Apply Now

You will be taken to efds.fa.em5.oraclecloud.com to complete your application.

We are the movers of the world and the makers of the future. We get up every day, roll up our sleeves and build a better world — together. At Ford, we’re all a part of something bigger than ourselves. Are you ready to change the way the world moves?

Enterprise Technology plays a critical part in shaping the future of mobility. If you’re looking for the chance to leverage advanced technology to redefine the transportation landscape, enhance the customer experience and improve people’s lives, this is the opportunity for you. Join us and challenge your IT expertise and analytical skills to help create vehicles that are as smart as you are.

Reporting to the Manager of Monitoring Operations, this role focuses on alert triage, incident support, and continuous improvement of monitoring processes. We are seeking candidates with a solid cybersecurity foundation, including API security experience, along with embedded-vehicle exposure or a demonstrated aptitude and eagerness to learn. You will partner with cloud, vehicle, enterprise, incident-response, and global PSOC teams to help ensure effective investigation and resolution of security events affecting connected vehicles and the cloud services that power them.

Responsibilities

  • Operational Monitoring and Incident Response: Perform daily PSOC alert triage and support incident coordination, containment, remediation, recovery, and closure.
  • Cloud & Embedded Investigation and Resolution: Support investigations of security events across cloud application stacks and embedded vehicle architectures using available logging and telemetry.
  • Global PSOC Collaboration and Continuity: Partner with PSOC teams across regions to deliver consistent monitoring, investigation, and incident-response services; maintain effective continuity and handoffs for active security events.
  • Operational Improvement and Feedback Loop: Surface operational friction points and provide feedback to help improve detection logic, tooling, and response workflows.
  • Cross-Functional Partnership: Collaborate closely with the Cyber Incident Response Team (CIRT), Product Development, and Enterprise IT to execute response playbooks and coordinate complex mitigations.

Qualifications

  • Bachelor’s degree in Computer Science, Cybersecurity, or Engineering, or related field.
  • 2+ years in cybersecurity, security operations, or a related technical field.
  • Working understanding of incident response lifecycles, escalation, and incident management practices.
  • Experience with API security and exposure to cloud security operations on one or more major cloud platforms, including logging, monitoring, identity, and response workflows.
  • Ability to work effectively in a fast-paced 24×7 operations environment, including shift-based coverage.
  • Clear written and verbal communication for documenting incidents and coordinating with technical teams.

Benefits

  • Immediate medical, dental, vision and prescription drug coverage
  • Flexible family care days, paid parental leave, new parent ramp-up programs, subsidized back-up child care and more
  • Family building benefits including adoption and surrogacy expense reimbursement, fertility treatments, and more
  • Vehicle discount program for employees and family members and management leases
  • Tuition assistance
  • Established and active employee resource groups
  • Paid time off for individual and team community service
  • A generous schedule of paid holidays, including the week between Christmas and New Year’s Day
  • Paid time off and the option to purchase additional vacation time.