Security Operations Center (SOC) Lead - L3

TCC Toyota Motor Credit Corporation Company

Plano (TX)

On-site

USD 90,000 - 140,000

Full time

6 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Team Member Vehicle Purchase Discount
Team Member Lease Vehicle Program
Health care and wellness plans

Job summary

Toyota is seeking a SOC Analyst III to join its Security Operations Center in the United States. You will lead advanced threat detection, investigations, and incident response across endpoints, networks, clouds, and identities.

The role mentors junior analysts and drives improvements in detection and security processes. Ideal candidates have 5+ years in cybersecurity operations, strong MITRE ATT&CK knowledge, and experience with SIEM/EDR/XDR.

Qualifications

  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or equivalent experience.
  • 5+ years of experience in cybersecurity operations, incident response, threat hunting, or a related field.
  • Experience investigating advanced threats across endpoint, network, cloud, and identity technologies.
  • Strong understanding of attacker tactics, techniques, and procedures (TTPs) and frameworks such as MITRE ATT&CK.
  • Experience with SIEM, EDR/XDR, threat intelligence, and log analysis platforms.

Responsibilities

  • Threat Detection & Monitoring: Advanced monitoring and analysis of security events, alerts, and telemetry from multiple security platforms.
  • Incident Response & Investigation: Lead investigations of complex security incidents across endpoint, network, cloud, and identity environments.
  • Security Engineering & Optimization: Evaluate and tune security monitoring technologies to improve detection effectiveness and reduce false positives.
  • Leadership & Collaboration: Provide technical mentorship and guidance to Tier 1 and Tier 2 analysts; collaborate with IT and engineering teams.
  • Reporting & Continuous Improvement: Prepare incident summaries, metrics, and recommendations for leadership and stakeholders.

Skills

Incident Response
Threat Hunting
Detection Engineering
Security Monitoring
Malware Analysis
Security Automation
Risk Assessment
Technical Leadership
Process Improvement
Cross-Functional Collaboration

Education

Bachelor's degree in Cybersecurity/IT/CS

Tools

SIEM
EDR/XDR
Threat Intelligence
Log Analysis Platforms

Job description

Overview

Collaborative. Respectful. A place to dream and do. These are just a few words that describe what life is like at Toyota. As one of the world’s most admired brands, Toyota is growing and leading the future of mobility through innovative, high-quality solutions designed to enhance lives and delight those we serve. We’re looking for talented team members who want to Dream. Do. Grow. with us.

At TFS, you will help create best-in-class customer experience in an innovative, collaborative environment. Toyota does not offer support or sponsorship of job applicants for employment-based visas or any other work authorization for this role now or in the future. You must have the right to work in the United States and not require Toyota support or sponsorship for immigration-related employment (e.g., H-1B, O-1, E-3, H-1B1, TN, F-1 OPT, F-1 STEM OPT, F-1 CPT, ‘job flexibility benefits’ [also known as I-140 or Adjustment of Status portability], etc.) now or in the future. You should not apply for this role if you will require Toyota to assist with immigration support or sponsorship now or in the future.

Who we’re looking for

The SOC Analyst III serves as a senior member of the Security Operations Center, responsible for advanced threat detection, investigation, incident response, and security monitoring activities. This role provides technical leadership for complex cybersecurity incidents, develops and optimizes detection content, and collaborates with cross-functional teams to strengthen the organization's security posture. The SOC Analyst III also mentors junior analysts, drives continuous improvement initiatives, and contributes to the development of security operations processes and procedures.

What you’ll be doing
Threat Detection & Monitoring

Advanced monitoring and analysis of security events, alerts, and telemetry from multiple security platforms. Identify, investigate, and validate potential cybersecurity threats and suspicious activities. Perform threat hunting activities to proactively detect malicious behavior and emerging threats. Develop and maintain detection logic, use cases, correlation rules, and alerting content to improve security visibility.

Incident Response & Investigation

Lead investigations of complex security incidents across endpoint, network, cloud, and identity environments. Perform root cause analysis and determine the scope, impact, and severity of security events. Coordinate containment, eradication, and recovery efforts with internal and external stakeholders. Document incident findings, actions taken, and lessons learned.

Security Engineering & Optimization

Evaluate and tune security monitoring technologies to improve detection effectiveness and reduce false positives. Assist with onboarding and integration of new log sources, security tools, and data feeds. Support automation initiatives that enhance SOC efficiency and operational effectiveness. Contribute to the development and maintenance of SOC processes, playbooks, and operational standards.

Leadership & Collaboration

Provide technical mentorship and guidance to Tier 1 and Tier 2 analysts. Serve as an escalation point for complex investigations and security incidents. Collaborate with IT, infrastructure, cloud, engineering, and business teams to address security risks. Participate in security exercises, tabletop events, and post-incident reviews.

Reporting & Continuous Improvement

Prepare incident summaries, metrics, and operational reports for leadership and stakeholders. Analyze trends and recommend improvements to detection, response, and security operations capabilities. Stay current on emerging threats, attack techniques, and industry best practices.

Core Competencies
  • Incident Response
  • Threat Hunting
  • Detection Engineering
  • Security Monitoring
  • Malware Analysis
  • Security Automation
  • Risk Assessment
  • Technical Leadership
  • Process Improvement
  • Cross-Functional Collaboration
What you bring
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or equivalent experience.
  • 5+ years of experience in cybersecurity operations, incident response, threat hunting, or a related field.
  • Experience investigating advanced threats across endpoint, network, cloud, and identity technologies.
  • Strong understanding of attacker tactics, techniques, and procedures (TTPs) and frameworks such as MITRE ATT&CK.
  • Experience with SIEM, EDR/XDR, threat intelligence, and log analysis platforms.
  • Strong analytical, troubleshooting, and problem-solving skills.
  • Excellent written and verbal communication skills.
  • Industry certifications such as CISSP, GCIH, GCFA, GCIA, CySA+, or equivalent.
  • Added bonus if you have Experience with cloud security technologies and security monitoring in hybrid environments.
  • Experience developing detection content, threat-hunting methodologies, and automation workflows.
  • Familiarity with scripting or automation languages such as PowerShell, Python, or similar technologies.
  • Experience supporting regulatory, compliance, or security framework requirements.
What we’ll bring
  • A work environment built on teamwork, flexibility, and respect.
  • Professional growth and development programs to help advance your career, as well as tuition reimbursement.
  • Team Member Vehicle Purchase Discount.
  • Team Member Lease Vehicle Program (if applicable).
  • Comprehensive health care and wellness plans for your entire family.
  • Toyota 401(k) Savings Plan featuring a company match, as well as an annual retirement contribution from Toyota regardless of whether you contribute (if applicable).
  • Paid holidays and paid time off.
  • Referral services related to prenatal services, adoption, childcare, schools and more.
  • Tax Advantaged Accounts (Health Savings Account, Health Care FSA, Dependent Care FSA).
  • Relocation assistance (if applicable).
  • Belonging at Toyota.

Applicants for our positions are considered without regard to race, ethnicity, national origin, sex, sexual orientation, gender identity or expression, age, disability, religion, military or veteran status, or any other characteristics protected by law.

At Toyota, we don’t just have a vision, but a group of talented, dedicated people who work hard every day to turn that vision into reality.

Our mission is to build a future where everyone has the freedom to move. We believe that nothing is impossible. We have big dreams and persevere through any obstacles. We work together to create the future of mobility and make the world a better place.

Career Possibilities

Career Possibilities: Toyota is a place for people who dream big and are determined to make those dreams a reality. We encourage innovation and look for people who will challenge the status quo in order to make the world a better place. We thrive on teamwork and collaboration and know diverse backgrounds, experiences and perspectives are not only the right thing for our people, they are a business imperative. Together, we’re empowered to forge our own paths — to be agile, curious and embrace a growth mindset and immerse ourselves in situations to gain new perspectives and to inspire bold, innovative ways of thinking and working. Our success as a company is directly tied to our team members’ success, and our collective ability to give back to society through an unwavering commitment to delight our customers and make people’s lives better. If you want to be part of the next-generation of innovations that help keep the world moving, then join us. And let’s start our impossible, together.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Operations Center (SOC) Lead - L3
Security Operations Center (SOC) Lead - L3

Toyota Deutschland GmbH • Plano (TX)

On-site
USD 90,000 - 130,000
Vehicle purchase discount
Relocation assistance
Health care plans
+1
Cyber Threat Emulation Operator, Senior
Cyber Threat Emulation Operator, Senior

TCC Toyota Motor Credit Corporation Company • Plano (TX)

On-site
USD 140,000 - 180,000
Vehicle purchase discount
Lease vehicle program
Health care and wellness plans
+1
Threat and Exposure Analyst, Senior
Threat and Exposure Analyst, Senior

TCC Toyota Motor Credit Corporation Company • Plano (TX)

On-site
USD 120,000 - 150,000
Health care and wellness plans
Relocation assistance
Tuition reimbursement
Cyber Threat Emulation Operator, Senior
Cyber Threat Emulation Operator, Senior

Toyota North America • Plano (TX)

On-site
USD 140,000 - 210,000
Health care
Tuition reimbursement
Relocation assistance
+2
Business Information Security Officer (BISO), Senior
Business Information Security Officer (BISO), Senior

TCC Toyota Motor Credit Corporation Company • Plano (TX)

On-site
USD 140,000 - 190,000
Professional growth programs
Team Member Vehicle Purchase Discount
401(k) with company match
+3
Application Security Analyst
Application Security Analyst

JobCubby • Plano (TX), Northern (KY)

Hybrid
USD 110,000 - 160,000
Sr. Analyst, Infrastructure and InfoSec
Sr. Analyst, Infrastructure and InfoSec

TPR Toyota Credit de Puerto Rico Company • Puerto Rico

On-site
USD 90,000 - 120,000
Cyber Security Program Manager
Cyber Security Program Manager

Toyota Deutschland GmbH • Plano (TX)

On-site
USD 130,000 - 170,000
Vehicle Purchase Discount
401(k) Savings Plan with company match
Comprehensive health care and wellness
Analyst I - Supply Chain and Logistics
Analyst I - Supply Chain and Logistics

TMS Toyota Motor Sales, USA, Inc. Company • California (MO)

On-site
USD 73,000 - 119,000
Health care
401(k) match
Paid holidays
+2
Senior Analyst – Fire Protection & Emergency Management
Senior Analyst – Fire Protection & Emergency Management

TMN Toyota Motor North America Company • Plano (TX)

On-site
USD 85,000 - 125,000
Health care plans
Tuition reimbursement
Vehicle purchase/lease discounts
+2