Cyber Automation Analyst - Security Operations Center
$99.6k - $192.9kFord
We are the movers of the world and the makers of the future. We get up every day, roll up our sleeves and build a better world -- together. At Ford, we’re all a part of something bigger than ourselves. Are you ready to change the way the world moves?Enterprise Technology plays a critical part in shaping the future of mobility. If you’re looking for the chance to leverage advanced technology to redefine the transportation landscape, enhance the customer experience and improve people’s lives, this is the opportunity for you. Join us and challenge your IT expertise and analytical skills to help create vehicles that are as smart as you are.This role will be focused on advancing Ford’s Cyber Defense Center (CDC) detection engineering, automation, and Agentic SOC capabilities within the Office of the CETO organization. The CDC mission is to provide proactive and reactive security services to protect Ford Motor Company global digital information assets from compromise. The Detection Engineer will design, build, test, and maintain high-fidelity detections and security automations across SIEM, SOAR, EDR, cloud, identity, and AI-enabled security platforms. This position requires hands-on expertise in Google SecOps, GCP-hosted CI/CD pipelines, Tekton-based delivery workflows, Python automation, and secure Agentic SOC development using modern generative AI patterns.Successful candidates must bring deep cyber defense experience and strong software engineering discipline. The candidate should be able to translate attacker behaviors, cloud telemetry, endpoint signals, identity events, and SOC case history into durable detection logic and automated response workflows. This role also requires the ability to develop, validate, and deploy AI-assisted SOC capabilities, including agent skills, retrieval-augmented workflows, Model Context Protocol integrations, secure prompt and tool governance, and human-in-the-loop guardrails for production security operations.Candidates must be willing to work a Hybrid work pattern, with a currently limited in-office schedule in the southeast Michigan metro area 4 days in-person/week.You’ll have...Bachelor’s degree in computer science, cybersecurity, engineering, information systems, or a related technical field, OR a combination of education and equivalent practical experience.5 years of experience across the following areas:Hands-on detection engineering experience creating, tuning, testing, and deploying production security detections in SIEM or security analytics platforms, with preference for Google SecOps.Hands-on experience building and operating GCP-hosted CI/CD pipelines, including Tekton tasks, Tekton pipelines, pipeline triggers, workload identity or service account usage, secrets handling, and deployment promotion workflows.Proficiency developing AI-assisted or Agentic SOC capabilities using generative AI, LLMs, RAG, agent skills, tool orchestration, MCP-style integrations, evaluation patterns, and guardrails for secure operational use.Strong Python programming skills, including REST API integration, structured data handling, automation, unit testing, error handling, and production support practices.Solid comprehension of cyber defense concepts including malware, attack techniques, cloud threats, identity compromise, vulnerability management, detection logic, and incident response workflows.Even better, you may have...2+ years security engineering experience.Experience with Google SecOps, YARA-L or similar detection languages, and security case management workflows.Familiarity with Gemini Enterprise Agent Platform concepts, Agent Runtime, Agent Registry, Skills Registry, Model Armor, Agent Gateway, Memory Bank, delegated identity, and secure tool execution patterns.Sound understanding of cloud, TCP/IP, networking, endpoint, identity, logging, and data pipeline concepts.Demonstrated independent initiative, strong ownership, quality methods, teamwork, sound judgment, and high integrity.You may not check every box, or your experience may look a little different from what we’ve outlined, but if you think you can bring value to Ford Motor Company, we encourage you to apply!As an established global company, we offer the benefit of choice. You can choose what your Ford future will look like: will your story span the globe, or keep you close to home? Will your career be a deep dive into what you love, or a series of new teams and new skills? Will you be a leader, a changemaker, a technical expert, a culture builder…or all of the above? No matter what you choose, we offer a work life that works for you, including:Immediate medical, dental, vision and prescription drug coverageFlexible family care days, paid parental leave, new parent ramp-up programs, subsidized back-up child care and moreFamily building benefits including adoption and surrogacy expense reimbursement, fertility treatments, and moreVehicle discount program for employees and family members and management leasesTuition assistanceEstablished and active employee resource groupsPaid time off for individual and team community serviceA generous schedule of paid holidays, including the week between Christmas and New Year’s DayPaid time off and the option to purchase additional vacation time.For a detailed look at our benefits, click here: *Note: This is a hybrid role, you are expected to relocate if you are not within commutable distance, and responsible to be on site 4 days a weekThis position is a range of salary grade(s) 7-8 | $99,600 - $192,900Visa sponsorship is not available for this position.Candidates for positions with Ford Motor Company must be legally authorized to work in the United States. Verification of employment eligibility will be required at the time of hire.We are an Equal Opportunity Employer committed to a culturally diverse workforce. All qualified applicants will receive consideration for employment without regard to race, religion, color, age, sex, national origin, sexual orientation, gender identity, disability status or protected veteran status. In the United States, if you need a reasonable accommodation for the online application process due to a disability, please call View phone number on us.fitly.work.#LI-Hybrid#LI-AH1What you’ll do...Create, enhance, tune, test, and operationalize curated and custom detections across Google SecOps SIEM/SOAR, EDR, cloud, identity, and application telemetry sources.Build Python-based SOAR orchestration and integrations that enrich cases, normalize security data, execute response actions, and connect security platforms through REST APIs and event-driven workflows.Engineer Agentic SOC capabilities, including agent skills, agent-to-tool orchestration, RAG-based security workflows, MCP tool integrations, prompt and response guardrails, and human-in-the-loop approval patterns.Apply secure software development practices, code review, infrastructure-as-code, secrets management, least-privilege access, audit logging, and production readiness standards to detection engineering and Agentic SOC delivery.Full timePosting Date: 2026-09-10
- ...Chief Information Security Officer (CISO), Information Security & Compliance About... ...translation transcription robotic process automation ai workflow machine learning... ...management, threat and vulnerability operations, and business continuity planning....Suggested
- ...Field Chief Information Security Officer (CISO) About the Company Industry leading... ...Specialties compliance cybersecurity automation soc 2 iso 27001 hipaa and pci... ...requires a strategic thinker who can operate with a high level of autonomy, is comfortable...SuggestedRemote work
- GENERAL SUMMARY: The Emerging Technology Security Engineer works in collaboration with all... ...and management. Strong scripting and automation skills (Python, PowerShell, Bash). Experience... .... Cloud Security: Azure Security Center, AWS Security Hub, CNSP, CWPP. IoT/Medical...Suggested
- ...Senior Cybersecurity Engineer / Security Architect (MLS & High-... ...programs. The individual will operate independently or as part of a... ...expertise to junior engineers and analysts. Collaborate with... ...Required Qualifications Core Cyber Security & Information Protection...SuggestedFull time
$74.3k - $166.2k
SAP Platform Security Architect (SAP RISE)Position SummaryThe SAP Platform Security Architect is responsible for defining, governing,... ...security strategy of the SAP platform rather than day-to-day operational security administration.At Ford Motor Company, we believe freedom...SuggestedImmediate startFlexible hours- ...Chief Information Security Officer (CISO), Growth About the Company Accomplished provider of top-tier security services Industry Security and Investigations Type Privately Held About the Role The Company is seeking a Chief Information Security...
- ...Chief Information Security Officer (CISO) About the Company Innovative provider of data safety & recovery solutions Industry Information Technology and Services Type Privately Held Founded 2024 Employees 51-200 Specialties cloud backup...
- ...Certification in Microsoft Power Platform or related automation tools REQUIRED EXPERIENCE KNOWLEDGE ABILITIES AND... ...Azure AD connect and Office 365 (2+ years) • Operational experience with industry-standard security protocols and procedures • Extensive experience with...Work at office
$68k - $133.9k
Position Summary Cyber Oracle Cloud Security - Analyst / Security Engineer I Deloitte... ...processes and cloud operations. Recruiting for this role... ...to the implementation of automated controls and governance,... ...inquiries to the Global Call Center (GCC) at USTalentCICInbox...Local areaVisa sponsorship$70k - $140k
...(see location options on posting)Summary: We are seeking a Security Automation and Orchestration Engineer with deep expertise in cybersecurity... ...tooling. This role is pivotal in scaling our security operations, enhancing threat response, and ensuring compliance through...Full timeWork at officeRemote workWork from homeFlexible hours$225k - $300k
...together advances in cloud infrastructure, automation and analytics, and software delivery, we... ...the core tenets of Network and Network Security related solutions for AHEAD prospects... ...Engineering, or equivalent Pre Sales and Data Center experience is required Professional...Work at office$65.1k - $166.2k
...this position... We are seeking an SAP Security Specialist (GSR Level) with deep expertise... ..., ensuring secure migration and operations of critical enterprise systems hosted in... ...with SAP functional teams, enterprise GRC analysts, cloud architecture teams, and external...Permanent employmentWork experience placementImmediate startFlexible hours$112k - $130k
Senior Security EngineerRemote - United StatesJR013945 At Ensono, our Purpose is to be a relentless ally, disrupting the status quo and... ...expertise, strong communication skills, and the ability to operate effectively in a fast-paced environment. What You Will Do: Design...Full timeTemporary workRemote workWork from homeFlexible hours$126k - $188k
...applications and services by identifying security risks early, partnering closely with... ...influence without becoming a blocker. The team operates with the mindset that effective security... ...Significant experience in development, automation and scripting languages such as C#, Go,...Work experience placementLocal areaRemote work- ...knowledge of Cisco SD-ACCESS, Catalyst Center Hands-on experience in designing, deployment... ...-on experience working on the SASE (Secure Access Service Edge) solution and its... ...traffic patterns (Wireshark). Person with Automation, innovation, problem solving, an...Contract work
- ...Deputy Chief Information Security Officer (CISO), Security Technology About the Company Popular provider of revenue cycle management solutions Industry Hospital & Health Care Type Privately Held, Private Equity-backed Founded 2003 Employees...
- ...difference every day. Whether you're caring for patients, supporting operations, conducting research, or driving new solutions, you'll be part... ...GENERAL SUMMARY: Reporting to the Emerging Technology Security Manager, the Emerging Technology Security Architect works in...Full time
- ...Description Job Description Digital Forensic Analyst Employment Type: Full-Time, Mid-Level... ...includes the forensics lab and data center. This firm prioritizes a lean-team... ...evidence - Consistently adhere to standard operating procedures - Perform quality checks on...Full timeWork at officeRemote workFlexible hours
- ...reality.Accenture SecurityAccenture Security delivers continuous, rapid-fire... ...that range from cloud, data centers and workplace to networks, security... ...unknown, or running an entire security operations center, we will help companies build cyber resilience to grow with...Full timeWork experience placementLive inWork at officeLocal area
$105.4k - $207.8k
...Summary Join Deloitte’s Cyber practice as a Cyber SecOps... ...scalable, resilient security operations solutions. In this hands-on... ...detection engineering, and automation. You will work with cross-functional... ...with security operations center analysts and threat detection...Local areaVisa sponsorship$102.17k
...the country. Job Description Join the Trinnex Security Team as a Senior Cyber Security Analyst, where you will operate at the intersection of cybersecurity and... ...Experience with Terraform and other IaC, including automated provisioning, configuration management, and...Work experience placementH1b- ...stakeholders. Perform deep-dive data analysis using Advanced Excel, Access, SQL, and VBA. Build data models, dashboards, reports, and automation solutions. Use Excel Power Query, Power Pivot, Pivot Tables, and advanced formulas. Design and maintain Microsoft Access...Contract work
- We Are:Accenture Security is one of the fastest growing areas of our business, and our global Cyber Investigation and Forensic Response (CIFR... ...it matters most. The team operates across the Americas, providing... ...Corp; Irvine, 300 Spectrum Center Dr, ACN Tech; Cincinnati, 4...Full timeLive inWork at officeLocal areaShift work
$53 - $58 per hour
...Requirement/Must Have: ~ Deep expertise in firewalls, secure access technologies, proxy/security platforms, and incident management... .... Exposure to email security (ESA). Experience with automation and optimization initiatives. Skills: Cisco ASA....$105.4k - $207.8k
Position Summary As a Physical Security Senior Consultant in Deloitte’s Cyber Defense & Resilience team, you... ...clients strengthen physical security, operational resilience, and mission assurance... ...; Global Security Operations Center (GSOC) activities or GSOC technology...Local areaVisa sponsorship$141.2k - $278.3k
...Google Infrastructure and Security Lead ArchitectJoin our... ...and re-engineering operations and processes that are... ...against evolving cyber threats. You will collaborate... ...foster a culture of automation and DevSecOps... ...between on-premises data centers and Google Cloud using...Local areaVisa sponsorshipFlexible hours$134.5k - $265.1k
Position Summary Our Deloitte Cyber Defense & Resilience team recognizes... ...people, facilities, assets, and operations. Join our Physical Security consulting team to help clients address... ...support, and Global Security Operations Center workstreams, including monitoring,...Contract workLocal areaVisa sponsorship$134.5k - $265.1k
...Summary Deloitte’s Cyber team helps clients... ..., SIEM, SOAR, and automation development. You will... ...implement, and optimize secure, outcome-focused... ...and efficient security operations capabilities. In this... ...security operations center (SOC) analysts and threat detection...Local areaVisa sponsorship$163.4k - $322.1k
...clients strengthen physical security programs, align security capabilities... ..., facilities, assets, and operations. This role supports clients... ...to othersThe teamDeloitte’s Cyber Defense & Resilience practice... ..., Global Security Operations Center (GSOC) technology, video...Local areaVisa sponsorship- ...IT Security SpecialistResponsibilities:Under general direction, evaluates the adequacy and... ...one (1) of the following areas:SOC Analyst o Threat huntingDetection engineeringNetwork... ...hardeningSecurity tooling and reporting automation (leveraging PowerShell/Python/Bash etc....Contract work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Automation Analyst - Security Operations Center. Be the first to apply!



