Cyber Automation Analyst - Security Operations Center

Ford Motor CompanyDearborn, MI
$99,600 - $192,900Hybrid

About The Position

This role will be focused on advancing Ford’s Cyber Defense Center (CDC) detection engineering, automation, and Agentic SOC capabilities within the Office of the CETO organization. The CDC mission is to provide proactive and reactive security services to protect Ford Motor Company global digital information assets from compromise. The Detection Engineer will design, build, test, and maintain high-fidelity detections and security automations across SIEM, SOAR, EDR, cloud, identity, and AI-enabled security platforms. This position requires hands-on expertise in Google SecOps, GCP-hosted CI/CD pipelines, Tekton-based delivery workflows, Python automation, and secure Agentic SOC development using modern generative AI patterns. Successful candidates must bring deep cyber defense experience and strong software engineering discipline. The candidate should be able to translate attacker behaviors, cloud telemetry, endpoint signals, identity events, and SOC case history into durable detection logic and automated response workflows. This role also requires the ability to develop, validate, and deploy AI-assisted SOC capabilities, including agent skills, retrieval-augmented workflows, Model Context Protocol integrations, secure prompt and tool governance, and human-in-the-loop guardrails for production security operations.

Requirements

  • Deep cyber defense experience
  • Strong software engineering discipline
  • Hands-on expertise in Google SecOps
  • Hands-on expertise in GCP-hosted CI/CD pipelines
  • Hands-on expertise in Tekton-based delivery workflows
  • Hands-on expertise in Python automation
  • Hands-on expertise in secure Agentic SOC development using modern generative AI patterns

Responsibilities

  • Design, build, test, and maintain high-fidelity detections and security automations across SIEM, SOAR, EDR, cloud, identity, and AI-enabled security platforms.
  • Translate attacker behaviors, cloud telemetry, endpoint signals, identity events, and SOC case history into durable detection logic and automated response workflows.
  • Develop, validate, and deploy AI-assisted SOC capabilities, including agent skills, retrieval-augmented workflows, Model Context Protocol integrations, secure prompt and tool governance, and human-in-the-loop guardrails for production security operations.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service