Demo

Cybersecurity Engineer - Vulnerability Management and Application Security

GM Financial
Arlington, TX Full Time
POSTED ON 12/29/2025
AVAILABLE BEFORE 2/11/2026
Job Description

Opportunity to work in a hybrid model: Potential to work 4 days onsite and 1 day remote

Why GM Financial Cybersecurity?

Innovation isn’t just a talking point at GM Financial, it’s how we operate. By joining our team, you’ll work in a mission-focused environment with specialized teams, including Engineering, Threat Intelligence, Vulnerability Management, Incident Response, Firewall, Governance, Risk, Architecture and Offensive Security. These teams collaborate to identify, manage and respond to threats, all while driving innovation across the environment.

Cybersecurity is central to our strategic vision, so you’ll benefit from exceptional leadership visibility, with direct reporting lines to the CEO. This structure ensures your work is recognized and supported at the highest levels, while also enabling bold innovation and the adoption of cutting-edge technologies.

Shape the future of Cybersecurity at GM Financial, with the freedom to explore, the tools to build and the support to thrive.

Responsibilities

About the role:

As a Cybersecurity Engineer specializing in Vulnerability Management and Application Security, you will play a critical role in safeguarding enterprise systems and applications against evolving threats. Your primary focus will be on identifying, assessing, and mitigating vulnerabilities across infrastructure and application layers, while ensuring compliance with security standards and best practices.

In This Role You Will

  • Develop and maintain technical security requirements, standards, and documentation for vulnerability management and application security.
  • Design and implement security solutions with emphasis on:
    • Vulnerability Management (VM) platforms and processes
    • Application Security tools (SAST, DAST, IAST)
    • Web Application Firewalls (WAF)
    • Secure coding practices and CI/CD pipeline integration
  • Perform vulnerability assessments and penetration testing for applications and systems; analyze findings and drive remediation efforts.
  • Collaborate with development and operations teams to integrate security controls into DevOps workflows and Infrastructure as Code (IaC).
  • Monitor and analyze system logs and security alerts to detect unauthorized access or anomalies.
  • Create and present security metrics, vulnerability trends, and risk reports to leadership.
  • Participate in incident response activities, providing technical expertise for application-related security incidents.
  • Conduct periodic risk assessments for applications and supporting infrastructure.
  • Evaluate and recommend security tools and technologies to enhance vulnerability detection and remediation capabilities.
  • Stay current on emerging threats, vulnerabilities, and regulatory requirements impacting application security.
What Makes You a Dream Candidate

  • Deep understanding of vulnerability management processes, CVSS scoring, and remediation strategies.
  • Hands-on experience with application security tools (e.g., Veracode, Checkmarx, Burp Suite, OWASP ZAP).
  • Strong knowledge of secure software development lifecycle (SDLC) and DevSecOps principles.
  • Familiarity with container security, Kubernetes, and cloud-native application security.
  • Experience securing cloud environments (AWS, Azure, GCP) and implementing IaC security controls (Terraform, CloudFormation).
  • Proficiency in scripting and automation (Python, Bash, or similar) for vulnerability scanning and remediation workflows.
  • Solid understanding of networking fundamentals, TCP/IP, OSI model, and application layer protocols (HTTP, SSL/TLS, DNS).
  • Knowledge of security frameworks and standards (NIST CSF, ISO 27001, OWASP Top 10).
  • Strong analytical skills for interpreting vulnerability data and assessing business impact.
  • Excellent communication skills for collaborating with developers, operations teams, and leadership.
  • Ability to think strategically, innovate, and implement scalable security solutions.

Experience

QUALIFICATIONS

  • Minimum of 1 to 5 years of experience in large and complex business environments with a successful track record working directly with senior level management preferred
  • Minimum of 1 year experience in one or more of the following domains: Cybersecurity, Information Security, Network Engineering, or Network Operations, Information Technology, Application Development preferred
  • Bachelor’s Degree in related field or equivalent work experience strongly preferred
  • Cybersecurity related certifications strongly preferred
  • Experience with CI/CD security integration and automated vulnerability scanning.
  • Familiarity with microservices architecture and securing APIs.
  • Advanced technical writing and documentation skills.
  • Knowledge of threat modeling and risk assessment methodologies.

What We Offer: Generous benefits package available on day one to include: 401K matching, bonding leave for new parents (12 weeks, 100% paid), tuition assistance, training, GM employee auto discount, community service pay and nine company holidays.

Our Culture: Our team members define and shape our culture — an environment that welcomes innovative ideas, fosters integrity, and creates a sense of community and belonging. Here we do more than work — we thrive.

Compensation: Competitive pay and bonus eligibility

Work Life Balance: Flexible hybrid work environment, 4-days a week in office

Salary.com Estimation for Cybersecurity Engineer - Vulnerability Management and Application Security in Arlington, TX
$134,016 to $165,265
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Cybersecurity Engineer - Vulnerability Management and Application Security?

Sign up to receive alerts about other jobs on the Cybersecurity Engineer - Vulnerability Management and Application Security career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$125,027 - $157,872
Income Estimation: 
$149,432 - $188,965
Income Estimation: 
$99,793 - $130,112
Income Estimation: 
$125,027 - $157,872
Income Estimation: 
$125,027 - $157,872
Income Estimation: 
$149,432 - $188,965
Income Estimation: 
$149,432 - $188,965
Income Estimation: 
$179,455 - $227,077
Income Estimation: 
$179,455 - $227,077
Income Estimation: 
$214,167 - $272,269
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at GM Financial

  • GM Financial Detroit, MI
  • Job Description Why GM Financial? GM Financial is the wholly owned captive finance subsidiary of General Motors and is headquartered in Fort Worth, U.S. We... more
  • 12 Days Ago

  • GM Financial Chicago, IL
  • Job Description Why AmeriCredit? We've spent the past 30 years creating a culture that's second to none in the auto finance industry. Other employers only ... more
  • 12 Days Ago

  • GM Financial Arlington, TX
  • Job Description Why GMF Technology? At GM Financial, innovation drives everything we do. We’re not just adopting technology — we’re shaping the future of s... more
  • 12 Days Ago

  • GM Financial Fort Worth, TX
  • Overview Why GM Financial? GM Financial is the wholly owned captive finance subsidiary of General Motors and is headquartered in Fort Worth, U.S. We are a ... more
  • 12 Days Ago


Not the job you're looking for? Here are some other Cybersecurity Engineer - Vulnerability Management and Application Security jobs in the Arlington, TX area that may be a better fit.

  • GM Financial Fort Worth, TX
  • Job Description Opportunity to work in a hybrid model: Potential to work 4 days onsite and 1 day remote Why GM Financial Cybersecurity? Innovation isn’t ju... more
  • 16 Days Ago

  • GM Financial Arlington, TX
  • Job Description Hybrid work environment: 4 days onsite and 1 day remote Why GM Financial Cybersecurity? Innovation isn’t just a talking point at GM Financi... more
  • 15 Days Ago

AI Assistant is available now!

Feel free to start your new journey!