Sr. Security Software Engineer - Security Operations
About the Role
GM's Cybersecurity Team safeguards the company's global information assets, networks, and infrastructure. Our mission is to proactively defend GM against evolving cyber threats through strategic leadership, technical excellence, and innovative risk management. We seek cybersecurity professionals with advanced expertise, capable of driving enterprise security initiatives and influencing organizational resilience. As a Senior Security Software Engineer, you will design, lead, and deliver secure, scalable integration services that connect our cyber ecosystem (SIEM, EDR, IAM, SSPM, CSPM, ITSM, cloud) and activate AI/LLM capabilities to accelerate detection, response, and risk management. You will drive architecture for critical services, mentor developers, and partner across SecOps, SOC, Platform, and Data teams to ship measurable outcomes.
What You'll Do
- Own architecture & delivery for complex integration services (APIs, microservices, event-driven workflows) with production SLIs/SLOs.
- Build AI-driven workflows (RAG, summarization, classification, agents) that augment investigations, triage, and orchestration.
- Create reusable connectors bridging SIEM/EDR/IAM/SSPM/ITDR/ITSM and cloud telemetry with robust error handling, retries, and DLQs.
- Implement security automation (SOAR-like playbooks) that enrich alerts and trigger deterministic + AI-assisted responses.
- Harden and observe services with CI/CD, automated testing, performance profiling, metrics, and incident runbooks.
- Mentor engineers and lead technical design reviews, coding standards, and reference implementations.
- Translate requirements into clear epics/roadmaps; align stakeholders and deliver on time with quality.
Required Qualifications
- 5-7 years in software security engineering; advanced proficiency in modern programming languages.
- Expert in API development, microservices, event streaming, and idempotent integration patterns.
- Experience deploying software using any modern CI/CD pipeline and automated delivery practices.
- Hands-on with security tooling integrations (e.g., SIEM, EDR, SSPM).
- Proven AI integration experience: LLM agents, embeddings, vector databases, RAG, prompt engineering.
- Cloud proficiency (Azure/AWS/GCP) and IaC (Terraform/Bicep/ARM/CloudFormation).
- Data engineering fluency: ETL/ELT, schema design, normalization/enrichment; formats (JSON, YAML, syslog, STIX/TAXII).
- Excellent cross-functional communication; ability to lead small teams through delivery.
Preferred Qualifications
- Experience extending vendor SDKs/plugins; contributions to open-source (security/AI).
- Security data modeling (MITRE ATT&CK mappings, entity graphs) and knowledge stores.
- Familiarity with Semantic Kernel/LangChain, feature engineering, or lightweight MLOps.
Additional Details
GM does not provide immigration-related sponsorship for this role. Do not apply if you will need GM immigration sponsorship now or in the future. This role is categorized as hybrid, with expectation to report to a specific location at least 3 times per week. This job may be eligible for relocation benefits.