The Role
The Staff Product Cybersecurity Engineer, Secure Product Engineering is a senior individual contributor within the Secure Product Engineering pillar of the broader Product Cybersecurity organization at General Motors. Through close, hands-on partnership with product engineering teams, this engineer helps ensure that software and systems are implemented securely as products move through the build phase of development. As a technical leader without direct reports, this role personally builds the tooling, patterns, and secure-engineering capabilities—and provides the technical guidance and workflows—that allow secure software and systems engineering to scale across GM's product portfolio, spanning embedded vehicle software, mobile experiences, and other key software & services. This is a deep-expertise, execution-focused role. Influence is earned through technical credibility, mentorship, and leading by example rather than through people management.
What You'll Do
-
Serve as a hands-on technical leader across secure software and systems engineering, driving outcomes through direct execution and influence rather than direct reports
-
Personally design, build, and mature a robust set of secure engineering services and capabilities for GM products
-
Establish close, embedded partnerships with product engineering teams to support and directly contribute to secure implementation
-
Implement and mature SAST, DAST, fuzzing, runtime security, and OS security hardening of core code bases
-
Author technical guidance, reusable patterns, and guardrails, and roll them out across product environments
-
Perform in-depth secure code review and partner with adjacent teams to improve tooling and carry security requirements into engineering
-
Mentor and uplevel engineers across the pillar, setting a high technical bar through example and pairing
Your Skills & Abilities (Required Qualifications)
-
8+ years of cybersecurity experience with roles in application security, product security, or similar
-
Demonstrated technical leadership and influence in relevant security or engineering-focused roles—leading initiatives without formal authority, mentoring engineers, and setting technical direction
-
Expertise with application security, secure software engineering, and practical technical guidance
-
Experience with SAST, DAST, fuzzing, code review, and secure SDLC workflows across platforms
-
Able to read and write software in multiple programming languages to personally build tooling and support the team's execution
-
Works closely with engineering teams to materially improve security without unnecessary friction
What Will Give You A Competitive Edge (Preferred Qualifications)
-
Prior role(s) in the automotive industry or a similarly complex, deadline-driven, and regulated field
-
Published cybersecurity research projects (e.g. conference talks, blog posts, code repositories)
-
Familiarity with embedded software/OS security, mobile applications, and backend development
-
Have previously built custom security tooling and/or extended functionality in related technologies
What You'll Bring
-
A high-ownership, hands-on style with strong product instincts and a pragmatic security mindset
-
A commitment to internal customer partnership and technically credible security support
-
Deep technical expertise that enables clear guidance, strong mentorship, and opinionated technical planning
-
The ability to manage multiple complex priorities with clear milestones and measurable outcomes
-
A bias toward scalable improvement that strengthens Secure Product Engineering over time
#LI-SB3