Sr. Security Software Engineer - Security Operations

General Motors
Warren, MI, United States
12 days ago
Apply on generalmotors.wd5.myworkdayjobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

Application Programming Interfaces (APIs) Artificial Intelligence Amazon Web Services Application Integration Architecture Automation of Tests Microsoft Azure Cloud Computing Profiling Cyber Security Continuous Integration Information Engineering Extract Transform Load (ETL)
+23 more
Identity and Access Management JSON Open Source Technology Security Software Security Information and Event Management Software Deployment Data Streaming Syslog YAML Feature Engineering Large Language Models Prompt Engineering Software Security Mitre Att&ck Cloudformation Cybercrime Bicep Machine Learning Operations Api Design Terraform Security Orchestration, Automation & Response Programming Languages Microservices

Job description

GM’s Cybersecurity Team safeguards the company’s global information assets, networks, and infrastructure. Our mission is to proactively defend GM against evolving cyber threats through strategic leadership, technical excellence, and innovative risk management. We seek cybersecurity professionals with advanced expertise, capable of driving enterprise security initiatives and influencing organizational resilience. As a Senior Security Software Engineer, you will design, lead, and deliver secure, scalable integration services that connect our cyber ecosystem (SIEM, EDR, IAM, SSPM, CSPM, ITSM, cloud) and activate AI/LLM capabilities to accelerate detection, response, and risk management. You will drive architecture for critical services, mentor developers, and partner across SecOps, SOC, Platform, and Data teams to ship measurable outcomes.

What You’ll Do

  • Own architecture & delivery for complex integration services (APIs, microservices, event-driven workflows) with production SLIs/SLOs.
  • Build AI-driven workflows (RAG, summarization, classification, agents) that augment investigations, triage, and orchestration.
  • Create reusable connectors bridging SIEM/EDR/IAM/SSPM/ITDR/ITSM and cloud telemetry with robust error handling, retries, and DLQs.
  • Implement security automation (SOAR-like playbooks) that enrich alerts and trigger deterministic + AI-assisted responses.
  • Harden and observe services with CI/CD, automated testing, performance profiling, metrics, and incident runbooks.
  • Mentor engineers and lead technical design reviews, coding standards, and reference implementations.
  • Translate requirements into clear epics/roadmaps; align stakeholders and deliver on time with quality., This role is categorized as hybrid. This means the selected candidate is expected to report to a specific location at least 3 times a week {or other frequency dictated by their manager}.

Requirements

  • 5-7 years in software security engineering; advanced proficiency in modern programming languages.
  • Expert in API development, microservices, event streaming, and idempotent integration patterns.
  • Experience deploying software using any modern CI/CD pipeline and automated delivery practices.
  • Hands-on with security tooling integrations (e.g., SIEM, EDR, SSPM).
  • Proven AI integration experience: LLM agents, embeddings, vector databases, RAG, prompt engineering.
  • Cloud proficiency (Azure/AWS/GCP) and IaC (Terraform/Bicep/ARM/CloudFormation).
  • Data engineering fluency: ETL/ELT, schema design, normalization/enrichment; formats (JSON, YAML, syslog, STIX/TAXII).
  • Excellent cross-functional communication; ability to lead small teams through delivery.

What Will Give You a Competitive Edge (Preferred Qualifications)

  • Experience extending vendor SDKs/plugins; contributions to open-source (security/AI).
  • Security data modeling (MITRE ATT&CK mappings, entity graphs) and knowledge stores.
  • Familiarity with Semantic Kernel/LangChain, feature engineering, or lightweight MLOps.

About the company

We believe we all must make a choice every day - individually and collectively - to drive meaningful change through our words, our deeds and our culture. Every day, we want every employee to feel they belong to one General Motors team., General Motors is committed to being a workplace that is not only free of unlawful discrimination, but one that genuinely fosters inclusion and belonging. We strongly believe that providing an inclusive workplace creates an environment in which our employees can thrive and develop better products for our customers.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on generalmotors.wd5.myworkdayjobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:56 min

Provisioning a secure container infrastructure with Bicep

Matthias Falkenberg +1 · World Congress 2022

3:47 min

Exploring JSON, CBOR, and JOSE for data serialization

Aaron Russell · LIVE

1:35 min

Centralizing configuration logic with native YAML block references

Matthieu Vincent Matthieu Vincent · Europe 2026 Virtual

4:09 min

Selecting infrastructure tools and determining proper abstraction layers

Alayshia Knighten Alayshia Knighten · World Congress 2024

2:03 min

Distinguishing type definition constructs from data validation routines

Clemens Vasters Clemens Vasters · World Congress 2025

Videos

See all

Related articles

See all