layiq
worthy; deserving; fitting; suitable.
A role, opportunity, or path that merits attention, time, and pursuit.
Loading LAYIQ…Job opportunity
General Motors
Warren, Michigan, United States of America; GM Global Technical Center - Michigan IT Innovation Center; Austin, Texas, United States of America
Source: General Motors careers · View original posting
From General Motors's posting. “We” and “our” refer to the employer.
Job Description
At General Motors, we are building secure software and connected experiences at scale. The Offensive Security function helps strengthen that mission by continuously validating defenses through real-world attack simulation, penetration testing, responsible disclosure, and clear feedback loops that help teams reduce risk before it becomes customer impact.
This team helps uncover exploitable weaknesses, verify how well controls are performing, and provide actionable insights that improve remediation and prevention. This role is ideal for a leader who can grow a high-performing team, turn strategy into execution, and raise the security bar across a complex engineering environment.
As Manager, Offensive Security, you will lead a distinct Cybersecurity function responsible for validating how well our products, platforms, and engineering controls stand up to real-world attacks. You will set direction for offensive security programs, translate enterprise priorities into team goals, and make operational decisions about talent, capacity, tooling, and delivery.
You will partner closely with engineering, product, infrastructure, and Cybersecurity leaders to prioritize risk, improve remediation outcomes, and strengthen preventative controls. You will help shape scalable testing approaches that balance speed, depth, and business impact. This is a high-impact leadership role for someone who can build talent, influence across organizations, and lead change through measurable outcomes.
Experience building or leading offensive security programs in large-scale software, cloud, or product engineering environments.
Familiarity with responsible disclosure, vulnerability intake, or bug bounty program operations.
Experience partnering with development teams to improve secure design, detection, and resilience based on offensive testing results.
Knowledge of security automation, findings workflows, and telemetry-driven reporting.
Relevant industry certifications such as OSCP, OSWE, GPEN, GXPN, CISSP, or comparable credentials.
Experience in highly regulated, safety-critical, or large enterprise environments.


GM does not provide immigration-related sponsorship for this role. Do not apply for this role if you will need GM immigration sponsorship now or in the future. This includes direct company sponsorship, entry of GM as the immigration employer of record on a government form, and any work authorization requiring a written submission or other immigration support from the company (e.g., H1-B, OPT, STEM OPT, CPT, TN, J-1, etc).

This role is categorized as hybrid.
This means the selected candidate is expected to report to a specific location at least 3 times a week {or other frequency dictated by their manager}.

This job may be eligible for relocation benefits.

 About GM
Our vision is a world with Zero Crashes, Zero Emissions and Zero Congestion and we embrace the responsibility to lead the change that will make our world better, safer and more equitable for all.
We believe we all must make a choice every day – individually and collectively – to drive meaningful change through our words, our deeds and our culture. Every day, we want every employee to feel they belong to one General Motors team.
LAYIQ is an independent job-discovery service. This listing does not imply a partnership with or endorsement by the employer. Review the original posting for current details and availability.
Employer posted: