards you personally by visiting Total Rewards resources (************************************************************* . **Non-Discrimination and Equal Employment Opportunities (U.S.)** General Motors is committed to being a workplace that is not only free of unlawful discrimination, but one that genuinely fosters inclusion and belonging. We strongly believe that providing an inclusive workplace creates an environment in which our employees can thrive and develop better products for our customers. All employment decisions are made on a non-discriminatory basis without regard to sex, race, color, national origin, citizenship status, religion, age, disability, pregnancy or maternity status, sexual orientation, gender identity, status as a veteran or protected veteran, or any other similarly protected status in accordance with federal, state and local laws. We encourage interested candidates to review the key responsibilities and qualifications for each role and apply for any positions that match their skills and capabilities. Applicants in the recruitment process may be required, where applicable, to successfully complete a role-related assessment(s) and/or a pre-employment screening prior to beginning employment. To learn more, visit How we Hire (********************************************* . **Accommodations** General Motors offers opportunities to all job seekers including individuals with disabilities. If you need a reasonable accommodation to assist with your job search or application for employment, email (Careers.Accommodations@GM.com) us or call us at ************. In your email, please include a description of the specific accommodation you are requesting as well as the job title and requisition number of the position for which you are applying. We are leading the change to make our world better, safer and more equitable for all through our actions and how we behave. Learn more about: **Our Company (************************************************** **Our Culture** **How we hire (************************************************ Our diverse team of employees bring their collective passion for engineering, technology and design to deliver on our vision of a world with Zero Crashes, Zero Emissions and Zero Congestion. We are looking for adventure-seekers and imaginative thought leaders to help us transform mobility. Explore our global locations (******************************************** We are determined to lead change for the world through technology, ingenuity and harnessing the creativity of our diverse team. Join us to help lead the change that will make our world better, safer and more equitable for all by becoming a member of GM's Talent Community (beamery.com) (*********************************************** . As a part of our Talent Community, you will receive updates about GM, open roles, career insights and more. Please note that filling out the form below will not add you to our Talent Community automatically; you will need to use the link above. If you are seeking to apply to a specific role, we encourage you to click "Apply Now" on the job posting of interest. The policy of General Motors is to extend opportunities to qualified applicants and employees on an equal basis regardless of an individual's age, race, color, sex, religion, national origin, disability, sexual orientation, gender identity/expression or veteran status. Additionally, General Motors is committed to being an Equal Employment Opportunity Employer and offers opportunities to all job seekers including individuals with disabilities. If you need a reasonable accommodation to assist with your job search or application for employment, email us at Careers.Accommodations@GM.com .In your email, please include a description of the specific accommodation you are requesting as well as the job title and requisition number of the position for which you are applying.
    $91k-115k yearly est. 3d ago
  • Senior Cyber Security Engineer - Security Services

    General Motors 4.6company rating

    Warren, MI jobs

    The Role: As a Senior Cyber Security Engineer, you will play a critical role in safeguarding General Motors' automotive computer systems and embedded platforms against evolving cyber threats. This position focuses on the design, implementation, and maintenance of robust security services within a dynamic, high-stakes environment. What You'll Do: Technical Leadership: Lead the technical aspects of the application onboarding process, including the design, development, and implementation of authentication and authorization protocols (e.g., SAML, OAuth, OpenID Connect). Onboarding Strategy: Develop and execute a comprehensive onboarding strategy that aligns with the overall goals of the Cyber Security and IAM teams, ensuring secure and efficient integration of applications. Collaboration: Work closely with application owners, developers, and business stakeholders to gather requirements and ensure that onboarding processes meet both security and business needs. Process Improvement: Identify and implement opportunities to enhance the efficiency and effectiveness of the onboarding process, including automation and best practices. Security Compliance: Ensure that all onboarded applications adhere to internal and external security policies and compliance standards, conducting risk assessments and implementing necessary controls. Innovation: Stay informed on the latest trends and technologies in Cyber Security and IAM, and incorporate innovative solutions to improve the onboarding process. Mentorship: Provide guidance and mentorship to junior engineers and other team members, fostering a culture of continuous learning and professional growth. Documentation: Maintain comprehensive documentation of onboarding processes, security protocols, and any custom integrations, ensuring that knowledge is easily accessible and transferable. Your Skills & Abilities (Required Qualifications): Bachelor's degree in Cyber Security, Information Technology, Computer Science, or a related field. A Master's degree is preferred. Minimum of 5 years of experience in Cyber Security, with a strong focus on Identity and Access Management (IAM). Proven experience in leading the integration of applications into IAM systems in a complex, enterprise environment. Strong hands-on experience with authentication and authorization protocols such as SAML, OAuth, OpenID Connect. Experience with automation tools and scripting languages (e.g., Python, PowerShell) to streamline processes. Strong understanding of security protocols, encryption, and access control mechanisms. Proficiency in Identity and Access Management platforms and tools, such as Entra ID, GCP, AWS or similar. Strong problem-solving abilities, with a proactive approach to identifying and addressing challenges. Leadership skills with the ability to mentor and guide junior engineers and team members. Strategic thinker with a strong attention to detail and the ability to manage multiple priorities. Excellent communication and collaboration skills, with the ability to work effectively with cross-functional teams and stakeholders at all levels. What Will Give You A Competitive Edge (Preferred Qualifications): Certifications: CISSP, CISM, CCSP, or other relevant security certifications. Experience in a lead engineering role within a Cyber Security or IAM organization. Experience in project management, particularly in leading cross-functional technical initiatives. #LI-SB3 GM does not provide immigration-related sponsorship for this role. Do not apply for this role if you will need GM immigration sponsorship now or in the future. This includes direct company sponsorship, entry of GM as the immigration employer of record on a government form, and any work authorization requiring a written submission or other immigration support from the company (e.g., H1-B, OPT, STEM OPT, CPT, TN, J-1, etc). This role is categorized as hybrid. This means the selected candidate is expected to report to a specific location at least 3 times a week {or other frequency dictated by their manager}. This job may be eligible for relocation benefits. About GM Our vision is a world with Zero Crashes, Zero Emissions and Zero Congestion and we embrace the responsibility to lead the change that will make our world better, safer and more equitable for all. Why Join Us We believe we all must make a choice every day - individually and collectively - to drive meaningful change through our words, our deeds and our culture. Every day, we want every employee to feel they belong to one General Motors team. Benefits Overview From day one, we're looking out for your well-being-at work and at home-so you can focus on realizing your ambitions. Learn how GM supports a rewarding career that rewards you personally by visiting Total Rewards resources. Non-Discrimination and Equal Employment Opportunities (U.S.) General Motors is committed to being a workplace that is not only free of unlawful discrimination, but one that genuinely fosters inclusion and belonging. We strongly believe that providing an inclusive workplace creates an environment in which our employees can thrive and develop better products for our customers. All employment decisions are made on a non-discriminatory basis without regard to sex, race, color, national origin, citizenship status, religion, age, disability, pregnancy or maternity status, sexual orientation, gender identity, status as a veteran or protected veteran, or any other similarly protected status in accordance with federal, state and local laws. We encourage interested candidates to review the key responsibilities and qualifications for each role and apply for any positions that match their skills and capabilities. Applicants in the recruitment process may be required, where applicable, to successfully complete a role-related assessment(s) and/or a pre-employment screening prior to beginning employment. To learn more, visit How we Hire. Accommodations General Motors offers opportunities to all job seekers including individuals with disabilities. If you need a reasonable accommodation to assist with your job search or application for employment, email us or call us at ************. In your email, please include a description of the specific accommodation you are requesting as well as the job title and requisition number of the position for which you are applying.
    $91k-115k yearly est. Auto-Apply 5d ago
  • Senior Security Incident Response/Cyber Threat Intelligence Analyst

    Lucid Motors 4.4company rating

    Newark, NJ jobs

    Leading the future in luxury electric and mobility At Lucid, we set out to introduce the most captivating, luxury electric vehicles that elevate the human experience and transcend the perceived limitations of space, performance, and intelligence. Vehicles that are intuitive, liberating, and designed for the future of mobility. We plan to lead in this new era of luxury electric by returning to the fundamentals of great design - where every decision we make is in service of the individual and environment. Because when you are no longer bound by convention, you are free to define your own experience. Come work alongside some of the most accomplished minds in the industry. Beyond providing competitive salaries, we're providing a community for innovators who want to make an immediate and significant impact. If you are driven to create a better, more sustainable future, then this is the right place for you. At Lucid Motors, the Senior Security Incident Response/Cyber Threat Intelligence Analyst is responsible for the Security operations, Incident response, Threat Hunting and Cyber Threat Intelligence. This role is essential to strengthening our threat-informed defense posture and providing strategic and tactical intelligence to Security Operations, Incident Response, and Risk teams. The ideal candidate will bring deep experience in threat intelligence lifecycle management, dark web monitoring, identity intelligence, and exposure of enterprise assets across surface, deep, and dark web environments. You Will: Collect, analyze, and operationalize threat intelligence across surface, deep, and dark web sources. Use tools such as Recorded Future, CrowdStrike Counter Adversary Module, OSINT, and dark web monitoring platforms to identify emerging threats, campaigns, and threat actor behaviors. Perform identity intelligence and account exposure investigations across criminal forums, paste sites, and marketplaces. Monitor and assess threats from social media, hacktivist groups, and geopolitical activity. Enrich SOC and IR investigations with contextual threat intelligence (IOCs, TTPs, attribution). Track and report on threat actors, malware families, exploit trends, and sector-specific targeting. Produce periodic threat assessments, intelligence briefings, and alerts for internal stakeholders. Collaborate with Detection Engineering to convert intelligence into detections and hunt hypotheses. Support intelligence requirements for Security Operations, Incident Response, Risk, and Legal teams. Proficient with forensic tools such as EnCase, FTK, Velociraptor, Volatility, etc. Experience with SIEM, EDR, and SOAR platforms (e.g., Splunk, CrowdStrike, SentinelOne). Strong knowledge of network protocols, system internals (Windows/Linux), and common attack techniques. You Bring: 3-6 years of experience in Cyber Threat Intelligence, Security Operations, or Threat Hunting. Proficiency with Recorded Future, CrowdStrike (especially Counter Adversary Module), and dark web intelligence platforms. Deep understanding of threat actor TTPs, MITRE ATT&CK framework, and intelligence lifecycle. Experience in multiple intelligence disciplines including: Threat Intelligence (TI) SecOps Intelligence Identity Intelligence Dark Web Intelligence Surface Web Intelligence Social Media Monitoring Third Party Intelligence Strong writing skills for producing intelligence reports, threat profiles, and executive summaries. Advantageous: Familiarity with TIP platforms, STIX/TAXII feeds, and intel ingestion into SIEM/SOAR tools. Certifications such as GCTI, GREM, CTIA, or GCIA. Understanding of geopolitical and nation-state threat landscapes. Experience contributing to threat hunting and red team exercises. ***This role is an onsite role at our headquarters in Newark, CA.*** At Lucid, we don't just welcome diversity - we celebrate it! Lucid Motors is proud to be an equal opportunity workplace. We are committed to equal employment opportunity regardless of race, color, national or ethnic origin, age, religion, disability, sexual orientation, gender, gender identity and expression, marital status, and any other characteristic protected under applicable State or Federal laws and regulations.Salary Range: The compensation range for this position is specific to the locations listed below and is the range Lucid reasonably and in good faith expects to pay for the position taking into account the wide variety of factors that are considered in making compensation decisions, including job-related knowledge; skillset; experience, education and training; certifications; and other relevant business and organizational factors. Additional Compensation and Benefits: Lucid offers a wide range of competitive benefits, including medical, dental, vision, life insurance, disability insurance, vacation, and 401k. The successful candidate may also be eligible to participate in Lucid's equity program and/or a discretionary annual incentive program, subject to the rules governing such programs. (Cash or equity incentive awards, if any, will depend on various factors, including, without limitation, individual and company performance.) Base Pay Range (Annual) $133,900 - $184,140 USD Additional Compensation and Benefits: Lucid offers a wide range of competitive benefits, including medical, dental, vision, life insurance, disability insurance, vacation, and 401k. The successful candidate may also be eligible to participate in Lucid's equity program and/or a discretionary annual incentive program, subject to the rules governing such programs. (Cash or equity incentive awards, if any, will depend on various factors, including, without limitation, individual and company performance.) By Submitting your application, you understand and agree that your personal data will be processed in accordance with our Candidate Privacy Notice. If you are a California resident, please refer to our California Candidate Privacy Notice. To all recruitment agencies: Lucid Motors does not accept agency resumes. Please do not forward resumes to our careers alias or other Lucid Motors employees. Lucid Motors is not responsible for any fees related to unsolicited resumes.
    $133.9k-184.1k yearly Auto-Apply 60d+ ago
  • Anti Tamper System Security Analyst

    Mag 4.6company rating

    Lexington Park, MD jobs

    At MAG, we provide and enable real-time situational awareness to help our customers make the world smaller and safer. We are laser focused on serving our customers by providing technical expertise, operational excellence, and flawless execution. Relentlessly driven by our dedication to service and performance, we have become the leading independent provider of manned/unmanned full-spectrum outsourced ISR services in the world. Our success is due entirely to the high caliber of employees we recruit, hire, and retain. At MAG, we look for individuals who thrive in a high-performance environment where challenges are the norm and success are expected. MAG Aerospace is seeking a resourceful Anti Tamper System Security Analyst professional to implement and maintain security measures to protect systems from tampering and unauthorized access. ***Must be a US Citizen*** **Must hold a current Top Secret with SSBI and SCI eligible** **Essential Duties and Responsibilities** + Conducting security assessments: Regularly evaluating the security posture of systems to identify vulnerabilities and potential threats. + Implementing security protocols: Developing and enforcing security policies, including firewalls, intrusion detection systems, and access controls. + Monitoring system integrity: Keeping track of system activities and responding to any suspicious or unauthorized access attempts. + Training and educating: Educating users and staff on best practices for data security and conducting regular training sessions. + Reporting and analysis: Preparing detailed reports on security incidents, including resolution steps and preventive measures. + Collaboration: Working with IT teams and other security professionals to secure network architecture and endpoint devices. **Requirements** Active TOP SECRET w/SSBI (within 5 years) required. SCI eligibility required. **Experience:** + At least 10 years combined experience in testing and/or technical program management / management support and systems engineering and integration in major defense acquisition programs relating to aircraft / weapon system acquisition and development. + At least 5 yrs experience in technical program management and/or system development team leadership position. + Possess general knowledge and demonstrated proficiency in the following areas: + Experience with weapons system development desired. + Programmatic acquisition experience desired. + Demonstrated understanding of DoD (or appropriate policies and directives) acquisition policy and directives. + Knowledge and experience working with the Anti-Tamper Executive Agent and their processes is highly desired. **Education:** + Bachelors degree in IT related field or have 3 years of additional applied work experience **Clearance:** + **Active TOP SECRET clearance with SSBI upgrade** + Possess **eligibility** for access to be **upgraded to a** **SCI** in the **NEAR** future upon hire - (ALL HIRES WILL MAINTAIN AN SCI - MAG Will Upgrade your TS to TS/SCI - IF YOU POSSES THE BACKGROUND TO BE UPGRADED) + Personnel who are enrolled in CE will also be eligible \#LI-VF1 **Special Note** The position is contingent upon candidate's ability to meet physical and medical requirements as needed by the position; including compliance with all applicable federal, state, and local jurisdictional requirements. **Benefits and Compensation** At MAG Aerospace, we value your contributions providing our employees with a robust Total Rewards package that supports your total well-being. Full-time and part-time employees working at least 30 hours a week on a regular basis are eligible to participate in MAG's Total Rewards programs. Our offerings include health, life, disability, financial, and retirement benefits as well as paid leave, professional development, and tuition assistance. Individuals that do not meet the threshold are only eligible for select offerings not inclusive of health benefits. We encourage you to learn more about our Total Rewards Program by visiting the Resource page on our Careers site: ********************************** Salary at MAG Aerospace is determined by various factors including but not limited to location, the particular combination of education, knowledge, skills, competencies, and experience as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $80500 to $149500 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of MAG's total compensation package for employees. **Need help finding the right job?** We can recommend jobs specifically for you! **Job Locations** _MD-Lexington Park_ **ID** _2025-7988_ **Work Region** _CONUS_ **Type** _Regular Full-Time_ **Clearance** _TS/SCI Eligibility_
    $80.5k-149.5k yearly 13d ago
  • AWS Security Architect

    Precision Resources 4.4company rating

    Birmingham, AL jobs

    Precision Resources, a division of the Trimarc Group Inc., is currently assisting a client with their search for an experienced AWS Security Architect. An AWS Security Architect is a specialized cybersecurity professional who designs, implements, and manages security strategies for cloud-based systems. They ensure that cloud environments and applications are secure, compliant, and resilient against threats. This involves defining security policies, implementing security controls, and continuously monitoring and improving the overall cloud security posture. Key Responsibilities: Designing Secure Cloud Architectures - Creating secure blueprints for cloud infrastructure, encompassing network security, access controls, data encryption, and more. Implementing Security Controls - Setting up and configuring security tools and technologies like firewalls, intrusion detection systems, and identity and access management solutions. Developing Security Policies - Creating and enforcing policies that govern how data and resources are accessed and used within the cloud environment. Conducting Security Assessments - Regularly evaluating the security of cloud systems, identifying vulnerabilities, and recommending remediation steps. Incident Response - Participating in the investigation and resolution of security incidents that may occur in the cloud environment. Staying Updated - Keeping abreast of the latest cloud security threats, vulnerabilities, and best practices. Collaboration - Working with other teams, like developers and operations, to integrate security into the entire cloud lifecycle. Essential Skills: Cloud Platform Expertise - Deep knowledge of AWS it's respective security services. Security Principles - Strong understanding of core security concepts such as encryption, authentication, authorization, and network security. Risk Management - Ability to assess and mitigate security risks within the cloud environment. Scripting and Automation - Proficiency in scripting languages (e.g., Python, PowerShell) for automating security tasks and building security tools. Communication and Collaboration - Excellent communication and interpersonal skills to effectively work with various teams and stakeholders. To upload your resume and apply directly, please visit: https://evoportalus.tracker-rms.com/PrecisionResources/apply?jobcode=1273
    $95k-139k yearly est. 60d+ ago
  • Information Systems Security Officer

    Mag 4.6company rating

    Fayetteville, NC jobs

    MAG is currently looking for an Information Systems Security Officer (ISSO) to provide a variety of services leveraging the Risk Management Framework (RMF) accreditation. Services are associated with validation, approval, and sustainment of cybersecurity accreditation packages. In this role, you will performs and analyze a range of ISSO activities and assist with the development and implementation of security policies. This position is located in Ft. Bragg, NC, supporting the Special Operations community. **Essential Duties and Responsibilities** **Duties include, but** **are not** **limited to** **:** + Gather and translate customer requirements, interact with stakeholders from many areas, and lead efforts to ensure customer products and recommendations will meet customer information security policies in an ever-changing technical environment + Categorize the IT and the information processed, store, and transmitted by the system based on an impact analysis due to a loss of Confidentiality, Integrity, and Availability (CIA) impacts + Select an initial set of baseline security controls for the Information System (IS) based on the security categorization; overlay tailoring and supplementing the security control baseline as needed based on an organizational assessment of risk and local conditions + Assess the security control using the appropriate methods and procedures to determine the extent to which the controls are implemented correctly, operating as intended, and producing the desired outcome + Authorize the IS based on the determination of the risk to the organizational operations, organizational assets, or to individuals resulting from the operation of the IS and the decision that this risk is acceptable + Monitor the security of the IS on a continuous basis including assessing control effectiveness, documenting changes to the system, conducting security impact analyses of the associated changes, and reporting the security status of the system to appropriate organizational officials on a regular basis + Review, prepare and update RMF authorization packages + Conduct assessments of information security controls to measure the effectiveness of controls and identify any gaps + Manage remediation efforts and report on the status of control deficiencies + Provide security expertise to business units and key stakeholders + Provide timely status updates/reporting on assessments and assigned projects **Requirements** **Minimum Requirements** **Knowledge and Skills** + In compliance with DoD Cyber Workforce 8570.01 + Experience in Information Assurance / Cybersecurity, including development, integration, and implementation of cybersecurity and program protection standards for networking, computers, and custom applications + Thorough knowledge of the Department of Defense 8510.01 Risk Management Framework (RMF) for DoD Information Technology, DoD Instruction 8500.1 Cybersecurity, DoD Directive 8140.01, Cyberspace Workforce Management, NIST 800 Special Publications, Federal Information Processing Standards (FIPS), and knowledge of current authorization practices, particularly within the DoD + Experience in creating and maintaining the security configuration baselines for Windows and Linux platforms, networking equipment, cloud technologies, and custom applications (i.e., Minimum Benchmarks: CIS, STIGS) + Familiar with DIA assessments and accreditation documentation within the XACTA management platform + Familiar with eMASS - USSOCOM ENTERPRISE MISSION ASSURANCE SUPPORT SERVICES platform + Provide subject matter expertise, advice and assistance in the planning, implementation, and accreditation of technology and solutions + Must meet position and certification requirements outlined in DoD Directive 8570.01-M for Information Assurance Management Level( **IAM Level II** ). IAT Level II is also considered. **Experience** + 5+ years **Education** + BS in Computer Science or Information Technology (or equivalent experience) **Desired Requirements** + Ability to read, review, and consolidate ACAS scans, DISA STIGS, and Websense results + Excellent interpersonal skills, including the ability to work on multi-functional teams + Display detailed knowledge and understanding of multiple technology infrastructures + Ability to serve as a principal advisor on all matters, technical and otherwise, involving the security of an IS + Exhibit individual initiative to influence events and achieve goals. Be proactive and a self-starter, going beyond specific job responsibilities to ensure goals and achieved or exceeded + Travel as necessary for customer projects, technology expositions, and corporate meetings **Other Qualifications** + US Citizenship and Possess an Active TS/SCI Clearance + Physical requirements for the job include the ability to work in an office and lab environment **Special Note** The position is contingent upon candidate's ability to meet physical and medical requirements as needed by the position; including compliance with all applicable federal, state, and local jurisdictional requirements. Government or customer site-specific requirements may include, but are not limited to, proof of full COVID-19 vaccination status, except in circumstances where a candidate is legally entitled to an accommodation. **Company Policy** MAG Aerospace (MAG) is an Equal Opportunity/Affirmative Action Employer and is committed to Diversity and Inclusion. We encourage diverse candidates to apply to our positions. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status. Click below for the "Know Your Rights" and "Pay Transparency Nondiscrimination" supplement posters. ****************************************** MAG Aerospace (MAG) is committed to providing an online application process that is accessible to all, including individuals with a disability, by offering an alternative way to apply for job openings. This alternative method is available for those who cannot otherwise complete the online application due to a disability or need for accommodation. MAG provides reasonable accommodation to applicants under the guidance of the Americans with Disabilities Act (ADA), Section 503 of the Rehabilitation Act of 1973, the Vietnam-Era Veterans' Readjustment Assistance Act of 1974, and certain state and/or local laws. If you need assistance due to a disability, please contact the MAG Aerospace Recruiting email: *********************** or call **************. **Need help finding the right job?** We can recommend jobs specifically for you! **Job Locations** _NC-Ft. Bragg_ **ID** _2025-7982_ **Work Region** _CONUS_ **Category** _Information Technology_ **Type** _Regular Full-Time_ **Clearance** _Top Secret/SCI_
    $62k-82k yearly est. 33d ago
  • Systems Engineer - Cyber Security

    Penske 4.2company rating

    Reading, PA jobs

    **Summary Statement:** You will be working with a team of experts to resolve issues and create new security infrastructure based on current market trends. **What you will be doing:** As a Penske Systems Engineer - Cyber Security you will maintain network, server and workstation firewall protection and provide network and application scanning, security logging, and intrusion detection capabilities. You will provide security reviews and define security models for new systems based on current trends and developments. You will also collaborate with different teams within the IT department to discuss, analyze or resolve usability issues and work on projects to update or create new security infrastructures. **Major Responsibilities:** - Ensure associates follow security standards through oversight of the set-up of a user's security access, administer network security access and monitor the associate's use of data systems to safeguard company information - Provide security reviews and define security models for new systems - Analyze and recommend security products based on their performance - Audit access to mission critical applications and to maintain compliance documentation for SOX and PCI - Analyze and review annual SOX and other compliance reports - Collaborate with different teams within the IT department to discuss, analyze, or resolve usability issues - Work on 1-3 mid to large-scale projects concurrently, assigned from department and group senior leadership - Mentor Security Administrators and Offshore Contractors - Define, implement, communicate and update security architecture for multiple computing platforms, operating systems, data networks, applications, and client software - Develop, implement, communicate, and update security policies and procedures for hardware, software, and network infrastructure - Develop, implement, and maintain tools for effective security administration and monitoring compliance IT security policies and procedures as well as detection of attempted security breaches and intrusion - Develop, test, and update disaster recovery plans to ensure that plans achieve desired results in protecting company assets and plans meet corporate risk and business resumption goals - Develop training material to be used to develop awareness within corporation of security policies, procedures, best practices and other issues as needed - Detailed understanding of Cloud Security fundamentals, including cryptography and the shared responsibility model - Other projects as assigned **Qualifications:** - Bachelor's degree or equivalent experience required, advanced degrees or certifications preferred - Minimum of 3+ years' experience - A background in auditing is also desirable - Knowledge of current state of the art security products is required - Firewall software/hardware - Proxy Filtering - Centralized Log configuration and analysis - IDS/IPS configuration and analysis. - SSO Infrastructure - Network Vulnerability Scanning - Advanced User Authentication Structures - OS Hardening and Security - Application vulnerability scanning - Networking TCP/IP and packet capture applications - Endpoint Protection solutions - Encryption Technology - Good documentation and presentation skills are also necessary for this position - Familiarity with disaster recovery planning and test execution - Regular, predictable, full attendance is an essential function of the job - Willingness to travel as necessary, work the required schedule, work at the specific location required, complete Penske employment application, submit to a background investigation (to include past employment, education, and criminal history) and drug screening are required **Physical Requirements:** -The physical and mental demands described here are representative of those that must be met by an associate to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. -The associate will be required to read; communicate verbally and/or in written form; remember and analyze certain information; and remember and understand certain instructions or guidelines. -While performing the duties of this job, the associate may be required to stand, walk, and sit. The associate is frequently required to use hands to touch, handle, and feel, and to reach with hands and arms. The associate must be able to occasionally lift and/or move up to 25lbs/12kg. -Specific vision abilities required by this job include close vision, distance vision, peripheral vision, depth perception and the ability to adjust focus. Penske is an Equal Opportunity Employer **About Penske Truck Leasing/Transportation Solutions** Penske Truck Leasing/Transportation Solutions is a premier global transportation provider that delivers essential and innovative transportation, logistics and technology services to help companies and people move forward. With headquarters in Reading, PA, Penske and its associates are driven by a dedication to excellence and a commitment to customer success. Visit Go Penske to learn more. Job Category: Information Technology Job Function: Software Engineering Job Family: Information Technology Address: 100 Gundy Drive Primary Location: US-PA-Reading Employer: Penske Truck Leasing Co., L.P. Req ID: 2510735
    $88k-124k yearly est. 60d+ ago
  • Information Systems Security Officer

    Mag 4.6company rating

    Severn, MD jobs

    MAG Aerospace is seeking an experienced Information System Security Officer (ISSO) to support Product Manager Information Warfare Cyber Development (PdM IWCD). This position will provide support for Collateral, Sensitive Compartmented Information (SCI) and Special Access Program Activities. This is an opportunity to be a part of the rapidly growing Cyber Development Product Office responsible for key capabilities within the offensive cyber operations world. **Essential Duties and Responsibilities** + Prepare and review system security documentation; for example, System Security Plans (SSP), system boundary definition, systems security plan, configuration management plan, contingency plan, and security agreements (e.g., MOUs, ISAs), etc. + Review, prepare, and update full RMF authorization packages. + Conduct assessments of information security controls in order to measure the effectives of controls, recommend mitigation strategies/mechanisms and identify any potential gaps. + Manage remediation efforts and report on the status of control deficiencies. + Provide security expertise to business units and key stakeholders. + Provide timely status updates/reporting on assessments and assigned projects. + Interact with numerous DOD, military/civilian personnel and industry partners. + Teach and guide other cyber security personnel and engineers on the proper processes and procedures. **Requirements** + Active TS/SCI security clearance and willing to take CI Poly. + Five (5) to eight (8) years of relevant work experience in executing "life cycle" Information Assurance / Cybersecurity. + Thorough knowledge of NIST 800 series Special Publications, Federal Information Processing Standards (FIPS) and other relevant federal and DoD cybersecurity regulations. + 5 years of progressively complex experience in the development, integration, and implementation of cyber security and program protection standards for networking, computers, and custom application development. + Experience preparing and reviewing RMF authorization packages. + Experience with eMASS and XACTA. + Must have previous experience with the security authorization process including the review of system security documentation; for example, System Security Plans (SSP), system boundary definition, systems security plan, configuration management plan, contingency plan, and security agreements (e.g., MOUs, ISAs), etc. + Familiarity with operational needs statements and DoD 5000 acquisition lifecycle processes. + Experience in creating and maintaining security configuration baselines for Windows and Linux platforms, networking equipment, cloud technologies and custom hardware and software applications. + Must meet positions and certification requirements outlined in DoD Directive 8570.01M for Information Assurance Technician Level 2. + Must have the ability to work in a dynamic environment and effectively interact with numerous DOD, military/civilian personnel and industry partners. + Must possess a high degree of initiative and personal accountability requiring minimal supervision. + Demonstrate excellent written and oral communications skills; organizational and analytical skills; the ability to express thoughts clearly; and the ability to effectively collaborate in a team environment. **Preferred:** + Candidates possessing advanced certifications to meet IAT level 3 certifications: CISSP, CASP+, CEH, CISM, etc. will be given preference. **Education and Certification Requirements:** + Bachelors Degree required + Additional years of experience can be used in lieu of degree. **Special Note** The position is contingent upon candidate's ability to meet physical and medical requirements as needed by the position; including compliance with all applicable federal, state, and local jurisdictional requirements. **Benefits and Compensation** At MAG Aerospace, we value your contributions providing our employees with a robust Total Rewards package that supports your total well-being. Full-time and part-time employees working at least 30 hours a week on a regular basis are eligible to participate in MAG's Total Rewards programs. Our offerings include health, life, disability, financial, and retirement benefits as well as paid leave, professional development, and tuition assistance. Individuals that do not meet the threshold are only eligible for select offerings not inclusive of health benefits. We encourage you to learn more about our Total Rewards Program by visiting the Resource page on our Careers site: ********************************** Salary at MAG Aerospace is determined by various factors including but not limited to location, the particular combination of education, knowledge, skills, competencies, and experience as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $110,000 to $140,000 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of MAG's total compensation package for employees. **Need help finding the right job?** We can recommend jobs specifically for you! **Job Locations** _MD-Hanover_ **ID** _2025-7980_ **Work Region** _CONUS_ **Category** _Fort Meade Technical Job Fair_ **Type** _Regular Full-Time_ **Clearance** _Top Secret/SCI_
    $110k-140k yearly 39d ago
  • Systems Engineer - Cyber Security

    Penske 4.2company rating

    Pennsylvania jobs

    Summary Statement: You will be working with a team of experts to resolve issues and create new security infrastructure based on current market trends. What you will be doing: As a Penske Systems Engineer - Cyber Security you will maintain network, server and workstation firewall protection and provide network and application scanning, security logging, and intrusion detection capabilities. You will provide security reviews and define security models for new systems based on current trends and developments. You will also collaborate with different teams within the IT department to discuss, analyze or resolve usability issues and work on projects to update or create new security infrastructures. Major Responsibilities: • Ensure associates follow security standards through oversight of the set-up of a user's security access, administer network security access and monitor the associate's use of data systems to safeguard company information • Provide security reviews and define security models for new systems • Analyze and recommend security products based on their performance • Audit access to mission critical applications and to maintain compliance documentation for SOX and PCI • Analyze and review annual SOX and other compliance reports • Collaborate with different teams within the IT department to discuss, analyze, or resolve usability issues • Work on 1-3 mid to large-scale projects concurrently, assigned from department and group senior leadership • Mentor Security Administrators and Offshore Contractors • Define, implement, communicate and update security architecture for multiple computing platforms, operating systems, data networks, applications, and client software • Develop, implement, communicate, and update security policies and procedures for hardware, software, and network infrastructure • Develop, implement, and maintain tools for effective security administration and monitoring compliance IT security policies and procedures as well as detection of attempted security breaches and intrusion • Develop, test, and update disaster recovery plans to ensure that plans achieve desired results in protecting company assets and plans meet corporate risk and business resumption goals • Develop training material to be used to develop awareness within corporation of security policies, procedures, best practices and other issues as needed • Detailed understanding of Cloud Security fundamentals, including cryptography and the shared responsibility model • Other projects as assigned Qualifications Qualifications: • Bachelor's degree or equivalent experience required, advanced degrees or certifications preferred • Minimum of 3+ years' experience • A background in auditing is also desirable • Knowledge of current state of the art security products is required • Firewall software/hardware • Proxy Filtering • Centralized Log configuration and analysis • IDS/IPS configuration and analysis. • SSO Infrastructure • Network Vulnerability Scanning • Advanced User Authentication Structures • OS Hardening and Security • Application vulnerability scanning • Networking TCP/IP and packet capture applications • Endpoint Protection solutions • Encryption Technology • Good documentation and presentation skills are also necessary for this position • Familiarity with disaster recovery planning and test execution • Regular, predictable, full attendance is an essential function of the job • Willingness to travel as necessary, work the required schedule, work at the specific location required, complete Penske employment application, submit to a background investigation (to include past employment, education, and criminal history) and drug screening are required Physical Requirements: -The physical and mental demands described here are representative of those that must be met by an associate to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. -The associate will be required to read; communicate verbally and/or in written form; remember and analyze certain information; and remember and understand certain instructions or guidelines. -While performing the duties of this job, the associate may be required to stand, walk, and sit. The associate is frequently required to use hands to touch, handle, and feel, and to reach with hands and arms. The associate must be able to occasionally lift and/or move up to 25lbs/12kg. -Specific vision abilities required by this job include close vision, distance vision, peripheral vision, depth perception and the ability to adjust focus. Penske is an Equal Opportunity Employer
    $88k-124k yearly est. Auto-Apply 60d+ ago
  • Security Engineer

    Modal 3.8company rating

    New York, NY jobs

    About Us: Modal provides the infrastructure foundation for AI teams. With instant GPU access, sub-second container startups, and native storage, Modal makes it simple to train models, run batch jobs, and serve low-latency inference. Companies like Suno, Lovable, and Substack rely on Modal to move from prototype to production without the burden of managing infrastructure. We're a fast-growing team based out of NYC, SF, and Stockholm. We've hit 9-figure ARR and recently raised a Series B at a $1.1B valuation. We have thousands of customers who rely on us for production AI workloads, including Lovable, Scale AI, Substack, and Suno. Working at Modal means joining one of the fastest-growing AI infrastructure organizations at an early stage, with many opportunities to grow within the company. Our team includes creators of popular open-source projects (e.g. Seaborn, Luigi), academic researchers, international olympiad medalists, and experienced engineering and product leaders with decades of experience. The Role: We're looking for a hands-on Security Engineer to help with building, operating and securing Modal's low-level systems and infrastructure. This role involves close partnership with engineering to drive projects across AppSec, CloudSec, Detection and Response, and Compliance. Requirements: 5+ years building and operating security controls or tooling in production systems (ideally at a cloud/SaaS or developer platform) Proficiency in at least one of: Python, Go, or Rust Strong fundamentals in systems and networking Experience with modern cloud security: IAM design, VPC/networking, container security, Kubernetes Depth in at least two security domains (e.g., AppSec, CloudSec, Detection & Response, Identity Management, GRC or Offensive Security) Comfortable owning the full lifecycle: threat modeling, secure design reviews, code/infra reviews, vulnerability management, and partnering with engineers to land fixes Clear communication, product sense, and high empathy for developer productivity Ability to work in-person in our NYC office
    $103k-145k yearly est. Auto-Apply 60d+ ago
  • Security Engineer

    Classic Collision 4.2company rating

    Los Angeles, CA jobs

    Responsibilities: Monitor security systems, logs, and alerts to detect and respond to potential security incidents promptly. Assist in investigating and analyzing security breaches, unauthorized access attempts, and suspicious activities to mitigate risks and prevent future incidents. Collaborate with the IT Security team to coordinate incident response efforts and implement appropriate measures to contain and remediate security incidents. Educate employees on best security practices, including data protection, password management, and phishing awareness. Assist in managing KnowBe4 training platform. Assist in the implementation and configuration of security technologies such as firewalls, antivirus software, and intrusion detection/prevention systems. Aid in conducting regular vulnerability assessments and scans on network devices, applications, and systems. Assist in ensuring compliance with internal security policies and industry regulations by helping to conduct periodic audits and reviews. Requirements: Bachelor's degree in computer science, Information Security, or a related field is preferred, but relevant work experience or certifications will also be considered. Familiarity with security tools and technologies such as firewalls, antivirus software, and SIEM (Security Information and Event Management) systems is advantageous. Strong attention to detail and the ability to follow established security protocols. Any relevant security certifications (Sec+) is a plus Basic understanding of cybersecurity principles, concepts, and technologies. Experience with the following is preferred: Office 365, Entra, M365 Defender, Exchange Active Directory, GPO Azure Sentinel or other SIEM Fortinet/FortiOS SOC Experience Behaviors/Competencies: Integrity-Respect and accountability at every level and every interaction Customer Service-Provide the highest level of customer service while building customer satisfaction and retention Innovation-Develops and displays innovative approaches and ideas to our business Teamwork-Contributes to building a positive team spirit and supports everyone's efforts to succeed Physical & Environmental While performing the duties of this job, the employee is regularly required to use hands, and is required to talk and hear. The employee is frequently required to stand, sit, and walk occasionally for long periods at a time. The employee may occasionally be required to reach with hands, arms and move objects up to 20 pounds. Specific vision abilities required by this job include close vision, peripheral vision, and ability to adjust focus. In addition, abilities for assessing the accuracy, neatness and thoroughness of the work assigned is required. The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individual with disabilities to perform the essential function. Classic Collision is an Equal Opportunity Employer: As an equal opportunity employer, Classic Collision does not discriminate against any employee or candidate based on age, race, gender identity, gender expression, genetic information, national origin, physical or mental disability, protected veteran status, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by all applicable federal, state, and local laws. Reasonable Accommodations: Classic Collision is an equal opportunity employer that is committed to working with and providing reasonable accommodations to individual with disabilities. If you have a disability and you believe you need a reasonable accommodation to search for a job opening or submit an online application, please. e-mail *******************************. This email is listed exclusively to assist disabled job seekers whose disability prevents them from being able to apply online. This job description is not a complete statement of all duties and responsibilities comprising the position.
    $96k-134k yearly est. Auto-Apply 60d+ ago
  • Security Engineer

    DMI 3.5company rating

    Washington, DC jobs

    DMI is a leading provider of digital services and technology solutions, headquartered in Tysons Corner, VA. With a focus on end-to-end managed IT services, including managed mobility, cloud, cybersecurity, network operations, and application development, DMI supports public sector agencies and commercial enterprises around the globe. Recognized as a Top Workplace, DMI is committed to delivering secure, efficient, and cost-effective solutions that drive measurable results. Learn more at ************* About the Opportunity DMI, LLC is seeking a Security Engineer to join us. Duties and Responsibilities: Develops and implements supply chain strategies and networks in support of program Uses analytical and quantitative methods to understand, predict, and enhance supply chain processes Responsible for assembling data, analyzing performance, identifying problems, and developing recommendations which support program planning and operations Monitors key performance indicators, coordinates cross-functional work teams to increase effectiveness of supply chain initiatives Analyzes production planning, material procurement, inventory control, expediting, analyzing, and distribution Monitors contract compliance and other logistics service providers Develops analytical reports and analysis to support negotiations with suppliers which provide goods and services Reports on operational performance measurements and purchase price variance analysis Works with other departments as well as with distributors, transporters, storage facilities, and suppliers Qualifications Education and Years of Experience: Leads other subject matter experts of the IT technology team for specific customers, evaluates design and architecture issues, as well as increases integration of services delivered, and researches current market technologies to design cost-effective solutions that meet current and foreseeable customer requirements Min Citizenship Status Required: Must be a U.S. Citizen Physical Requirements: Not required for this position. Location: Washington, DC Working at DMI DMI is a diverse, prosperous, and rewarding place to work. Being part of the DMI family means we care about your well-being. As such, we offer a variety of perks and benefits that help meet various interests and needs, while still having the opportunity to work directly with a number of our award-winning, Fortune 1000 clients. The following categories make up your DMI well-being: Convenience/Concierge - Virtual visits through health insurance, pet insurance, commuter benefits, discount tickets for movies, travel, and many other items to provide convenience. Development - Annual performance management, continuing education, tuition assistance, internal job opportunities along with career enrichment and advancement to help each employee with their professional and personal development. Financial - Generous 401k matches both pre-tax and post-tax (ROTH) contributions along with financial wellness education, EAP, Life Insurance, and Disability to help provide financial stability for each DMI employee. Recognition - Great achievements do not go unnoticed by DMI through the Annual Awards ceremony, service anniversaries, peer-to-peer acknowledgment, and employee referral bonuses. Wellness - Healthcare benefits, Wellness programs, Flu Shots, Biometric screenings, and several other wellness options. Employees are valued for their talents and contributions. We all take pride in helping our customers achieve their goals, which in turn contributes to the overall success of the company. ***************** No Agencies Please ***************** Applicants selected may be subject to a government security investigation and must meet eligibility requirements for access to classified information. US citizenship may be required for some positions.
    $91k-127k yearly est. Auto-Apply 60d+ ago
  • Vehicle Cyber Security Systems Engineer

    Ford Motor 4.7company rating

    Cyber security specialist job at Ford Motor

    We are the movers of the world and the makers of the future. We get up every day, roll up our sleeves and build a better world -- together. At Ford, we're all a part of something bigger than ourselves. Are you ready to change the way the world moves? As a key member of our Information Technology group, you'll play a critical part in shaping the future of mobility. If you're looking for the chance to leverage advanced technology to redefine the transportation landscape, enhance the customer experience and improve people's lives, this is the opportunity for you. Join us and challenge your IT expertise and analytical skills to help create vehicles that are as smart as you are! The Vehicle Cyber Security Systems Engineer will serve a key role in shaping the future of product development security for vehicles (e.g. Connected Vehicle, Autonomous Vehicle, Electric Vehicle, Ford Smart Mobility, and V2X Security). The engineer will work within cross functional team to do/support the following: You'll have... Bachelor's degree in Electrical Engineering, Computer Engineering, Software Engineering, Computer Science, or Cybersecurity OR a combination of education and experience 5+ years of experience with embedded and/or automotive systems 3+ years of experience with in-vehicle network architecture, modules, and protocols (CAN, etc.) Ability to develop and maintain engineering documentation including requirements, specifications, test plans, etc. Ability to work independently and collaboratively Strong communication and analytical skills Even better, you may have... Experience with Hardware Security Module (HSM) and Secure Hardware Extension (SHE) Experience with coding (i.e., C, C++, C# Python, Java, CAPL, JQL) Experience with JIRA and Kanban boards for project management Familiar with vehicle system (i.e., capabilities of ECUs on a vehicle) Familiar with automotive standards (i.e., ISO 14229-1, ISO 21434) Familiar with quality tools and methodologies (i.e., FMEA, DVP) Able to work following an agile methodology Knowledge of Ford's internal engineering systems and requirements Comfortable working in a fast-paced and innovative environment where problems are not always well-defined. Experience advocating and driving adoption of industry standard methodologies. Project management skills, including identifying and scheduling process steps, determining resources and staff required to successfully complete research projects. You may not check every box, or your experience may look a little different from what we've outlined, but if you think you can bring value to Ford Motor Company, we encourage you to apply! As an established global company, we offer the benefit of choice. You can choose what your Ford future will look like: will your story span the globe, or keep you close to home? Will your career be a deep dive into what you love, or a series of new teams and new skills? Will you be a leader, a changemaker, a technical expert, a culture builder…or all of the above? No matter what you choose, we offer a work life that works for you, including: • Immediate medical, dental, vision and prescription drug coverage • Flexible family care days, paid parental leave, new parent ramp-up programs, subsidized back-up child care and more • Family building benefits including adoption and surrogacy expense reimbursement, fertility treatments, and more • Vehicle discount program for employees and family members and management leases • Tuition assistance • Established and active employee resource groups • Paid time off for individual and team community service • A generous schedule of paid holidays, including the week between Christmas and New Year's Day • Paid time off and the option to purchase additional vacation time. For a detailed look at our benefits, click here: ******************************* This position is a range of salary grades 6-8. Visa sponsorship is not available for this position. Candidates for positions with Ford Motor Company must be legally authorized to work in the United States. Verification of employment eligibility will be required at the time of hire. We are an Equal Opportunity Employer committed to a culturally diverse workforce. All qualified applicants will receive consideration for employment without regard to race, religion, color, age, sex, national origin, sexual orientation, gender identity, disability status or protected veteran status. In the United States, if you need a reasonable accommodation for the online application process due to a disability, please call **************. #LI-Hybrid What you'll do... Perform product Cyber Security assessments on projects of multiple Ford product lines Compliance reviews on features, modules as defined in the Ford Cyber Security engineering process in compliance with ISO 21434, UNECE R155, UNECE WP.29 and any other required relevant global cyber security requirements, regulations. Using that understanding to standardize all business operations and establish clear, documented protocols. Have the ability to review technical documentation to assess compliance. Manage and apply cybersecurity requirements into product design and development life cycle from requirement to testing with required deliverables Work with feature and ECU owners to manage the progression of each feature / ECU through development to ensure security by design from inception Ensure features, components, systems are designed using robust engineering processes including threat analysis, risk assessment, adoption of security requirements, security audits, and vehicle ecosystem assessments Develop and utilize global supplier expertise to meet cyber security expectations Proficient in JIRA. Process, requirement improvement support, for future reference, particularly in the event of an audit by a regulatory agency. Provide presentations to management (program milestones, security governance board, etc.)
    $76k-103k yearly est. Auto-Apply 5d ago
  • Cloud Security Engineer

    Ford Motor Company 4.7company rating

    Cyber security specialist job at Ford Motor

    We are the movers of the world and the makers of the future. We get up every day, roll up our sleeves and build a better world -- together. At Ford, we're all a part of something bigger than ourselves. Are you ready to change the way the world moves? The Enterprise Cyber Security Cloud Security team is responsible for working with other security and cloud services teams to ensure alignment and collaboration in securing Ford's public cloud infrastructure. The teams work closely together to identify security gaps in the cloud environments and address them. The Cloud Security team is responsible for identifying, evaluating, and recommending cloud security tools and functions to enhance security around Ford's public cloud. The team is also responsible for developing and managing the following Security Services in Ford's public cloud environments: * Cloud Security Automation Development * GCP/Azure Security Compliance * GCP VPC Service Control * GCP Cloud Armor/ Azure WAF The Enterprise Cyber Security Cloud Security team is responsible for working with other security and cloud services teams to ensure alignment and collaboration in securing Ford's public cloud infrastructure. The teams work closely together to identify security gaps in the cloud environments and address them. What you'll do... * Partner with other Cloud Security team members to identify and develop automation for security related workflows and audits (VPC SC, DLP, Exceptions, Org Policy, etc..). * Lead evaluation and develop an understanding of tools needed to address security gaps. * Lead/Collaborate with EPEO Services teams on security gap remediation. What you'll do... * Partner with other Cloud Security team members to identify and develop automation for security related workflows and audits (VPC SC, DLP, Exceptions, Org Policy, etc..). * Lead evaluation and develop an understanding of tools needed to address security gaps. * Lead/Collaborate with EPEO Services teams on security gap remediation.
    $71k-98k yearly est. Auto-Apply 42d ago
  • Cloud Security Engineer

    Ford Motor 4.7company rating

    Cyber security specialist job at Ford Motor

    We are the movers of the world and the makers of the future. We get up every day, roll up our sleeves and build a better world -- together. At Ford, we're all a part of something bigger than ourselves. Are you ready to change the way the world moves? The Enterprise Cyber Security Cloud Security team is responsible for working with other security and cloud services teams to ensure alignment and collaboration in securing Ford's public cloud infrastructure. The teams work closely together to identify security gaps in the cloud environments and address them. The Cloud Security team is responsible for identifying, evaluating, and recommending cloud security tools and functions to enhance security around Ford's public cloud. The team is also responsible for developing and managing the following Security Services in Ford's public cloud environments: - Cloud Security Automation Development - GCP/Azure Security Compliance - GCP VPC Service Control - GCP Cloud Armor/ Azure WAF You'll have... Bachelor's degree in Computer Science, Information Technology or related OR a combination of education and experience 5+ years of scripting and automation experience Proven experience in developing and implementing automation using scripting languages such as Python, PowerShell, or Go, particularly for API integrations, security tool orchestration, and custom audit scripts. Solid understanding and practical experience with Git and GitHub for version control, collaborative development, and security automation pipeline management. Familiarity with CI/CD pipelines and automated deployment tools (e.g., Jenkins, Azure DevOps, GitHub Actions) to integrate security automation into the software development lifecycle. Knowledge of Infrastructure-as-Code (IaC) principles and tools like Terraform. Strong knowledge of security best practices and guidelines (at the enterprise-level) related to GCP and Azure Cloud deployments as well as common web application frameworks Understand the functionality and secure usage of various GCP services: VPCs, IAM, security groups, compute engine, cloud storage, Security Command Center, VPC Service Control, Cloud DLP and Cloud Armor Customer focused and strong team orientation Self-starter and fast-learner Strong communication and interpersonal skills Strong problem solving and Analytical/Reasoning skills Strong drive for results and ability to work independently Demonstrated commitment to quality and project timing Familiarity with the agile project planning process and use of Rally. Document processes & procedures and developing other documentation. Even better, you may have... Understand the functionality and secure usage of various Azure services: Virtual Machines, Virtual Networks, Azure Active Directory, App Services, Azure SQL Databases, Storage Accounts, Kubernetes, Containers, Key vaults. You may not check every box, or your experience may look a little different from what we've outlined, but if you think you can bring value to Ford Motor Company, we encourage you to apply! As an established global company, we offer the benefit of choice. You can choose what your Ford future will look like: will your story span the globe, or keep you close to home? Will your career be a deep dive into what you love, or a series of new teams and new skills? Will you be a leader, a changemaker, a technical expert, a culture builder…or all of the above? No matter what you choose, we offer a work life that works for you, including: • Immediate medical, dental, vision and prescription drug coverage • Flexible family care days, paid parental leave, new parent ramp-up programs, subsidized back-up child care and more • Family building benefits including adoption and surrogacy expense reimbursement, fertility treatments, and more • Vehicle discount program for employees and family members and management leases • Tuition assistance • Established and active employee resource groups • Paid time off for individual and team community service • A generous schedule of paid holidays, including the week between Christmas and New Year's Day • Paid time off and the option to purchase additional vacation time. For a detailed look at our benefits, click here: ******************************* This position is a range of salary grades 7-8. Visa sponsorship is not available for this position. Candidates for positions with Ford Motor Company must be legally authorized to work in the United States. Verification of employment eligibility will be required at the time of hire. We are an Equal Opportunity Employer committed to a culturally diverse workforce. All qualified applicants will receive consideration for employment without regard to race, religion, color, age, sex, national origin, sexual orientation, gender identity, disability status or protected veteran status. In the United States, if you need a reasonable accommodation for the online application process due to a disability, please call **************. #LI-Hybrid What you'll do... Partner with other Cloud Security team members to identify and develop automation for security related workflows and audits (VPC SC, DLP, Exceptions, Org Policy, etc..). Lead evaluation and develop an understanding of tools needed to address security gaps. Lead/Collaborate with EPEO Services teams on security gap remediation.
    $71k-98k yearly est. Auto-Apply 42d ago

Learn more about Ford Motor jobs

View all jobs