Cyber Detection Event Analyst
General Motors Proving Ground
Job DescriptionThe RoleThe Cyber Detection Event Analyst plays a critical role in General Motors' Security Operations organization by helping identify, investigate, and improve the detection of cyber threats across a complex global enterprise. This role supports the technologies, analytics, and operational processes that enable GM to detect malicious activity across endpoint, network, cloud, identity, application and manufacturing environments.As a member of the Cyber Detection team, you will analyze security events, investigate suspicious activity, and contribute to the development and improvement of detection capabilities across Security Information and Event Management (SIEM), Endpoint Detection and Response (EDR), Network Detection and Response (NDR), Security Orchestration, Automation and Response (SOAR), and cloud-native security platforms. You will apply threat intelligence, operational context, and analytical techniques to identify meaningful threats while reducing false positives and improving detection quality.This role requires strong technical curiosity, investigative skills, and the ability to work collaboratively across Cyber Security teams. You will help strengthen GM's ability to detect, analyze, and respond to cyber threats while gaining experience across modern security technologies, automation, threat detection engineering, and AI-enabled security operations.What You'll DoMonitor, triage, and investigate security alerts across all detection environmentsAnalyze security events to identify indicators of compromise, malicious activity, and emerging cyber threatsConduct investigations using SIEM, EDR, NDR, SOAR, cloud security platforms, and threat intelligence sourcesDevelop and improve detection logic, correlation rules, analytics, and alerting content to enhance threat visibilitySupport detection engineering initiatives by identifying opportunities to improve detection coverage, fidelity, and operational effectivenessApply threat intelligence, adversary tactics, techniques, and procedures (TTPs), and MITRE ATT&CK methodologies to detection and investigation activitiesPerform threat hunting activities to identify previously unknown threats and improve detection capabilitiesCreate and maintain queries, scripts, dashboards, reports, and automation workflows that improve investigative efficiencyCollaborate with Incident Response, Threat Intelligence, Identity Security, Cloud Security, and Engineering teams to improve security outcomesAssist with security tool onboarding, log source integration, content validation, and operational readiness activitiesContribute to continuous improvement efforts focused on alert reduction, automation, process optimization, and operational maturityDocument investigative findings, lessons learned, and detection improvements in a clear and repeatable mannerParticipate in major incident investigations and provide analytical support during security eventsStay current on emerging threats, attack techniques, detection methodologies, and security technologiesYour Skills & Abilities (Required Qualifications)2+ years of experience in cybersecurity with a focus on security operations, incident response, threat detection, intrusion detection, detection engineering, or threat huntingBachelor's degree in Cybersecurity, Information Security, Computer Science, Information Technology, Engineering, or a related technical field, or equivalent practical experienceStrong analytical and investigative skills with the ability to review complex datasets and identify meaningful security findingsExperience investigating security alerts and eventsWorking knowledge of Security Information and Event Management (SIEM) platforms and log analytics methodologiesWorking knowledge of Endpoint Detection and Response (EDR) technologies and behavioral-based detection techniquesWorking knowledge of network security monitoring technologies, including intrusion detection systems, packet analysis, network telemetry, and flow analysisHands-on experience with one or more cloud platforms, including Microsoft Azure, Amazon Web Services (AWS), or Google Cloud Platform (GCP)Experience creating automation or analysis scripts using Python, PowerShell, or similar technologiesUnderstanding of operating systems, networking concepts, and authentication technologiesFamiliarity with cyber threat intelligence, indicators of compromise, and attacker tactics, techniques, and proceduresExperience working with APIs, data integrations, or security automation workflowsStrong written and verbal communication skills with the ability to communicate technical findings clearlyAbility to manage multiple investigations and priorities in a fast-paced operational environmentAbility to work effectively within a collaborative team environment and contribute to shared operational objectivesAbility and willingness to participate in a 24x7 on-call rotationWhat Can Give You a Competitive Advantage (Preferred Qualifications)Experience with Security Orchestration, Automation and Response (SOAR) technologiesExperience conducting proactive threat hunting activitiesKnowledge of MITRE ATT&CK, Cyber Kill Chain, and modern adversary tradecraftExperience supporting detection engineering, use-case development, content tuning, or security analytics programsExperience securing cloud-native, SaaS, identity or manufacturing environmentsFamiliarity with machine learning, AI-assisted security workflows, or security automation initiativesIndustry certifications such as GCIH, GCIA, GCDA, GSEC, SC-200, SC-300, AZ-500, or comparable certificationsDemonstrated ability to identify operational improvement opportunities and drive them to completionWhat You'll BringStrong technical curiosity and a passion for cybersecurityA proactive mindset focused on finding and solving problems before they become larger issuesThe ability to remain calm and methodical during high-priority investigations and security incidentsSound judgment when assessing risk, prioritizing work, and escalating concernsA collaborative approach that values teamwork, partnership, and knowledge sharingStrong attention to detail while maintaining awareness of broader operational and business objectivesA continuous learning mindset with a desire to expand expertise across security operations, threat detection, automation, cloud security, and emerging technologiesPersonal accountability, integrity, and a commitment to protecting GM's people, products, customers, and business operations#LI-SB3 GM does not provide immigration-related sponsorship for this role. Do not apply for this role if you will need GM immigration sponsorship now or in the future. This includes direct company sponsorship, entry of GM as the immigration employer of record on a government form, and any work authorization requiring a written submission or other immigration support from the company (e.g., H1-B, OPT, STEM OPT, CPT, TN, J-1, etc). This role is categorized as hybrid. This means the selected candidate is expected to report to a specific location at least 3 times a week {or other frequency dictated by their manager}. This job may be eligible for relocation benefits. About GMOur vision is a world with Zero Crashes, Zero Emissions and Zero Congestion and we embrace the responsibility to lead the change that will make our world better, safer and more equitable for all.Why Join UsWe believe we all must make a choice every day – individually and collectively – to drive meaningful change through our words, our deeds and our culture. Every day, we want every employee to feel they belong to one General Motors team.Benefits OverviewFrom day one, we're looking out for your well-being–at work and at home–so you can focus on realizing your ambitions. Learn how GM supports a rewarding career that rewards you personally by visiting Total Rewards resources.Non-Discrimination and Equal Employment Opportunities (U.S.)General Motors is committed to being a workplace that is not only free of unlawful discrimination, but one that genuinely fosters inclusion and belonging. We strongly believe that providing an inclusive workplace creates an environment in which our employees can thrive and develop better products for our customers.All employment decisions are made on a non-discriminatory basis without regard to sex, race, color, national origin, citizenship status, religion, age, disability, pregnancy or maternity status, sexual orientation, gender identity, status as a veteran or protected veteran, or any other similarly protected status in accordance with federal, state and local laws. We encourage interested candidates to review the key responsibilities and qualifications for each role and apply for any positions that match their skills and capabilities. Applicants in the recruitment process may be required, where applicable, to successfully complete a role-related assessment(s) and/or a pre-employment screening prior to beginning employment. To learn more, visit How we Hire.AccommodationsGeneral Motors offers opportunities to all job seekers including individuals with disabilities. If you need a reasonable accommodation to assist with your job search or application for employment, emailus or call us at View phone number on click.appcast.io. In your email, please include a description of the specific accommodation you are requesting as well as the job title and requisition number of the position for which you are applying.SummaryLocation: Warren, Michigan, United States of AmericaType: Full time
$69.4k - $158k
...audits. Advise on an integrated, dynamic cyber defense and leverage cybersecurity solutions... ...services, including intrusion detection and prevention, situational awareness of network and device intrusions, security events and data spillage, and incident response...CyberFull timeContract workPart timeWork at officeLocal areaRemote work- ...to proactively defend GM against evolving cyber threats through strategic leadership,... ...activate AI/LLM capabilities to accelerate detection, response, and risk management. You will... ...integration services (APIs, microservices, event-driven workflows) with production SLIs/SLOs...CyberFull timeLocal areaWork from homeRelocation package
- ...outstanding team.Accenture Security helps organizations prepare, protect, detect, respond to, and recover, at all points of the security... ...turnkey solutions. We blend risk strategy, digital identity, cyber defense, application security and managed service solutions to rethink...CyberFull timeWork experience placementLive inWork at officeLocal areaRemote work
- ...~ cybersecurity ~ security information event management ~ managed security operations... ...~ big data security ~ managed threat detection and response service ~ managed detection... ...assisted security, with a clear mission to end cyber risk. Strategic responsibilities include...Cyber
- ...Operations team is responsible for adversary emulations that test current capabilities, processes, and documentation, drive new cyber detection capability, and establish the baseline for strategic hunts. The Senior Cybersecurity Engineer will perform tactical purple...CyberFull timeLocal areaWork from homeRelocation package
$105.4k - $207.8k
Position Summary Deloitte’s Cyber team helps organizations address evolving cyber threats with solutions that strengthen resilience, support compliance, and protect critical data. As part of this team, you will help clients design and implement Microsoft Purview...CyberLocal areaVisa sponsorship- Job DescriptionThe RoleAs a Senior Cyber Detection Incident Analyst, you will play a critical role in protecting General Motors' global enterprise... ...response, threat hunting, intrusion detection, or security event analysisExperience working with enterprise SIEM platforms...CyberFull timeLocal areaWork from homeRelocation package
- ...-wide cybersecurity strategy while ensuring compliance with regulatory mandates, the role involves advising executive leadership on cyber risks and leading governance initiatives. This position offers a chance to oversee security architecture and manage a dedicated cybersecurity...Cyber
- Job DescriptionThe Role: The Cyber Threat Intelligence Analyst is a critical individual-contributor role within GM's Security Operations organization... ...—directly enabling GM's cyber defenders to prioritize detection, incident response, and risk reduction across our IT,...CyberFull timeLocal areaWork from homeRelocation package
- ...ExperiencedDepartment: Information TechnologyCGS is looking for business analysts to work with a large federal agency! As a Business Analyst in... ...and Data AnalyticsProject Management, Agile, and/or Cyber Certifications (PMP / ACP / CSM / SAFe / CISM)Our Commitment:Contact...CyberFull time
- ...infrastructure. Our mission is to proactively defend GM against evolving cyber threats through strategic leadership, technical excellence, and... ...with SecOps teams to design and implement advanced monitoring, detection, and response solutions.Troubleshoot complex systems and...CyberFull timeLocal areaWork from homeRelocation package
- ...Under minimal direction, the Quality/Risk Specialist (QRS) II supports the effective surveillance, analysis, and prevention of events which may injure patients, lead to malpractice claims, and cause loss to the health care system. The QRS II collaborates with multidisciplinary...Full time
- Henry Ford Health System in Detroit is seeking a Quality/Risk Specialist II to support surveillance, analysis and prevention of events that may injure patients or lead to liability. You will collaborate with multidisciplinary teams to reduce adverse outcomes and improve...
- Information Security Data Protection Analyst (Contract) Corporate Services - Information Technology - Experienced Professional At AlixPartners... ...and maintain security systems. This position aligns with the Cyber Defense Analyst work role within the NICE Cybersecurity...CyberFull timeContract workWork experience placementWork at officeRemote workMonday to Friday
- ...established frameworks and standards.Partner with security operations teams to ensure architecture supports effective monitoring, detection, and incident response.Evaluate and recommend security technologies and architectural improvements based on evolving threats and business...CyberRemote work
$105.4k - $207.8k
Position Summary Are you interested in improving the cyber and organizational risk profiles of leading companies? Do you want... ...and enterprise systems using application programming interfaces, event patterns, and connectors, with observability and runbooks for production...CyberLocal areaVisa sponsorship$134.5k - $265.1k
Position Summary Deloitte’s Cyber Services help our clients to be secure, vigilant... ...from Cyber incidents or other crises and events. The candidate will also act as an... ...continuous improvement in incident monitoring, detection, and response. Team Management: Strong leadership...CyberLocal areaVisa sponsorship- ...cybersecurity awareness campaigns and experiences, including awareness events, in-office activations, and timely microlearning aligned to... ..., or security awareness platforms.Experience partnering with cyber threat intelligence, cyber defense, GRC, HR, or corporate communications...CyberFull timeWork at officeLocal areaWork from homeRelocation package
- Job DescriptionThe RoleThis role leads the execution of GM’s cybersecurity strategy across manufacturing sites, driving risk reduction, control deployment, and network refreshes in close partnership with plant leadership, Manufacturing Engineering, plant IT, and Security...CyberFull timeLocal areaWork from homeRelocation packageShift work
$142.9k - $266k
Cyber Incident Response Business Development Senior ManagerThe Opportunity:Join a team to contribute to Booz Allen's growth efforts for... ...objectives. Support marketing, thought leadership, operations, events, and logistics, which requires both domestic and international travel...CyberFull timeContract workPart timeWork at officeLocal areaRemote work- ...reliability, and proactively defending against cyber threats.This is a hands-on, engineering-... ..., routing issues, and real-time security events in production environments.This role will... ...and endpointsInvestigate alerts and tune detections in InsightIDRWhat You BringExperience3–5+...CyberFull time
- ...an alert: The Cybersecurity Analyst is responsible for contributing... ...promptly addressing security events, helping contribute to our... ...by the organization's Managed Detection and Response (MDR) provider.... ...activities to analyze and remediate cyber threats. Perform internal...CyberPermanent employmentWork experience placementH1b
$105.4k - $207.8k
Position Summary Our Deloitte Cyber team understands the unique... ...for Endpoint, and extended detection and response solutions across... ...legacy security information and event management platforms to... ...Certified: Security Operations Analyst Associate (SC-200), Certified...CyberLocal areaVisa sponsorship- ...Solution (CDS) designs and cybersecurity testing to ensure compliance. They will play a critical role in the development and evaluation of cyber architectures, threat assessments, and cybersecurity solutions, supporting assessments, certifications, and the accreditation...CyberFor contractorsWork at office
$105.4k - $207.8k
...Summary Join Deloitte’s Cyber practice as a Cyber SecOps... ...focused on Google SecOps, threat detection engineering, and automation.... ...for security information and event management (SIEM) and... ...with security operations center analysts and threat detection engineers...CyberLocal areaVisa sponsorship$95k
...infrastructure. When traditional networks fail due to kinetic attack, cyber warfare, or natural disaster, SEMPRE stands. As a Senior Field... ...seamless integration of high-tier platforms, including Dedrone detection systems, Teledyne & FLIR EO/IR imaging, and the AeroVironment...CyberInterim roleRemote work$105.4k - $207.8k
...As a Senior Consultant - Cyber Defense and Resilience, you will... ...operations across monitoring, detection, response, and automation. In... ...across security information and event management, security orchestration... ...capabilities that improve analyst efficiency, alert quality, and...CyberLocal areaVisa sponsorship- ...emerging threats like prompt injection, model manipulation, and unauthorized agent actions, applying AI to strengthen cyber defense through faster detection, triage, and response, and protecting sensitive data through classification, data loss prevention, and governed...CyberFull timeWork experience placementLive inWork at officeLocal area
$134.5k - $265.1k
Position Summary Cyber Digital Trust and Online Safety ManagerThe Digital Trust & Online Protection Professional will advise... ...intent.Assessing the effectiveness of content moderation systems in detecting unsafe outputs and documenting vulnerabilities, failure...CyberLocal areaVisa sponsorship- ...declarative, version-controlled environment management and drift detection. Take ownership of Kubernetes as a Service (KaaS)... ...edge automotive technologies such as Infotainment, connected vehicles, Cyber security, OTA, and Advanced Safety/ Body electronics....CyberFull timeRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Detection Event Analyst. Be the first to apply!
- information security consultant Warren, MI
- cyber security analyst Warren, MI
- cyber Warren, MI
- account manager event Warren, MI
- events management graduate Warren, MI
- entry level event marketing Warren, MI
- music events management Warren, MI
- manager special events Warren, MI
- event Warren, MI
- events specialist Warren, MI


