Cyber Detection Event Analyst
General Motors Proving Ground
Job DescriptionThe RoleThe Cyber Detection Event Analyst plays a critical role in General Motors' Security Operations organization by helping identify, investigate, and improve the detection of cyber threats across a complex global enterprise. This role supports the technologies, analytics, and operational processes that enable GM to detect malicious activity across endpoint, network, cloud, identity, application and manufacturing environments.As a member of the Cyber Detection team, you will analyze security events, investigate suspicious activity, and contribute to the development and improvement of detection capabilities across Security Information and Event Management (SIEM), Endpoint Detection and Response (EDR), Network Detection and Response (NDR), Security Orchestration, Automation and Response (SOAR), and cloud-native security platforms. You will apply threat intelligence, operational context, and analytical techniques to identify meaningful threats while reducing false positives and improving detection quality.This role requires strong technical curiosity, investigative skills, and the ability to work collaboratively across Cyber Security teams. You will help strengthen GM's ability to detect, analyze, and respond to cyber threats while gaining experience across modern security technologies, automation, threat detection engineering, and AI-enabled security operations.What You'll DoMonitor, triage, and investigate security alerts across all detection environmentsAnalyze security events to identify indicators of compromise, malicious activity, and emerging cyber threatsConduct investigations using SIEM, EDR, NDR, SOAR, cloud security platforms, and threat intelligence sourcesDevelop and improve detection logic, correlation rules, analytics, and alerting content to enhance threat visibilitySupport detection engineering initiatives by identifying opportunities to improve detection coverage, fidelity, and operational effectivenessApply threat intelligence, adversary tactics, techniques, and procedures (TTPs), and MITRE ATT&CK methodologies to detection and investigation activitiesPerform threat hunting activities to identify previously unknown threats and improve detection capabilitiesCreate and maintain queries, scripts, dashboards, reports, and automation workflows that improve investigative efficiencyCollaborate with Incident Response, Threat Intelligence, Identity Security, Cloud Security, and Engineering teams to improve security outcomesAssist with security tool onboarding, log source integration, content validation, and operational readiness activitiesContribute to continuous improvement efforts focused on alert reduction, automation, process optimization, and operational maturityDocument investigative findings, lessons learned, and detection improvements in a clear and repeatable mannerParticipate in major incident investigations and provide analytical support during security eventsStay current on emerging threats, attack techniques, detection methodologies, and security technologiesYour Skills & Abilities (Required Qualifications)2+ years of experience in cybersecurity with a focus on security operations, incident response, threat detection, intrusion detection, detection engineering, or threat huntingBachelor's degree in Cybersecurity, Information Security, Computer Science, Information Technology, Engineering, or a related technical field, or equivalent practical experienceStrong analytical and investigative skills with the ability to review complex datasets and identify meaningful security findingsExperience investigating security alerts and eventsWorking knowledge of Security Information and Event Management (SIEM) platforms and log analytics methodologiesWorking knowledge of Endpoint Detection and Response (EDR) technologies and behavioral-based detection techniquesWorking knowledge of network security monitoring technologies, including intrusion detection systems, packet analysis, network telemetry, and flow analysisHands-on experience with one or more cloud platforms, including Microsoft Azure, Amazon Web Services (AWS), or Google Cloud Platform (GCP)Experience creating automation or analysis scripts using Python, PowerShell, or similar technologiesUnderstanding of operating systems, networking concepts, and authentication technologiesFamiliarity with cyber threat intelligence, indicators of compromise, and attacker tactics, techniques, and proceduresExperience working with APIs, data integrations, or security automation workflowsStrong written and verbal communication skills with the ability to communicate technical findings clearlyAbility to manage multiple investigations and priorities in a fast-paced operational environmentAbility to work effectively within a collaborative team environment and contribute to shared operational objectivesAbility and willingness to participate in a 24x7 on-call rotationWhat Can Give You a Competitive Advantage (Preferred Qualifications)Experience with Security Orchestration, Automation and Response (SOAR) technologiesExperience conducting proactive threat hunting activitiesKnowledge of MITRE ATT&CK, Cyber Kill Chain, and modern adversary tradecraftExperience supporting detection engineering, use-case development, content tuning, or security analytics programsExperience securing cloud-native, SaaS, identity or manufacturing environmentsFamiliarity with machine learning, AI-assisted security workflows, or security automation initiativesIndustry certifications such as GCIH, GCIA, GCDA, GSEC, SC-200, SC-300, AZ-500, or comparable certificationsDemonstrated ability to identify operational improvement opportunities and drive them to completionWhat You'll BringStrong technical curiosity and a passion for cybersecurityA proactive mindset focused on finding and solving problems before they become larger issuesThe ability to remain calm and methodical during high-priority investigations and security incidentsSound judgment when assessing risk, prioritizing work, and escalating concernsA collaborative approach that values teamwork, partnership, and knowledge sharingStrong attention to detail while maintaining awareness of broader operational and business objectivesA continuous learning mindset with a desire to expand expertise across security operations, threat detection, automation, cloud security, and emerging technologiesPersonal accountability, integrity, and a commitment to protecting GM's people, products, customers, and business operations#LI-SB3 GM does not provide immigration-related sponsorship for this role. Do not apply for this role if you will need GM immigration sponsorship now or in the future. This includes direct company sponsorship, entry of GM as the immigration employer of record on a government form, and any work authorization requiring a written submission or other immigration support from the company (e.g., H1-B, OPT, STEM OPT, CPT, TN, J-1, etc). This role is categorized as hybrid. This means the selected candidate is expected to report to a specific location at least 3 times a week {or other frequency dictated by their manager}. This job may be eligible for relocation benefits. About GMOur vision is a world with Zero Crashes, Zero Emissions and Zero Congestion and we embrace the responsibility to lead the change that will make our world better, safer and more equitable for all.Why Join UsWe believe we all must make a choice every day – individually and collectively – to drive meaningful change through our words, our deeds and our culture. Every day, we want every employee to feel they belong to one General Motors team.Benefits OverviewFrom day one, we're looking out for your well-being–at work and at home–so you can focus on realizing your ambitions. Learn how GM supports a rewarding career that rewards you personally by visiting Total Rewards resources.Non-Discrimination and Equal Employment Opportunities (U.S.)General Motors is committed to being a workplace that is not only free of unlawful discrimination, but one that genuinely fosters inclusion and belonging. We strongly believe that providing an inclusive workplace creates an environment in which our employees can thrive and develop better products for our customers.All employment decisions are made on a non-discriminatory basis without regard to sex, race, color, national origin, citizenship status, religion, age, disability, pregnancy or maternity status, sexual orientation, gender identity, status as a veteran or protected veteran, or any other similarly protected status in accordance with federal, state and local laws. We encourage interested candidates to review the key responsibilities and qualifications for each role and apply for any positions that match their skills and capabilities. Applicants in the recruitment process may be required, where applicable, to successfully complete a role-related assessment(s) and/or a pre-employment screening prior to beginning employment. To learn more, visit How we Hire.AccommodationsGeneral Motors offers opportunities to all job seekers including individuals with disabilities. If you need a reasonable accommodation to assist with your job search or application for employment, emailus or call us at View phone number on click.appcast.io. In your email, please include a description of the specific accommodation you are requesting as well as the job title and requisition number of the position for which you are applying.SummaryLocation: Warren, Michigan, United States of AmericaType: Full time
$132.23k - $176.31k
...across the internet. Black Lotus Labs has detected and disrupted key evolving threats at an... ...goal of automating detection. Work with cyber operators, when requested, to conduct in-... ...repeatable workflows that combine analyst expertise, automation, and AI-assisted capabilities...CyberFull timeTemporary workWork experience placementWork at officeRemote work- ...~ cybersecurity ~ security information event management ~ managed security operations... ...~ big data security ~ managed threat detection and response service ~ managed detection... ...assisted security, with a clear mission to end cyber risk. Strategic responsibilities include...Cyber
$69.4k - $158k
...audits. Advise on an integrated, dynamic cyber defense and leverage cybersecurity solutions... ...services, including intrusion detection and prevention, situational awareness of network and device intrusions, security events and data spillage, and incident response...CyberFull timeContract workPart timeWork at officeLocal areaRemote work- ...to proactively defend GM against evolving cyber threats through strategic leadership,... ...activate AI/LLM capabilities to accelerate detection, response, and risk management. You will... ...integration services (APIs, microservices, event-driven workflows) with production SLIs/SLOs...CyberFull timeLocal areaWork from homeRelocation package
- ...Under minimal direction, the Quality/Risk Specialist (QRS) II supports the effective surveillance, analysis, and prevention of events which may injure patients, lead to malpractice claims, and cause loss to the health care system. The QRS II collaborates with multidisciplinary...Suggested
- ...outstanding team.Accenture Security helps organizations prepare, protect, detect, respond to, and recover, at all points of the security... ...turnkey solutions. We blend risk strategy, digital identity, cyber defense, application security and managed service solutions to rethink...CyberFull timeWork experience placementLive inWork at officeLocal areaRemote work
- ...Full time JR-202616449 Job Description The Role: The Cyber Threat Intelligence Analyst is a critical individual-contributor role within GM's... ...intelligence-directly enabling GM's cyber defenders to prioritize detection, incident response, and risk reduction across our IT,...CyberFull timeLocal areaWork from homeRelocation package
$105.6k - $140.7k
...unless directed by their manager. The Role: The Business Analyst – Zero Waste, Chemical, & Resource Management (SP2) provides... ...CM safety incidents, near misses, and risk identifications to detect patterns, “read across” opportunities, and common tasks with elevated...Full timeH1bLocal areaRemote workWork from homeRelocationRelocation packageFlexible hours- ...and modernize defense systems across air, land, sea, space, and cyber/data domains, providing digital engineering & integration, rapid... .... • Travel up to 25% to support on-site reviews, provisioning events, testing, validation, and fielding activities. • Support QA/QC...CyberContract workWork at officeLocal areaImmediate startWorldwideFlexible hours
- ...reliability, and proactively defending against cyber threats. This is a hands-on,... ..., routing issues, and real-time security events in production environments. This role... ...endpoints Investigate alerts and tune detections in InsightIDR What You Bring Experience...CyberFull time
$142.6k - $261.5k
...focused model and bold ambition have put us at the center of the events that continue to reshape and redefine our industry, working... ...years of experience managing and supervising a team of business analysts and technology analysts through all phases of the technology life...Work experience placementSummer holidayFlexible hours- ...matter expertise to junior engineers and analysts. Collaborate with stakeholders to... ...needs. Required Qualifications Core Cyber Security & Information Protection Experience... ...security assessments. Intrusion detection, security monitoring, and audit log analysis...CyberFull time
- ...Type Privately Held Founded 2022 Employees 51-200 Specialties security for ai cyber security gen ai security adversarial ml training ai detection & response prompt injection security pii leakage protection model tampering protection...Cyber
- ...Operations team is responsible for adversary emulations that test current capabilities, processes, and documentation, drive new cyber detection capability, and establish the baseline for strategic hunts. The Senior Cybersecurity Engineer will perform tactical purple...CyberFull timeLocal areaWork from homeRelocation package
- ...Logistics Analyst Are you looking to join a dynamic team that provides its people with the tools to be successful and opportunities to grow? Universal Logistics is a leading provider of customized transportation and logistics solutions, offering a comprehensive suite...Work at officeImmediate start
- ...Solution (CDS) designs and cybersecurity testing to ensure compliance. They will play a critical role in the development and evaluation of cyber architectures, threat assessments, and cybersecurity solutions, supporting assessments, certifications, and the accreditation...CyberFor contractorsWork at office
- Job DescriptionThe RoleAs a Senior Cyber Detection Incident Analyst, you will play a critical role in protecting General Motors' global enterprise... ...response, threat hunting, intrusion detection, or security event analysisExperience working with enterprise SIEM platforms...CyberFull timeLocal areaWork from homeRelocation package
- ...security engineering representative on engineering teams for the design, development, implementation, evaluation, and/or integration of cyber architectures, systems, or system components. The contractor shall support the Government in the enforcement of the design and...CyberFor contractorsLocal areaWorldwide
- ...pivotal in setting the enterprise security direction, strengthening cyber resilience, and enabling the responsible growth and innovation... ...responsible for leading security operations, including threat detection, incident response, and vulnerability management, and will also...Cyber
- ...Job Description Job Description Business Analyst Employment Type: Full-Time, Experienced Department: Information Technology... ...Intelligence and Data Analytics - Project Management, Agile, and/or Cyber Certifications (PMP / ACP / CSM / SAFe / CISM) Our Commitment:...CyberFull timeFlexible hours
- ...Generation Mission Systems Integration across air, land, sea, space and cyber. Are you ready to be an instrumental part of experts in the... ..., endpoint security, application whitelisting, intrusion detection/prevention systems, and encryption. ~ Experience securing...CyberFull timeRelocation package
$82.6k - $162.8k
Position Summary Cyber Security & Risk Strategy Consultant Our Deloitte Cyber team understands the unique challenges and opportunities... ...and access management solutions, security information and event management platforms, or data loss prevention...CyberLocal areaVisa sponsorship$102.17k
...difference. Whether it's optimizing water supply and demand, detecting leaks and anomalies, or enhancing water quality and... ...Job Description Join the Trinnex Security Team as a Senior Cyber Security Analyst, where you will operate at the intersection of cybersecurity...CyberWork experience placementH1b- ...Service-Disabled Veteran Owned Small Business (SDVOSB) providing Cyber Security, Intelligence Analysis, Financial Management,... ...· At least 1 years of experience in planning and managing VIP events for DoD and Military senior leaders., and experience shall include...CyberWork at office
- ...and data flows, and provide clear, decision-ready insights on cyber and IT risk. This is a senior individual contributor role for someone... ..., and third-party risk teams to embed preventative and detective controls into solutions and services.Own end-to-end delivery of...CyberFull timeLocal areaWork from homeRelocation package
$18 - $25 per hour
...Consulting, Machine Learning Operations, Multicloud, and Security. Relevant Majors: Business Administration Computer Science Cyber Security Data Science/Analytics Economics/Statistics Information Technology Software Engineering Master of Business...CyberRemote jobHourly paySummer workInternshipWork at officeImmediate startShift work- ...chain risk management; and security specialties (personnel security, industrial security, physical security, etc.). Focus on Cyber survivability to assess the ability of the system to perform its mission and functions, in the face of cyber-attack, by the...CyberFull time
- ...Phoenix Cyber is looking for Web Developers to support our customer. This position is onsite at the client location with possible telework available. Responsible for the development of high-end client server-based applications, designing and developing web pages,...CyberFull timeRemote work
$4,326.92 per month
...deadline: September 27, 2026 for consideration. The Summer Analyst Program The Summer Analyst Program at Cornerstone Research is... ...will hone your quantitative and qualitative skills. Social Events: The Summer Program is as fun as it is informative. There will...Full timeSummer workCasual workInternshipH1bLocal areaImmediate startVisa sponsorship$30 per hour
...Store, Oracle Software Delivery Cloud, License Key Provisioning and internal distribution of Employee Laptops. Customer Service analysts deliver service and support that represents the highest level of customer service and quality. To do this, the analyst will:...Hourly payTemporary workWork experience placementInternshipWorldwideFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Detection Event Analyst. Be the first to apply!





