Detroit, MI, USA
4 days ago
IT Security Manager

We are the movers of the world and the makers of the future. We get up every day, roll up our sleeves and build a better world together. At Ford, we’re all a part of something bigger than ourselves. Are you ready to change the way the world moves?

The Ford Motor Credit Company team helps put people behind the wheels of great Ford and Lincoln vehicles. By partnering with dealerships, we provide financing, personalized service and professional expertise to thousands of dealers and millions of customers in over one hundred countries around the world.

In this position...

Ford Credit is hiring a Cybersecurity Manager to lead second line-of-defense activities, ensuring a strong cybersecurity posture. The role involves driving global security initiatives to support modernization efforts, advising on security controls, monitoring compliance, collaborating on remediation, and improving IT risk management. We are looking for a candidate to help us improve our cybersecurity posture and reduce risk.

The Cybersecurity Manager is a critical role responsible for leading and coordinating second line-of-defense activities to ensure the organization's cybersecurity posture is robust and effective. This role involves driving global strategic security initiatives to support the Company modernization efforts (which will adjust depending on business needs); advising on security controls, monitoring compliance, collaborating on remediation efforts, and contributing to the improvement of the IT risk management process. The Cybersecurity Manager will work closely with business units, IT teams, and other stakeholders to mitigate risks and maintain a strong security environment.

You'll have...

Education: Bachelor's degree in computer science, Information Security, or a related field.

Skills:

Knowledge of security technologies, including firewalls, intrusion detection/prevention systems, SIEM, and vulnerability scanners. Knowledge of IT risk assessment methodologies and risk mitigation strategies. Strong understanding of application security principles and secure development practices. Excellent analytical and problem-solving skills. Strong communication and interpersonal skills, with the ability to effectively collaborate with diverse teams. Ability to explain technical concepts to non-technical audiences. Knowledge or experience working in a Financial Institution is a plus. Knowledge of regulatory requirements (e.g., GDPR).

Even better, you may have...

Relevant certifications such as CISSP, CISM, or equivalent are highly desirable.  Cloud security certifications are a plus.

You may not check every box, or your experience may look a little different from what we've outlined, but if you think you can bring value to Ford Motor Company, we encourage you to apply!

As an established global company, we offer the benefit of choice. You can choose what your Ford future will look like: will your story span the globe, or keep you close to home? Will your career be a deep dive into what you love, or a series of new teams and new skills? Will you be a leader, a changemaker, a technical expert, a culture builder or all of the above? No matter what you choose, we offer a work life that works for you, including:

• Immediate medical, dental, vision and prescription drug coverage

• Flexible family care days, paid parental leave, new parent ramp-up programs, subsidized back-up child care and more

• Family building benefits including adoption and surrogacy expense reimbursement, fertility treatments, and more

• Vehicle discount program for employees and family members and management leases

• Tuition assistance

• Established and active employee resource groups

• Paid time off for individual and team community service

• A generous schedule of paid holidays, including the week between Christmas and New Year’s Day

• Paid time off and the option to purchase additional vacation time.

For more information on salary and benefits, click here: Benefits

Visa sponsorship is not available for this position.

Candidates for positions with Ford Motor Company must be legally authorized to work in the United States. Verification of employment eligibility will be required at the time of hire.

We are an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, age, sex, national origin, sexual orientation, gender identity, disability status or protected veteran status. In the United States, if you need a reasonable accommodation for the online application process due to a disability, please call 1-888-336-0660.

Onsite work of up to three days per week may be required for candidates within commuting distance of a Ford hub location. #LI-Hybrid #LI-FordCredit #LI-MN1

What you'll do...

Second Line of Defense:

Act as a key contributor to the second line of defense, providing independent oversight and challenge to the first line's cybersecurity activities. Evaluate the design and operational effectiveness of security controls. across the Ford Credit organization. Complete an assessment of second line of defense controls and assist in creating the strategy to implement efficient regular testing and monitoring of controls.

Security Initiative: Security Gates

Lead security initiatives aimed at integrating security into the application development lifecycle. Design and implement processes to establish security gates and checkpoints in the development process. Promote secure coding practices and security awareness among development teams.

 Security Initiative: Global Operating Model Implementation:

Contribute to the development and implementation of a global operating model for the Ford Credit cyber team. Help define roles, responsibilities, and processes to ensure consistent and effective security operations across different regions. Support the standardization of security processes.

IT Risk Process Improvement:

Evaluate and improve the organization's IT risk management processes, methodologies, and tools. Collaborate with risk management teams to ensure IT risks are accurately identified, assessed, and mitigated. Contribute to the development of risk metrics and reporting to provide visibility into the organization's IT risk posture. Assist with the improvement plans for the GRC (Governance, Risk, Compliance) platform.

Cyber Issue Remediation:

Support the collaboration with business units, IT teams, and incident response teams to address and remediate identified cyber issues. Track remediation efforts and ensure timely resolution of security gaps. Provide guidance and support during security incidents and investigations.
Confirm your E-mail: Send Email