Cyber Defense Analyst
Ford Motor Co
Cyber Defense Center Detection Analyst
This position is for a Cyber Defense Center (CDC) Detection Analyst specializing in initial threat triage. The role involves swiftly assessing and prioritizing security incidents to determine their severity and potential impact. You will be responsible for promptly identifying and investigating various threats, initiating timely response actions, and escalating to appropriate teams for further investigation and/or remediation.
Work Schedule & Location
Location: This role is hybrid, with on-site work in Southeast Michigan.
Standard Hours: Standard working hours are typically 8:00 AM – 5:00 PM ET.
Shift Lead Rotation: Candidates must be willing to support a Shift Lead rotation at least once per calendar quarter. During these weeks, the shift is 11:00 AM – 8:00 PM during Eastern Daylight Time (EDT) and 10:00 AM – 7:00 PM during Eastern Standard Time (EST).
Weekend Coverage: Candidates must be willing to work at least one weekend per calendar quarter as part of Shift Lead Rotation.
Responsibilities
Responsibilities:
Perform initial triage and investigation of various security incidents to determine the impact on Ford, including phishing, malicious software, reconnaissance activities (probes/scans), data exfiltration, and policy violations.
Conduct daily analysis using a range of tools, including SIEM, EDR/XDR, SOAR, and Sandbox analysis platforms.
Investigate alerts across multi-cloud (Azure, GCP, AWS) and on-premises environments.
Collaborate with internal business units and technical teams to investigate and contain incidents.
Respond to cybersecurity inquiries received from Ford personnel, providing clear guidance and risk assessment.
Execute and maintain security playbooks and standard operating procedures (SOPs) to ensure consistent, repeatable, and efficient incident resolution.
Effectively document investigation details for both technical peer review and non-technical stakeholders.
Identify and map attacker Tools, Techniques, and Procedures (TTPs) and Indicators of Compromise (IOCs) to the MITRE ATT&CK framework to enhance future detection and prevention.
Support Shift Lead rotation at least once per calendar quarter, managing escalations and team coordination.
Monitor the global threat landscape and stay up-to-date with emerging cybersecurity trends to proactively improve Ford's security posture.
Utilize AI-driven threat detection tools to enhance triage accuracy, reduce false positives, and accelerate the identification of emerging attack patterns.
Qualifications
Qualifications:
- Education: Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related technical field (or equivalent professional experience).
- Professional Experience: 3+ years of experience in a Security Operations Center (SOC) or Cyber Defense Center (CDC), including:
- Hands-on experience with SIEM platforms and EDR/XDR tools.
- Performing data correlation and analysis of system logs (Firewall, Network Flow, IDS/IPS, and Operating System logs).
- Incident handling and triage, including the resolution of escalations and clear communication during active security events.
- Foundational Knowledge: In-depth understanding of Operating Systems (Windows, Linux, Mac), network protocols (TCP/IP, DNS, and core infrastructure technologies.
- Soft Skills:
- Ability to work in a fast-paced, high-stress environment with a strong sense of urgency and attention to detail.
- Strong deductive reasoning, critical thinking, and prioritization skills.
- Excellent oral and written communication skills—able to translate technical items into non-technical terms.
- Professionalism: High level of independent initiative, integrity, and a disciplined approach to adhering to procedures.
Preferred Qualifications:
- Cloud Security: 2+ years of experience with Google Cloud Platform (GCP) or Microsoft Azure, specifically analyzing cloud-native security logs.
- AI & Automation: Experience leveraging or tuning Artificial Intelligence (AI) and Machine Learning (ML) tools to improve threat detection or automate manual triage tasks.
- Scripting: Proficiency in scripting languages such as Python, PowerShell, Bash, or SQL to automate workflows or parse data.
- Ford Specifics: Familiarity with Ford's computing infrastructure and the Software Development Methodology (SDM).
- Certifications: Preferred industry credentials such as GIAC (GCIH, GCIA), CEH or CIISP.
You may not check every box, or your experience may look a little different from what we've outlined, but if you think you can bring value to Ford Motor Company, we encourage you to apply!
- Position Duties This position is for a Cyber Defense Center (CDC) Detection Analyst specializing in initial threat triage. The role involves swiftly assessing and prioritizing security incidents to determine their severity and potential impact. You will be responsible...SuggestedFull timeShift workWeekend work
$99k - $232k
...Time Type: Full time Travel Requirements: Up to 40% At PwC, our people in cybersecurity focus on protecting organizations from cyber threats through advanced technologies and strategies. They work to identify vulnerabilities, develop secure systems, and provide...SuggestedFull timeH1b- ...Junior Cyber Advisor Location: Detroit, MI- Onsite **** NOT REMOTE*** Type: Full-time... ...Machine Learning, Cybersecurity, Aerospace & Defense, Material Sciences, Advance Manufacturing... ...by assisting senior cyber advisors, analysts, and engineers in delivering cyber risk analysis...SuggestedFull timeLocal area
$77k - $202k
...Time Type: Full time Travel Requirements: Up to 40% At PwC, our people in cybersecurity focus on protecting organisations from cyber threats through advanced technologies and strategies. They work to identify vulnerabilities, develop secure systems, and provide...SuggestedFull timeH1b$124k - $280k
...Time Type: Full time Travel Requirements: Up to 40% At PwC, our people in cybersecurity focus on protecting organisations from cyber threats through advanced technologies and strategies. They work to identify vulnerabilities, develop secure systems, and provide...SuggestedFull timeH1b- ...industry, Roush also provides significant support to the aerospace, defense, and theme park industries. With over 2,400 employees in... ...Are you looking for a new challenge? Roush is looking to add a Cyber Security Architect II to join their team. Roush is looking for a...Permanent employmentFull timeLocal area
- ...Cyber Security Architecture Analyst Founded in 1998 and headquartered in Farmington Hills, MI, Kyyba has a global presence delivering high-quality resources and top-notch recruiting services, enabling businesses to effectively respond to organizational changes and technological...Visa sponsorshipWork visa
- ...with Embedded Vehicle systems such as AutoSAR, IVI, or Android. Automotive networking, low level networking, system on a chip, and cyber security around these Embedded sensors, AI, ML, data fusion for autonomous vehicles and cyber security relevancy Strong oral, written...Long term contractRemote work
$124k - $280k
...people in cybersecurity focus on protecting organisations from cyber threats through advanced technologies and strategies. They work... ...independence requirements. The Opportunity As part of the Cyber Defense and Engineering team, you will lead large-scale engagements...Full timeH1b$99.1k - $166.2k
Enterprise Architect The Enterprise Architect role involves contributing to global strategic initiatives and making technology decisions for both in-house and vendor solutions to modernize Ford's Supply Chain. Responsibilities Define business and technical ...Full timeImmediate startRelocationFree visaFlexible hours$44.1 - $63 per hour
Mitchell Martin Inc. is hiring a Contractor - Security for a remote position in Detroit, Michigan. This role focuses on managing cybersecurity risk assessments, requiring 5 to 7 years of experience in Information Security or IT Risk Management. The ideal candidate should...Hourly payContract workFor contractorsRemote work$104k - $156k
...standing privilege, and improving visibilityParticipate in incident response and endpoint-related investigations in partnership with Cyber teamsContinuously improve endpoint security posture using metrics, telemetry, and risk insightsMinimum qualificationsBachelor's in...- Motorsport Hackers is seeking an Enterprise Architect to lead strategic technology initiatives for Ford's Supply Chain. The role involves designing business and technical architecture solutions, evaluating vendors, and providing architectural services. Candidates should...
- Title: Security SW Engineer w Cryptography & PKI Description : STG is a fast-growing Digital Transformation services company providing Fortune 500 companies with Digital Transformation, Mobility, Analytics and Cloud Integration services in both information technology...
$99k - $232k
...Time Type: Full time Travel Requirements: Up to 40% At PwC, our people in cybersecurity focus on protecting organisations from cyber threats through advanced technologies and strategies. They work to identify vulnerabilities, develop secure systems, and provide...Full timeH1b- Ford is seeking a Manufacturing Systems Analyst to maximize the value of Teamcenter by supporting end-users, designing training programs, and ensuring seamless data flow. The role requires a BSc in Engineering or related field, along with 5+ years of experience in engineering...
- ...Associates are the reason for our success, and developing their talent remains critical to our future. AWC is hiring a Revenue Systems Analyst for our Midwest Regional Office location in Dearborn MI with a hybrid work setting including 3 days a week at our Dearborn MI...Weekly payWork at office3 days per week
- ...Documentation, Application Development, Bouncy Castle Cryptographic, Cloud Infrastructure, Google Cloud Platform,.NET Core, .NET Developer, Cyber Security, C#, Application Testing, Agile Software Development Skills Preferred Kubernetes, Technical Communication, Technical...Remote work
- ...Information Security Manager) ~ AZ-500 (Microsoft Certified: Azure Security Engineer Associate) ~ CySA+ (CompTIA Cybersecurity Analyst+) ~ CEH (Certified Ethical Hacker) Other Responsibilities: Work with Security team on other technical security related issues...3 days per week
$97k - $143k
...Lead It Business Analyst Eaton's Corporate Sector division is currently seeking a Lead IT Business Analyst. The expected annual salary range for this role is $97000 - $143000 a year. This position is also eligible for a variable incentive program. Please note the...Work experience placementRelocation- ...Job Summary: The Business Analyst (BA) will lead the analysis, documentation, and communication of requirements to support IT, business and product strategy, development and delivery using automation, workflow and AI tools. The BA will assist with identifying and designing...Work experience placementWork at office
- A leading IT consulting firm in Dearborn, Michigan, is seeking a Senior Network Engineer to manage the global deployment of firewalls and ensure high-quality network solutions. This role involves collaboration with engineering and business teams to improve network reliability...
- Job Description Position: Software Engineer Consultant/Expert Location: Allen Park,MI,48101 Description: • Develop technical solution designs and implementation plans and take full ownership of the Dynamics 365 solution(s). • Participate in the full development...Contract work
$70 - $75 per hour
SAP Security Architect Hybrid work Dearborn, MI (starting September 1st, will be moving to 4 days a week onsite). Ideal to be local but not required. 12 month contract. NO H1s Teams Video interview 1 hour - 1 round $70-$75/hr....Contract workWork at officeLocal area$120.35k - $190.5k
...capabilities and automate user review workflows. You'll have... Bachelor’s degree or foreign equivalent in Information Technology, Cyber Security, Computer Science, Security Platform Engineering or a related field and 4 years of experience in the job offered or a...Immediate startWork from homeFlexible hours- ...Hi, I hope you are having a great day! We have requirement on Cyber Security Security Analyst 3 Urgent Requirement:- Job:Cyber Security Security Analyst 3 Location:- Dimondale MI HYBRID Duration:- Long term Top Skills...
- ...technical leadership, mentoring junior staff, and delivering defensible security solutions for complex systems. Responsibilities Define... ...mentoring, and subject-matter expertise to junior engineers and analysts. Collaborate with stakeholders to ensure security solutions...Full timeLocal area
- Title: IT Security Specialist * Local to MI Description: We are seeking an experienced and hands-on IS Specialist to lead the design, implementation, and advancement of our Enterprise Information Security Data Security practice. This role will serve as a subject...Work experience placementLocal area
- IT Security Specialist II The Cloud Security Architect will lead the strategy, security control & capabilities definition, design and implementation support throughout all CLIENT cloud environments including Microsoft Azure, Office 365, Amazon Web Services, MuleSoft...Work at office
- Yazaki is a global leader in the research, development, and delivery of vehicle power and data solutions. Yazaki works with virtually every major auto manufacturer globally, and we've strived to maintain strategic and stable growth throughout our 84-year history. Today...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Defense Analyst. Be the first to apply!


