Principal Cyber Security Engineer .
Ally and Your Career
The Opportunity
This Principal Cyber Security Engineer role will be focused on cyber data analytics and automation. The individual will be responsible for developing and implementing data-driven security solutions to protect Ally's assets, data, brand, and consumers in a cloud-first, consumer-friendly operating model. This role will require a skilled cyber security professional with strong technical expertise in data engineering, analytics, and automation to partner with IT Architecture, IT Engineering, IT Operations, DevOps, and business leaders. The principal will be responsible for ensuring that cyber security data and reporting is available to make data-driven decisions and that Ally's people, technologies, and processes are adequately secured and monitored to meet cyber security regulations. Additionally, this role will be responsible for leveraging security automation and orchestration (SOAR) solutions to streamline security operations and incident response, working closely with security teams to enhance detection and response capabilities.
To read more about what our tech team does, be sure to visit our tech blog at ally.tech
The Work Itself
- Provide strategic direction and technical leadership for cybersecurity initiatives.
- Lead the design and implementation of security architectures and solutions.
- Develop and implement automation strategies to improve efficiency and effectiveness of security operations.
- Develop advanced Splunk queries, dashboards and visualizations to support security operations.
- Architect and Optimize Splunk platform for large-scale environments.
- Lead the implementation and optimization of SIEM solutions to enhance threat detection and response capabilities
- Develop and implement security automation and orchestration (SOAR) solutions to automate and streamline automate incident response.
- Evaluate and enhance SOAR capabilities.
- Develop and deploy ML models to identify anomalies and predict security threats.
- Integrate ML-driven insights into security infrastructure.
- Design, build, and maintain scalable data pipelines for security data collection, processing, and storage.
- Ensure data quality, integrity, and consistency across multiple sources.
- Optimize data pipelines for performance, reliability and scalability.
- Lead in depth analysis of complex security events and incidents.
- Provide expert guidance on incident response, threat hunting and remediation strategies
- Partner with security operations teams, threat intelligence groups, and incident responders to enhance detection and response capabilities.
- Analyze cyber event logs and alerts to identify high-risk activities and use that data to trigger operational risk mitigations.
- Conduct training sessions and workshops to upskill team members and stakeholders.
- Drive process improvements through automation.
- Mentor and guide junior engineers and other team members.
- Stay updated on the latest industry trends, technologies and best practices
The Skills You Bring
Required Qualifications:
- 6+ years of experience in cybersecurity, with a focus on Splunk, SIEM, SOAR, automation, ML, and data pipelines.
- 3+ years of experience with security automation and orchestration (SOAR) platforms
- 3+ years of experience in cyber data engineering and/or cyber data analytics
- Bachelor's degree in a STEM field or Computer Information Sciences, or 10+ years of relevant experience
- Proficient in scripting technologies such as Python, PowerShell, and APIs
- Hands-on experience in automation platforms, including writing playbooks and troubleshooting
- Familiarity with ETL platforms, relational databases, columnar databases, SIEM solutions, and data visualization tools like Power BI
- Strong debugging and problem-solving skills, with the ability to integrate multiple tools and APIs
- Excellent communication and interpersonal skills to work with various stakeholders
Preferred Qualifications:
- Experience with public cloud platforms (AWS, Azure, etc.)
- Expertise in cloud-native technologies and implementation patterns to drive innovation and efficiency
- Cyber security certifications (CISSP, CISM, CISA, etc.)
- Experience with Agile methodologies and collaborative work environments
- Familiar with enterprise change management
How We'll Have Your Back
Ally's compensation program offers market-competitive base pay and pay-for-performance incentives (bonuses) based on achieving personal and company goals. Our Total Rewards program includes industry-leading compensation and benefits plus additional incentives that are designed to meet your needs and those of your family so you can get the most out of your career and your life, including:
- Time Away: 11 paid holidays, 20 paid time off days, and 8 hours of volunteer time off, yearly (paid time off is prorated based on start date)
- Planning for the Future: plan for the near and long term with an industry-leading 401K retirement savings plan with matching and company contributions, student loan pay downs and 529 educational save up assistance programs, tuition reimbursement, employee stock purchase plan, and financial learning center and financial coach access.
- Supporting your Health & Well-being: flexible health and insurance options including medical, dental and vision, employee, spouse and child life insurance, short- and long-term disability, pre-tax Health Savings Account with employer contributions, Healthcare FSA, critical illness, accident & hospital indemnity insurance, and a total well-being program that helps you and your family stay on track physically, socially, emotionally, and financially.
- Building a Family: adoption, surrogacy and fertility assistance as well as paid parental and caregiver leave, Dependent Day Care FSA back-up child and adult/elder care days and childcare discounts.
- Work-Life Integration: other benefits including Mentally Fit Employee Assistance Program, subsidized and discounted Weight Watchers® program and other employee discount programs.
- Other compensations: depending on the role for which you are considered, you may be eligible for travel allowances, relocation assistance, a signing bonus and/or equity.
- To view more detailed information about Ally’s Total Rewards, please visit this link: https://www.ally.com/content/dam/pdf/corporate/ally-total-rewards-snapshot.pdf
Who We Are:
Ally Financial is a customer-centric, leading digital financial services company with passionate customer service and innovative financial solutions. We are relentlessly focused on "Doing it Right" and being a trusted financial-services provider to our consumer, commercial, and corporate customers. For more information, visit www.ally.com.
Ally is an equal opportunity employer committed to diversity and inclusion in the workplace. All qualified applicants will receive consideration for employment without regard to age, race, color, sex, religion, national origin, disability, sexual orientation, gender identity or expression, pregnancy status, marital status, military or veteran status, genetic disposition or any other reason protected by law.
We are committed to working with and providing reasonable accommodation to applicants with physical or mental disabilities. For accommodation requests, email us at work@ally.com. Ally will not discriminate against any qualified individual who is capable of performing the essential functions of the job with or without reasonable accommodation.