Career Area:
Technology, Digital and Data
Job Description:
Caterpillar’s Cybersecurity Team is seeking a Security Analyst to assume a highly technical role on a dynamic team. The Vulnerability Disclosure Team is an innovative and multi-functional team that works to protect Caterpillar’s intellectual property across a global enterprise environment. As a member of this team, you will help discover, assess, and address emerging security challenges facing the organization, as well as collect, analyze, and report security-related events and incidents.
Ideal candidates would be highly motivated and technically proficient, as well as capable of participating on a team to complete tasks, assignments, and projects in both individual and cooperative group-based contexts.
The candidate will be responsible for continuous vulnerability lifecycle management within Caterpillar, including collecting, reporting, and assessing the impact of vulnerability data from internal and external sources. The candidate will also serve as a liaison between Corporate Cybersecurity and business partners to better understand their operations, maintain global security processes, and build collaborative relationships. This role will collect data from security tools and systems, such as intrusion detection systems, firewalls, and incident management platforms, while enhancing metrics collection and reporting to improve security visibility.
The Vulnerability Security Analyst will keep up with industry trends as well as the vulnerability threat landscape and partner with other security and IT professionals to assess potential impact from vulnerabilities specific to Caterpillar’s environment.
What You Will Do:
Provide strategic/thought leadership on maturing and optimizing vulnerability management programs focused on web application protection Closely support and collaborate with other cybersecurity teams Ensure the vulnerability management capability is fully interoperable and integrated with existing vulnerability management capabilities Engage with stakeholders, to include IT professionals, management, and auditors to provide remediation assistance as appropriate, including developing reporting and guidance Obtain and maintain knowledge on existing security procedures and directives related to application security and vulnerability management Participate in occasional rotational shift work, including nights, weekends, and 24x7 monitoring coverage. Analyze security events to identify trends, anomalies, and potential threats; prepare clear reports for stakeholders. Collaborate with security engineering, architecture, and SOC teams to implement detection logic and improve threat visibility.
What You Have:
Requires a relevant degree or certification in a computer-related field, or 2–4 years of IT experience in security compliance, infrastructure, security analytics, or metrics-focused roles.
Experience with ServiceNow and ServiceNow integrations
Experience with policy exception risk management, balancing security risk against business requirements
Experience with security vulnerability remediation
Experience with enterprise security log collection and management
Experience in metrics collection, analytical, reporting and communication skills
Excellent verbal and written communication skills, with the ability to explain complex data to non-technical stakeholders.
Strong analytical and problem-solving skills
Understanding of current cyberattacks and evolving tactics, techniques, and procedures(TTP’s)
Understanding of the MITRE ATT&CK framework
Top Candidates will also have:
Knowledge of Caterpillar policies and procedures, and a general understanding of Caterpillar’s organization
Proficiency with data visualization tools, such as Tableau or Power BI.
Knowledge of scripting languages, such as Python or SQL, for data manipulation and analysis.
Experience working on a cybersecurity incident response team
Experience in IT security, network administration, operating system administration for Linux, Windows, or macOS, or a technical operations role. This includes experience with command-line tools, services, data manipulation, installation, and system operations.
Drive to learn new things about vulnerability management, exploits, hacker techniques, and overall security operations
Ability to work collaboratively in a complex, rapidly changing, and culturally diverse environment
Self-starter who enjoys significant challenges, change management, and being held accountable to produce quantifiable results
Must have a strong customer focus and ability to work effectively across matrix IT teams
Excellent human relations skills are required to develop a cooperative relationship with others inside and outside of Caterpillar IT.
Must be adaptable to work in a varied, fast paced, ever changing global environment
Help desk, break/fix, or desktop support experience.
Additional Info:
Summary Pay Range:
$81,370.00 - $122,060.00
Compensation and benefits offered may vary depending on multiple individualized factors, job level, market location, job-related knowledge, skills, individual performance and experience. Please note that salary is only one component of total compensation at Caterpillar.
Benefits:
Subject to plan eligibility, terms, and guidelines. This is a summary list of benefits.
Medical, dental, and vision benefits*
Paid time off plan (Vacation, Holidays, Volunteer, etc.)*
401(k) savings plans*
Health Savings Account (HSA)*
Flexible Spending Accounts (FSAs)*
Health Lifestyle Programs*
Employee Assistance Program*
Voluntary Benefits and Employee Discounts*
Career Development*
Incentive bonus*
Disability benefits
Life Insurance
Parental leave
Adoption benefits
Tuition Reimbursement
* These benefits also apply to part-time employees
This position requires working onsite five days a week.
Visa Sponsorship is not available for this position.
Posting Dates:
September 14, 2026 - September 22, 2026
Any offer of employment is conditioned upon the successful completion of a drug screen.