Ford Motor Company logo

Cybersecurity Operations Manager, Ford Energy

Ford Motor Company

  • Dearborn, MI
  • 3 days ago

    Highlights

    Incident Response Leadership: Act as the primary escalation lead and incident commander during complex cybersecurity incidents - including those impacting customer-facing services and applications - leading cross-functional containment, eradication, root-cause analysis, and customer communication efforts. SOC Engineering & Detection Quality: Drive continuous optimization of SIEM/SOAR platforms, detection rules, threat hunting playbooks, and automated response workflows to decrease mean time to detect (MTTD) and mean time to respond (MTTR) across enterprise, product, and customer-facing systems.

    Numbers & Facts

    LocationDearborn, MI

    Description

    The Opportunity

    We are seeking a Cybersecurity Operations Manager to lead, operationalize, and modernize our global security monitoring and incident response capabilities. This role oversees a hybrid operational model comprising internal direct reports and a managed security service provider (MSSP). The scope spans Enterprise IT, Product Cybersecurity, customer-facing applications and connected platforms, and Manufacturing/Operational Technology (OT) environments, ensuring robust detection, defense, and response across our entire digital and physical footprint.

    About Ford Energy Ford Energy is a newly formed, wholly owned subsidiary of Ford Motor Company dedicated to accelerating US energy independence. Leveraging Ford's century of manufacturing excellence and world-class battery energy storage systems (BESS) technology, Ford Energy designs, manufactures, and services grid-scale and commercial DC battery energy storage systems (BESS). Ford Energy is uniquely positioned to capture the growing demand for reliable, US-built energy storage systems. We are not just building batteries; we are building the infrastructure for the next generation of the American grid.

    What you'll do...

    • Hybrid Team Leadership: Direct, mentor, and manage a high-performing security operations team while overseeing performance, SLAs, escalation pathways, and day-to-day operations of external MSSP partners.
    • Broad-Scope Security Operations: Lead 24/7 security monitoring, incident triage, and response capabilities covering Enterprise IT networks, Cloud platforms, Product/IoT telemetry, customer-facing portals and mobile/web applications, and Manufacturing/OT facilities.
    • Customer-Facing Application Security Monitoring: Own security monitoring, threat detection, and incident response for customer-facing applications, portals, and APIs - including authentication systems and customer data pathways.
    • Connected Platform Monitoring: Lead threat monitoring and security telemetry analysis for external-facing platforms and the connected infrastructure linking customer environments to Ford Energy's cloud and support systems.
    • SOC Engineering & Detection Quality: Drive continuous optimization of SIEM/SOAR platforms, detection rules, threat hunting playbooks, and automated response workflows to decrease mean time to detect (MTTD) and mean time to respond (MTTR) across enterprise, product, and customer-facing systems.
    • Incident Response Leadership: Act as the primary escalation lead and incident commander during complex cybersecurity incidents - including those impacting customer-facing services and applications - leading cross-functional containment, eradication, root-cause analysis, and customer communication efforts.
    • Manufacturing & OT Security: Collaborate with plant operations and industrial control system (ICS) engineers to ensure real-time visibility, anomaly detection, and incident handling across manufacturing plants.
    • Compliance & Regulatory Alignment: Support operational security logging, audit readiness, and incident response procedures aligned with applicable industry security frameworks and critical infrastructure requirements as needed.
    • Operational Excellence & Metrics: Develop, track, and present operational security metrics, threat landscapes, customer application security posture, and SOC effectiveness KPIs to executive leadership and key business stakeholders.
    • Availability: Serve as the senior operational contact and manage on-call escalation rotations for critical security incidents, including those affecting customer-facing platforms.

    What You'll Do...

    Key Responsibilities

    • Hybrid Team Leadership: Direct, mentor, and manage a high-performing security operations team while overseeing performance, SLAs, escalation pathways, and day-to-day operations of external MSSP partners.
    • Broad-Scope Security Operations: Lead 24/7 security monitoring, incident triage, and response capabilities covering Enterprise IT networks, Cloud platforms, Product/IoT telemetry, customer-facing portals and mobile/web applications, and Manufacturing/OT facilities.
    • Customer-Facing Application Security Monitoring: Own security monitoring, threat detection, and incident response for customer-facing applications, portals, and APIs - including authentication systems and customer data pathways.
    • Connected Platform Monitoring: Lead threat monitoring and security telemetry analysis for external-facing platforms and the connected infrastructure linking customer environments to Ford Energy's cloud and support systems.
    • SOC Engineering & Detection Quality: Drive continuous optimization of SIEM/SOAR platforms, detection rules, threat hunting playbooks, and automated response workflows to decrease mean time to detect (MTTD) and mean time to respond (MTTR) across enterprise, product, and customer-facing systems.
    • Incident Response Leadership: Act as the primary escalation lead and incident commander during complex cybersecurity incidents - including those impacting customer-facing services and applications - leading cross-functional containment, eradication, root-cause analysis, and customer communication efforts.
    • Manufacturing & OT Security: Collaborate with plant operations and industrial control system (ICS) engineers to ensure real-time visibility, anomaly detection, and incident handling across manufacturing plants.
    • Compliance & Regulatory Alignment: Support operational security logging, audit readiness, and incident response procedures aligned with applicable industry security frameworks and critical infrastructure requirements as needed.
    • Operational Excellence & Metrics: Develop, track, and present operational security metrics, threat landscapes, customer application security posture, and SOC effectiveness KPIs to executive leadership and key business stakeholders.
    • Availability: Serve as the senior operational contact and manage on-call escalation rotations for critical security incidents, including those affecting customer-facing platforms.

    Similar Jobs

    See more jobs