Why GM Financial Cybersecurity?
Innovation isn’t just a talking point at GM Financial, it’s how we operate. By joining our team, you’ll work in a mission-focused environment with specialized teams, including Engineering, Threat Intelligence, Vulnerability Management, Incident Response, Firewall, Governance, Risk, Architecture and Offensive Security. These teams collaborate to identify, manage and respond to threats, all while driving innovation across the environment.
Cybersecurity is central to our strategic vision, so you’ll benefit from exceptional leadership visibility, with direct reporting lines to the CEO. This structure ensures your work is recognized and supported at the highest levels, while also enabling bold innovation and the adoption of cutting-edge technologies.
Shape the future of Cybersecurity at GM Financial, with the freedom to explore, the tools to build and the support to thrive.
This position will be posted until filled.
About the role:
This role provides technical leadership for cybersecurity and infrastructure initiatives, guiding engineering teams while ensuring the effectiveness of security frameworks, processes, and technologies. The position leverages advanced expertise in network security, threat monitoring, operating systems, and security analytics to protect systems, manage risks, and support organizational security objectives.
In this role you will:
- Knowledge of Leadership and Management of a technical team of professional engineers
- Knowledge of quality and management frameworks
- Strong presentation expertise, and the ability to coordinate and conduct meetings
- Familiarity with vendors, project expenses and purchasing requisitions
- Strong network security knowledge including endpoint monitoring, web content filtering, intrusion detection and wireless security
- Technical understanding and experience in information security as it relates to server security, client security, user security, network communications and data storage
- Practical experience with database security, anti-malware, log retention, security intrusions, data loss and regulatory requirements
- Advanced knowledge of operating system and hardware technology
- Advanced knowledge of network protocols such as TCP/IP, DHCP, DNS, and HTTP/S
- Advanced knowledge of packet capture methods and analysis of network flows
- Advanced knowledge of the OSI model and security that is associated with each layer
- Advanced knowledge of security analytics techniques and practices
What makes You an ideal candidate?
Knowledge and Skills
- Local and wide area networking concepts, principles and protocols
- Advanced knowledge in Infrastructure design and management
- Working knowledge of management processes such as personnel administration, planning and budgeting
- Strong working knowledge of Intel platforms, iSeries and pSeries servers
- Advanced understanding of IT Service Management (ITSM) best practices and processes
- Experience with UML Design Tools
- Advanced knowledge of TCP/IP, OSI model and imp subnetting
- High-level understanding of technology infrastructure, security concepts and platforms
- Demonstrated success in project management
- Advanced knowledge of IBM pSeries hardware, operating systems and TSM backup infrastructure
- Advanced knowledge of the OSI model and security that is associated with each layer
- Understanding of routing and switching protocols as they relate to load balancing
- Strong understanding of application layer protocols including HTTP, SSH, SSL, and DNS
- Knowledge and stay abreast on the latest security and privacy legislation, regulations, advisories, alerts and vulnerabilities
- Knowledge of IT security processes and controls as well as IT infrastructure and networking technical knowledge
- Knowledge of Linux operating systems and microservice architecture
- Possess strong understanding of cloud technologies and concepts
- Familiarity with Terraform is a plus
- Background in scripting and automation in widely used languages such as Python, Go, Ruby, etc.
- Advanced knowledge of Network and VLAN segmentation
- Ability to think strategically and make collaborative decisions
- Ability to apply structured analysis methods to various types of data to establish trends, determine variability and business impact
- Communicates quickly, clearly, concisely, appropriately and intelligently
- Foster open communication, speaks with impact, listens to others and writes effectively
- Ability to effectively negotiate with vendors on upgrades and acquisitions
- Effective planning, time management, negotiation and delegation skills
- Expert-level IT security processes and controls knowledge as well as IT infrastructure and networking technical knowledge
- Ability to approach problems with an open-mind and create new and innovative ideas and methods
- Advanced technical writing
- Advanced information security standards/frameworks (i.e., NIST Cybersecurity Framework, ISO 27001) skills
- Strong analytical skills
- Ability to approach problems with an open-mind, use existing information and resources
- Creative, Innovative, problem-solving and maximizing your potential to solve problems and improve methods
- Detail oriented
Think positively when faced with obstacles, build on others ideas, think logically and intuitively
-
Additional Knowledge and Skills
Working effectively within an AI enabled environment:
- Ability to use AI tools (e.g., Microsoft Copilot) to support daily work
- Skills in evaluating AI outputs for accuracy, compliance, and bias
- Experience integrating AI into workflows to improve efficiency or insights
- Familiarity with AI assisted research, summarization, and content generation
Understanding of responsible AI use, including ethics and data protection
-
Work Experience & Education
- 5-7 years of experience in large and complex business environments with a successful track record working directly with senior level management with at least 3 years of experience in one or more of the following domains: Cybersecurity, Information Security, Network Engineering or Operations, Information Technology, Application Development, Access Control, Security Governance, Risk Management, Software Development Security, Cryptography, Security Architecture and Design, Operational Security, Business Continuity & Disaster Recovery, Legal Regulations, Investigations and Compliance, Physical (Environmental) Security, IT or Security Audit, IT or Security Compliance preferred
- 2-3 years of experience securing cloud deployments on common platforms like Microsoft Azure, Amazon Web Services or Google Cloud Platform preferred
- Experience with deploying environments by defining infrastructure as code (IaC) preferred
- Experience with declarative IaC approaches and immutable infrastructure preferred
- Experience with securing container deployments, Kubernetes, managed Kubernetes PaaS services, Agile environments and DevOps environments preferred
- Experience with managing infrastructure through CI/CD pipelines preferred
- Experience in documentation tools such as Visio and Microsoft Office products preferred
- Experience with alternate management methods using SSH, serial connections and the command-line interface TMSH preferred
- High School Diploma or equivalent required
Bachelor’s Degree in related field or equivalent work experience strongly preferred
-
What We Offer: Generous benefits package available on day one to include: 401K matching, bonding leave for new parents (12 weeks, 100% paid), tuition assistance, training, GM employee auto discount, community service pay and nine company holidays.
Our Culture: Our team members define and shape our culture — an environment that welcomes innovative ideas, fosters integrity, and creates a sense of community and belonging. Here we do more than work — we thrive.
Compensation: Competitive pay and bonus eligibility.
Work Life Balance: Flexible hybrid work environment, 4-days a week in office.
NOTE: We are unable to consider candidates who require visa sponsorship for this position
This position is not open to agency submissions
#GMFJobs #LI-Hybrid #LI-SC1