Cyber Defense Analyst
$99.6k - $192.9kFord Motor Co
Job Description Position Duties This position is for a Cyber Defense Center (CDC) Detection Analyst specializing in initial threat triage. The role involves swiftly assessing and prioritizing security incidents to determine their severity and potential impact. You will be responsible for promptly identifying and investigating various threats, initiating timely response actions, and escalating to appropriate teams for further investigation and/or remediation. Work Schedule & Location
• Immediate medical, dental, vision and prescription drug coverage
• Flexible family care days, paid parental leave, new parent ramp-up programs, subsidized back-up child care and more
• Family building benefits including adoption and surrogacy expense reimbursement, fertility treatments, and more
• Vehicle discount program for employees and family members and management leases
• Tuition assistance
• Established and active employee resource groups
• Paid time off for individual and team community service
• A generous schedule of paid holidays, including the week between Christmas and New Year's Day
• Paid time off and the option to purchase additional vacation time. This position is a salary grade 7-8 and ranges from $99,600-$192,900.
Final determination of salary grade will be based on candidate's skills and experience, and base salary will be set within the applicable range according to job scope, responsibility and competitive market value. For more information on salary and benefits, click here: Visa sponsorship is not available for this position. Candidates for positions with Ford Motor Company must be legally authorized to work in the United States. Verification of employment eligibility will be required at the time of hire. We are an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, age, sex, national origin, sexual orientation, gender identity, disability status or protected veteran status. In the United States, if you need a reasonable accommodation for the online application process due to a disability, please call View phone number on click.appcast.io. This position is hybrid. Candidates who are in commuting distance to a Ford hub location may be required to be onsite four or more days per week. #LI-Hybrid #LI-GR1 About Us At Ford Motor Company, we believe freedom of movement drives human progress. With our incredible plans for the future of mobility, we have a wide variety of opportunities for you to accelerate your career and help us define tomorrow's transportation. About the Team We believe that freedom of movement drives human progress. Ford Information Technology (IT) is shaping the future of mobility by redefining the transportation landscape, enhancing the customer experience and improving people's lives. Join the Ford family as we change the way the world moves.
- Location: This role is hybrid, with on-site work in Southeast Michigan.
- Standard Hours: Standard working hours are typically 8:00 AM - 5:00 PM ET.
- Shift Lead Rotation: Candidates must be willing to support a Shift Lead rotation at least once per calendar quarter. During these weeks, the shift is 11:00 AM - 8:00 PM during Eastern Daylight Time (EDT) and 10:00 AM - 7:00 PM during Eastern Standard Time (EST).
- Weekend Coverage: Candidates must be willing to work at least one weekend per calendar quarter as part of Shift Lead Rotation.
- Perform initial triage and investigation of various security incidents to determine the impact on Ford, including phishing, malicious software, reconnaissance activities (probes/scans), data exfiltration, and policy violations.
- Conduct daily analysis using a range of tools, including SIEM, EDR/XDR, SOAR, and Sandbox analysis platforms.
- Investigate alerts across multi-cloud (Azure, GCP, AWS) and on-premises environments.
- Collaborate with internal business units and technical teams to investigate and contain incidents.
- Respond to cybersecurity inquiries received from Ford personnel, providing clear guidance and risk assessment.
- Execute and maintain security playbooks and standard operating procedures (SOPs) to ensure consistent, repeatable, and efficient incident resolution.
- Effectively document investigation details for both technical peer review and non-technical stakeholders.
- Identify and map attacker Tools, Techniques, and Procedures (TTPs) and Indicators of Compromise (IOCs) to the MITRE ATT&CK framework to enhance future detection and prevention.
- Support Shift Lead rotation at least once per calendar quarter, managing escalations and team coordination.
- Monitor the global threat landscape and stay up-to-date with emerging cybersecurity trends to proactively improve Ford's security posture.
- Utilize AI-driven threat detection tools to enhance triage accuracy, reduce false positives, and accelerate the identification of emerging attack patterns.
- Education: Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related technical field (or equivalent professional experience).
- Professional Experience: 3+ years of experience in a Security Operations Center (SOC) or Cyber Defense Center (CDC), including:
- Hands-on experience with SIEM platforms and EDR/XDR tools.
- Performing data correlation and analysis of system logs (Firewall, Network Flow, IDS/IPS, and Operating System logs).
- Incident handling and triage, including the resolution of escalations and clear communication during active security events.
- Foundational Knowledge: In-depth understanding of Operating Systems (Windows, Linux, Mac), network protocols (TCP/IP, DNS, and core infrastructure technologies.
- Soft Skills:
- Ability to work in a fast-paced, high-stress environment with a strong sense of urgency and attention to detail.
- Strong deductive reasoning, critical thinking, and prioritization skills.
- Excellent oral and written communication skills-able to translate technical items into non-technical terms.
- Professionalism: High level of independent initiative, integrity, and a disciplined approach to adhering to procedures.
- Cloud Security: 2+ years of experience with Google Cloud Platform (GCP) or Microsoft Azure, specifically analyzing cloud-native security logs.
- AI & Automation: Experience leveraging or tuning Artificial Intelligence (AI) and Machine Learning (ML) tools to improve threat detection or automate manual triage tasks.
- Scripting: Proficiency in scripting languages such as Python, PowerShell, Bash, or SQL to automate workflows or parse data.
- Ford Specifics: Familiarity with Ford's computing infrastructure and the Software Development Methodology (SDM).
- Certifications: Preferred industry credentials such as GIAC (GCIH, GCIA), CEH or CIISP.
• Immediate medical, dental, vision and prescription drug coverage
• Flexible family care days, paid parental leave, new parent ramp-up programs, subsidized back-up child care and more
• Family building benefits including adoption and surrogacy expense reimbursement, fertility treatments, and more
• Vehicle discount program for employees and family members and management leases
• Tuition assistance
• Established and active employee resource groups
• Paid time off for individual and team community service
• A generous schedule of paid holidays, including the week between Christmas and New Year's Day
• Paid time off and the option to purchase additional vacation time. This position is a salary grade 7-8 and ranges from $99,600-$192,900.
Final determination of salary grade will be based on candidate's skills and experience, and base salary will be set within the applicable range according to job scope, responsibility and competitive market value. For more information on salary and benefits, click here: Visa sponsorship is not available for this position. Candidates for positions with Ford Motor Company must be legally authorized to work in the United States. Verification of employment eligibility will be required at the time of hire. We are an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, age, sex, national origin, sexual orientation, gender identity, disability status or protected veteran status. In the United States, if you need a reasonable accommodation for the online application process due to a disability, please call View phone number on click.appcast.io. This position is hybrid. Candidates who are in commuting distance to a Ford hub location may be required to be onsite four or more days per week. #LI-Hybrid #LI-GR1 About Us At Ford Motor Company, we believe freedom of movement drives human progress. With our incredible plans for the future of mobility, we have a wide variety of opportunities for you to accelerate your career and help us define tomorrow's transportation. About the Team We believe that freedom of movement drives human progress. Ford Information Technology (IT) is shaping the future of mobility by redefining the transportation landscape, enhancing the customer experience and improving people's lives. Join the Ford family as we change the way the world moves.
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Cyber Defense Analyst in Dearborn, MI vacancy
- Position Duties This position is for a Cyber Defense Center (CDC) Detection Analyst specializing in initial threat triage. The role involves swiftly assessing and prioritizing security incidents to determine their severity and potential impact. You will be responsible...SuggestedFull timeShift workWeekend work
$99k - $232k
...Time Type: Full time Travel Requirements: Up to 40% At PwC, our people in cybersecurity focus on protecting organizations from cyber threats through advanced technologies and strategies. They work to identify vulnerabilities, develop secure systems, and provide...SuggestedFull timeH1b$77k - $202k
...Time Type: Full time Travel Requirements: Up to 40% At PwC, our people in cybersecurity focus on protecting organisations from cyber threats through advanced technologies and strategies. They work to identify vulnerabilities, develop secure systems, and provide...SuggestedFull timeH1b$124k - $280k
...Time Type: Full time Travel Requirements: Up to 40% At PwC, our people in cybersecurity focus on protecting organisations from cyber threats through advanced technologies and strategies. They work to identify vulnerabilities, develop secure systems, and provide...SuggestedFull timeH1b- ...industry, Roush also provides significant support to the aerospace, defense, and theme park industries. With over 2,400 employees in... ...Are you looking for a new challenge? Roush is looking to add a Cyber Security Architect II to join their team. Roush is looking for a...SuggestedPermanent employmentFull timeLocal area
- ...Job Title: ( Cyber Security Architecture Analyst ) bout Kyyba: Founded in 1998 and headquartered in Farmington Hills, MI, Kyyba has a global presence delivering high-quality resources and top-notch recruiting services, enabling businesses to effectively respond...Visa sponsorshipWork visa
- ...with Embedded Vehicle systems such as AutoSAR, IVI, or Android. Automotive networking, low level networking, system on a chip, and cyber security around these Embedded sensors, AI, ML, data fusion for autonomous vehicles and cyber security relevancy Strong oral, written...Long term contractRemote work
$124k - $280k
...people in cybersecurity focus on protecting organisations from cyber threats through advanced technologies and strategies. They work... ...independence requirements. The Opportunity As part of the Cyber Defense and Engineering team, you will lead large-scale engagements...Full timeH1b$99.1k - $166.2k
Enterprise Architect The Enterprise Architect role involves contributing to global strategic initiatives and making technology decisions for both in-house and vendor solutions to modernize Ford's Supply Chain. Responsibilities Define business and technical ...Full timeImmediate startRelocationFree visaFlexible hours$44.1 - $63 per hour
Mitchell Martin Inc. is hiring a Contractor - Security for a remote position in Detroit, Michigan. This role focuses on managing cybersecurity risk assessments, requiring 5 to 7 years of experience in Information Security or IT Risk Management. The ideal candidate should...Hourly payContract workFor contractorsRemote work$104k - $156k
...privilege, and improving visibility ~ Participate in incident response and endpointrelated investigations in partnership with Cyber teams ~ Continuously improve endpoint security posture using metrics, telemetry, and risk insights Mi nimum...Remote work- Motorsport Hackers is seeking an Enterprise Architect to lead strategic technology initiatives for Ford's Supply Chain. The role involves designing business and technical architecture solutions, evaluating vendors, and providing architectural services. Candidates should...
- Ford is seeking a Manufacturing Systems Analyst to maximize the value of Teamcenter by supporting end-users, designing training programs, and ensuring seamless data flow. The role requires a BSc in Engineering or related field, along with 5+ years of experience in engineering...
$74.3k - $124.5k
...efficiency. You'll get the satisfaction of making great products people use and love. In this position... The Manufacturing Systems Analyst serves as the primary bridge between complex PLM technology and the functional manufacturing teams. This role is dedicated to...Immediate startRelocation packageFlexible hours- ...Associates are the reason for our success, and developing their talent remains critical to our future. AWC is hiring a Revenue Systems Analyst for our Midwest Regional Office location in Dearborn MI with a hybrid work setting including 3 days a week at our Dearborn MI...Weekly payWork at office3 days per week
$99k - $232k
...Time Type: Full time Travel Requirements: Up to 40% At PwC, our people in cybersecurity focus on protecting organisations from cyber threats through advanced technologies and strategies. They work to identify vulnerabilities, develop secure systems, and provide...Full timeH1b$97k - $143k
...Lead It Business Analyst Eaton's Corporate Sector division is currently seeking a Lead IT Business Analyst. The expected annual salary range for this role is $97000 - $143000 a year. This position is also eligible for a variable incentive program. Please note the...Work experience placementRelocation- ...Documentation, Application Development, Bouncy Castle Cryptographic, Cloud Infrastructure, Google Cloud Platform,.NET Core, .NET Developer, Cyber Security, C#, Application Testing, Agile Software Development Skills Preferred Kubernetes, Technical Communication, Technical...Remote work
- ...Business Analyst The Business Analyst will lead the analysis, documentation, and communication of requirements to support IT, business and product strategy, development and delivery using automation, workflow and AI tools. The BA will assist with identifying and designing...Work experience placementWork at office
- Job Description Position: Software Engineer Consultant/Expert Location: Allen Park,MI,48101 Description: • Develop technical solution designs and implementation plans and take full ownership of the Dynamics 365 solution(s). • Participate in the full development...Contract work
- A leading IT consulting firm in Dearborn, Michigan, is seeking a Senior Network Engineer to manage the global deployment of firewalls and ensure high-quality network solutions. This role involves collaboration with engineering and business teams to improve network reliability...
$70 - $75 per hour
SAP Security Architect Hybrid work Dearborn, MI (starting September 1st, will be moving to 4 days a week onsite). Ideal to be local but not required. 12 month contract. NO H1s Teams Video interview 1 hour - 1 round $70-$75/hr....Contract workWork at officeLocal area- ...Hi, I hope you are having a great day! We have requirement on Cyber Security Security Analyst 3 Urgent Requirement:- Job:Cyber Security Security Analyst 3 Location:- Dimondale MI HYBRID Duration:- Long term Top Skills...
- ...technical leadership, mentoring junior staff, and delivering defensible security solutions for complex systems. Responsibilities Define... ...mentoring, and subject-matter expertise to junior engineers and analysts. Collaborate with stakeholders to ensure security solutions...Full timeLocal area
$120.35k - $190.5k
...capabilities and automate user review workflows. You'll have... Bachelor’s degree or foreign equivalent in Information Technology, Cyber Security, Computer Science, Security Platform Engineering or a related field and 4 years of experience in the job offered or a...Immediate startWork from homeFlexible hours- Title: IT Security Specialist * Local to MI Description: We are seeking an experienced and hands-on IS Specialist to lead the design, implementation, and advancement of our Enterprise Information Security Data Security practice. This role will serve as a subject...Work experience placementLocal area
- IT Security Specialist II (IT) Location: Detroit, MI Type of Hire: CWR Responsibilities: The Cloud Security Architect will lead the strategy, security control & capabilities definition, design, and implementation support throughout all BCBSM cloud environments...Work at office
- Yazaki is a global leader in the research, development, and delivery of vehicle power and data solutions. Yazaki works with virtually every major auto manufacturer globally, and we've strived to maintain strategic and stable growth throughout our 84-year history. Today...
- Trainee - Delivery Operations (DPO) Wayne, Michigan As a Trainee in Delivery Operations, you will play a vital role in managing orders, updating task statuses, and monitoring transactions to ensure adherence to Service Level Agreements (Slas). Your contributions will...Traineeship
- A government contractor in Michigan is seeking an experienced Network Engineer to enhance and manage a large-scale network project. The position requires a Bachelor's Degree in Engineering or Computer Science and strong documentation and communication skills. Responsibilities...For contractors
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Defense Analyst. Be the first to apply!

