General Motors' Cybersecurity Team is dedicated to protecting the company's global information assets and networks. They are looking for a Senior Security Software Engineer to design and deliver secure integration services that enhance their cyber ecosystem and improve risk management.
Responsibilities:
- Own architecture & delivery for complex integration services (APIs, microservices, event-driven workflows) with production SLIs/SLOs
- Build AI-driven workflows (RAG, summarization, classification, agents) that augment investigations, triage, and orchestration
- Create reusable connectors bridging SIEM/EDR/IAM/SSPM/ITDR/ITSM and cloud telemetry with robust error handling, retries, and DLQs
- Implement security automation (SOAR-like playbooks) that enrich alerts and trigger deterministic + AI-assisted responses
- Harden and observe services with CI/CD, automated testing, performance profiling, metrics, and incident runbooks
- Mentor engineers and lead technical design reviews, coding standards, and reference implementations
- Translate requirements into clear epics/roadmaps; align stakeholders and deliver on time with quality
Requirements:
- 5-7 years in software security engineering; advanced proficiency in modern programming languages
- Expert in API development, microservices, event streaming, and idempotent integration patterns
- Experience deploying software using any modern CI/CD pipeline and automated delivery practices
- Hands-on with security tooling integrations (e.g., SIEM, EDR, SSPM)
- Proven AI integration experience: LLM agents, embeddings, vector databases, RAG, prompt engineering
- Cloud proficiency (Azure/AWS/GCP) and IaC (Terraform/Bicep/ARM/CloudFormation)
- Data engineering fluency: ETL/ELT, schema design, normalization/enrichment; formats (JSON, YAML, syslog, STIX/TAXII)
- Excellent cross-functional communication; ability to lead small teams through delivery
- Experience extending vendor SDKs/plugins; contributions to open-source (security/AI)
- Security data modeling (MITRE ATT&CK mappings, entity graphs) and knowledge stores
- Familiarity with Semantic Kernel/LangChain, feature engineering, or lightweight MLOps