Senior Cybersecurity Engineer - Adversary...

General Motors
Austin, TX, United States
18 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours
Job source

Tech stack

Application Programming Interfaces (APIs) Artificial Intelligence Amazon Web Services Microsoft Azure Software as a Service Cloud Computing Cyber Security Intrusion Detection and Prevention Data Logging Scripting Google Cloud Mitre Att&ck
+3 more
Cybercrime Purple Team (Cyber Security) Cyber Warfare

Job description

The Adversary Operations team is responsible for adversary emulations that test current capabilities, processes, and documentation, drive new cyber detection capability, and establish the baseline for strategic hunts. The Senior Cybersecurity Engineer will perform tactical purple operations, repeatable MSV-based testing, custom tooling, cloud and platform testing, and the annual red exercise used to validate security operations alerting and processes.

What You’ll Do:

  • Lead and execute tactical purple team operations aligned to real adversary tactics, including persistence, privilege escalation, lateral movement, and command-and-control testing.

  • Design and run strategic, multi-step adversary emulation exercises that validate detections, processes, and team response across the enterprise.

  • Build repeatable validation workflows using MSV and related tooling to continuously test visibility, logging, detections, and control effectiveness.

  • Develop and enhance innovative adversary tooling, including custom C2, payload development, automation, and infrastructure required to support AO operations.

  • Partner with Detection Engineering, Incident Response, and other cyber verticals to turn AO findings into improved detections, integrations, documentation, and threat hunting outcomes.

  • Support AO innovation priorities across platforms, logging, cloud infrastructure, and cross-team integrations, including AWS, GCP, and Azure-related attack validation and infrastructure setup.

  • Help mature AO capability in advanced and emerging areas such as cloud and SaaS tactics, endpoint tactics across multiple operating systems, AI-related tactics, and infrastructure-focused adversary tradecraft.

  • Produce clear technical documentation, attribution, findings, and recommendations that feed operational improvements and future exercises., This role is categorized as hybrid. This means the selected candidate is expected to report to a specific location at least 3 times a week {or other frequency dictated by their manager}.

Requirements

  • Significant hands-on experience in cybersecurity operations, adversary emulation, purple teaming, red teaming, threat hunting, or detection engineering.

  • Strong understanding of attacker tactics, techniques, and procedures and the ability to translate them into repeatable testing scenarios.

  • Experience with endpoint, cloud, network, and logging technologies used to validate detections and visibility gaps across enterprise environments.

  • Experience building or using offensive and validation tooling such as payloads, C2 frameworks, automation, scripting, and infrastructure for safe adversary testing.

  • Ability to collaborate across verticals and help coordinate actions that improve Cyber Defense outcomes at scale.

  • Strong written and verbal communication skills with the ability to document findings, explain operational risk, and influence detection and response improvements.

What Will Give You a Competitive Edge (Preferred Qualifications):

  • Experience with MSV or similar security validation tooling and the ability to create custom repeat actions for visibility validation.

  • Experience in cloud and SaaS adversary tactics, including web and API attack paths.

  • Experience supporting automotive, manufacturing, or other complex operational environments where security validation spans multiple technology domains.

  • Familiarity with ATT&CK-aligned reporting, detection engineering feedback loops, and enterprise purple team programs.

About the company

We believe we all must make a choice every day - individually and collectively - to drive meaningful change through our words, our deeds and our culture. Every day, we want every employee to feel they belong to one General Motors team., General Motors is committed to being a workplace that is not only free of unlawful discrimination, but one that genuinely fosters inclusion and belonging. We strongly believe that providing an inclusive workplace creates an environment in which our employees can thrive and develop better products for our customers.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.juju.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

1:10 min

Exposing sensitive information through partial search logs

Dennis Schulz Dennis Schulz +1 · WWC Europe 2026

3:24 min

Validating external integration security against cyber vulnerabilities

Torben Schramme · WWC 2021

1:53 min

Evaluating traditional scripting languages for modern development tasks

Jens Knipper Jens Knipper · Europe 2026 Virtual

11:26 min

Identifying system risks and collaborative ecosystem legal challenges

Hans-Jürgen Eidler · LIVE

Videos

See all

Related articles

See all