At Ford Motor Company, we believe freedom of movement drives human progress. We also believe in providing you with the freedom to define and realize your dreams. With our incredible plans for the future of mobility, we have a wide variety of opportunities for you to accelerate your career potential as you help us define tomorrow's transportation.
As a key member of our Enterprise Technology group, you'll play a critical part in shaping the future of mobility. If you're looking for the chance to leverage advanced technology to redefine the transportation landscape, enhance the customer experience and improve people's lives, this is the opportunity for you. Join us and challenge your IT expertise and analytical skills to help create vehicles that are as smart as you are.
This position is for a Cyber Defense Center (CDC) Detection Analyst specializing in initial threat triage. A Detection Analyst involves swiftly assessing and prioritizing security incidents to determine their severity and potential impact. You will be responsible for promptly identifying and investigating various threats, initiating timely response actions, and escalating to appropriate teams for further investigation and/or remediation.
Candidates must be open to a hybrid work arrangement with a limited in-office presence in the southeast Michigan metro area. Would consider exceptional remote candidates. Additionally, candidates must be willing to work at least 1 weekend per calendar quarter. For those weeks, only when you're Shift Lead, you work 11am-8pm shift during Eastern Daylight Savings time and 10am-7pm shift during Eastern Standard time.
What you'll be able to do :
Perform initial triage of various security incidents to determine if a threat applies to Ford including phishing, malicious software, hostile probes, information theft, and misuse of computing facilities
Conduct daily analysis on the aforementioned incidents using a range of tools such as SIEM, EDR, IDS/IPS, Cloud, and Sandbox analysis
Collaborate with internal and customer teams to investigate and contain incidents
Respond to cyber security queries received from Ford personnel
Adhere to various playbooks/procedures to provide consistent and repeatable methods to resolve security incidents
Effectively document investigation details for both technical and non-technical audiences
Recognize attacker Tools, Techniques, and Procedures (TTPs) and Indicator of Compromises (IOCs) that apply to current and future investigations
Support Shift Lead rotation at least once per calendar quarter
Keeping up-to-date with emerging cybersecurity threats to proactively prevent potential attacks and improve Ford's cyber security posture
The minimum requirements we seek :
Bachelor's degree in a computer related field
2+ years of Cyber Security experience is required (i.e., Network / Endpoint / Cloud / Application security, threat intelligence, etc.)
2+ years of experience with SIEM tools and/or reviewing system log files, data correlation, and analysis (i.e. firewall, network flow, system logs, IDS)
2+ years of experience in customer service including the resolution of escalations, incident handling, and response
Our preferred requirements :
2+ years of Cyber Security experience within a Security Operations Center (i.e., Incident Response)
Performing digital forensics and malware analysis a plus
2+ years cloud experience in Google Cloud Platform (GCP) or Microsoft Azure
Scripting abilities (Python, PowerShell, Bash/Shell, SQL)
GIAC, CEH, CISSP or other security credentials
Candidate who prefers to work later hours to support NA shift (10am-7pm, 9am-6pm, or 11am-8pm EST)
In depth knowledge of servers, clients, various computer peripherals, network and/or storage technologies with various operating systems including Windows, Linux, and Mac
Experience in a fast paced, high stress, support environment, able to work with a sense of urgency and attention to detail
Must work well with others including peers and end-users
Strong interest in cyber security with an eagerness and willingness to learn
Strong deductive reasoning, critical and analytical thinking, problem solving, and prioritization skills
Disciplined approach utilized when completing work and adhering to procedure
Strong oral and written communications skills - able and willing to communicate technical items in non-technical terms
Demonstrate high level of independent initiative, drive for results and commitment to integrity
Ability to concurrently work on multiple assignments/projects and complete on schedule with high quality results
What you'll receive in return :
As part of the Ford family, you'll enjoy excellent compensation and a comprehensive benefits package that includes generous PTO, retirement, savings, and stock investment plans, incentive compensation, and much more. You'll also experience exciting opportunities for professional and personal growth and recognition.
Candidates for positions with Ford Motor Company must be legally authorized to work in the United States. Verification of employment eligibility will be required at the time of hire. Visa sponsorship is not available for this position.
We are an Equal Opportunity Employer committed to a culturally diverse workforce. All qualified applicants will receive consideration for employment without regard to race, religion, color, age, sex, national origin, sexual orientation, gender identity, disability status, or protected veteran status.
For information on Ford's salary and benefits, please visit: https://corporate.ford.com/content/dam/corporate/us/en-us/documents/careers/2024-benefits-and-comp-GSR-sal-plan-2.pdf
Requisition ID : 26018