Senior Cybersecurity Incident Analyst
Core
Senior technical leader driving detection engineering, complex incident investigations, and threat hunting to protect GM's global enterprise across cloud, identity, endpoint, network, application, and manufacturing ecosystems.
Role type
Senior IC Cybersecurity Incident Analyst (Detection Engineering)
Builds
Scalable detection capabilities, automated workflows, and improved analytics for identifying malicious activity across modern enterprise environments.
Domain
Cybersecurity / Enterprise Security Operations
Deliverable
production ML models | product features | dashboards & analysis
Required skills
Advanced incident investigation, detection logic development, threat hunting, MITRE ATT&CK methodologies, scripting (Python/PowerShell), SIEM/EDR/NDR/SOAR platform expertise, cross-functional collaboration, technical mentorship
Preferred skills
Cloud security monitoring (Azure/AWS/GCP), SaaS/identity threat detection, network telemetry/IDS/IPS, OT/ICS environments, vehicle/automotive cybersecurity, malware analysis/forensics, SOAR automation, security certifications (GCIA/GCIH/GCFA/GCDA/AWS Security Specialty)
Technologies
SIEM, EDR, NDR, SOAR, Python, PowerShell, MITRE ATT&CK, Azure, AWS, GCP, OT/ICS, CI/CD pipelines
Responsibilities
Lead advanced investigations of complex security incidents and high-severity escalations; Develop and optimize detection logic across security monitoring platforms; Conduct proactive threat hunting to identify adversary behaviors; Design and validate analytics to reduce false positives; Develop automation and enrichment workflows using scripting and orchestration; Mentor analysts and detection engineers; Evaluate emerging technologies and AI capabilities to advance detection maturity
Seniority
Senior, hands-on IC with leadership responsibilities