Senior Detection & Response Analyst

Toyota Tsusho Systems Corporation

Plano (TX)

On-site

USD 105,000 - 145,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Toyota Tsusho Systems US, Inc. is seeking a Senior Detection and Response Analyst to provide ongoing 24x7 monitoring and incident response support within the Regional Security Operations program.

The role includes leading the ID team on shift when needed and guiding analysts to detect, triage, and remediate threats. You will work with advanced security tools (e.g., Splunk, Sentinel) and collaborate with IR and security teams to strengthen monitoring, threat intelligence, and reporting across

Qualifications

  • 4+ years of experience in Security Operations monitoring.
  • Experience with common security tools and SIEM platforms.
  • Knowledge of threat intelligence and incident response methodologies.

Responsibilities

  • Act as escalation point for security incidents and provide expert feedback.
  • Lead shift as needed and guide ID team members.
  • Triage incidents using threat intelligence, IDS, firewalls, and other protections.
  • Maintain understanding of threat landscape and provide 24x7 RSOC support.

Skills

Security Operations
Threat hunting
Incident Response
Network monitoring
Cybersecurity knowledge
Communication
Analytical thinking

Education

Bachelor's degree in Cybersecurity/IT/CS

Tools

Sentinel
Splunk
ATP
Symantec Endpoint
TrendMicro
McAfee Web Gateway
Checkpoint Firewalls
Bluecoat
Sourcefire
Active Directory
Tines

Job description

About TTS-US:

Founded in 2011, Toyota Tsusho Systems US, Inc. (TTS-US) is a Toyota group company, that develops IT solutions wherever global businesses operate. Transforming into a technology and mobility company, TTS-US with its 8 TTS affiliates worldwide is establishing a secure and resilient Toyota global value chain. The creative capacity to forge such limitless business opportunities is one of the strengths of Toyota Tsusho Systems.

Summary:

The Senior Detection and Response Analyst role will provide ongoing support to the Regional Security Operations program. In this role the Senior Detection and Response Analyst is expected to maintain effective 24x7 monitoring and detection services to internal and external clients.

Essential Functions:
  • Act as the point of escalation for all security incidents; provide expert level feedback regarding current monitoring and ways to improve it.
  • Assume the role of shift lead as needed, and fulfil this responsibility through leadership and guidance of ID team members, proactively prioritizing, identifying, analyzing and remediating threats
  • Ensure that the ID Analysts’ daily work activity is completed to the required quality levels and timelines, by verifying that their responsibilities are executed, in accordance with the expectations set by the ID Team Lead
  • Triage security incidents and perform in-depth analysis using Cyber Threat Intelligence, intrusion detection systems, firewalls and other boundary protection devices
  • Maintain an understanding of the overall threat landscape (cyber, malware, botnets, phishing, DDoS, physical)
  • Provide 24x7 coverage to support the RSOC services; Participate in an on‑call rotation
  • Support Agentic SOC development through providing expert level feedback, tuning, and feature requests for our engineering team to support accurate machine speed response
  • Train and mentor team members within the Incident Detection Team
  • Improve the effectiveness and efficiency of day‑to‑day operations
  • Assist with service requests from customers and internal teams
  • Assist with containment and remediation of threats during incidents. Use an internal ticketing system to track investigated incidents and capture relevant details
  • Support Incident Response efforts as needed, including providing counsel, working with the IR team, as well as other involved stakeholders within the organization and customers to drive forward remediation activities
  • Conduct threat hunting activities based on internal and external threat intelligence
  • Provide expert level feedback regarding current monitoring and ways to improve it
  • Create and update daily and monthly reports
  • Contribute to the creation of documentation to standardize processes and procedures, including playbooks to improve internal processes and procedures
  • Use investigation findings to identify gaps and recommend security posture improvements
  • Identify, recommend, coordinate, and deliver timely knowledge to support teams
Competencies:
  • Excellent critical thinking, logic, and solution orientation and to learn and adapt quickly
  • Ability to learn and operate in a dynamic environment
  • Detail-oriented and analytical skills; problem‑solving skills
  • Strong verbal and written communication skills
  • 4+ years of experience in Security Operations monitoring
  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field (preferred)
  • Experience with Security Operations processes, procedures, and services
  • Experience working with cyber security tools and software such as Sentinel, Splunk, ATP, Symantec Endpoint, TrendMicro Antivirus, McAfee Web Gateway, Checkpoint Firewalls, Bluecoat, Sourcefire, Active Directory, or relevant cyber security assets
  • Advanced knowledge of network monitoring and network exploitation techniques
  • Strong technical background in security, network, infrastructure, cloud, applications
  • Knowledge of risk assessment tools, technologies and methods
  • Experience with common attack vectors, including advanced adversaries (nation state/financial motivation)
  • Knowledge around common web application attacks including SQL injection, cross‑site scripting, invalid inputs, and forceful browsing
  • Knowledge of how common protocols and applications work at the network level, including DNS, HTTP, and SMB
  • Experience working with cyber security tools and software such as Splunk, ATP, Symantec Endpoint, TrendMicro Antivirus, McAfee Web Gateway, Checkpoint Firewalls, Bluecoat, Sourcefire, Active Directory, or relevant cyber security assets
  • Technical certifications such as GCIA, GCFA, GCIH or CASP is a plus
  • Tines (or other automation) experience is highly valued
  • Proficient with Microsoft Office & documentation skills (Word, Excel, PowerPoint)
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Detection & Response Analyst
Senior Detection & Response Analyst

Toyota Tsusho Systems • Plano (TX)

On-site
USD 110,000 - 160,000
Senior Detection & Response Analyst
Senior Detection & Response Analyst

Toyota Tsusho Systems US, Inc. • Plano (TX)

On-site
USD 120,000 - 180,000
Senior Detection & Response Analyst
Senior Detection & Response Analyst

Socket.dev • United States

Remote
USD 90,000 - 150,000
Senior Detection & Response Analyst
Senior Detection & Response Analyst

Remote Jobs • United States

On-site
USD 110,000 - 190,000
Senior Threat Detection & Response Lead
Senior Threat Detection & Response Lead

Toyota Tsusho Systems • Plano (TX)

On-site
USD 110,000 - 160,000
Senior Threat Detection & Response Lead
Senior Threat Detection & Response Lead

Toyota Tsusho Systems Corporation • Plano (TX)

On-site
USD 105,000 - 145,000
Senior Detection & Response Lead (24/7 RSOC)
Senior Detection & Response Lead (24/7 RSOC)

Socket.dev • United States

Remote
USD 90,000 - 150,000
Senior Detection & Response Lead, 24/7 Security Operations
Senior Detection & Response Lead, 24/7 Security Operations

Toyota Tsusho Systems US, Inc. • Plano (TX)

On-site
USD 120,000 - 180,000
Sr. Automation & Cybersecurity Engineer
Sr. Automation & Cybersecurity Engineer

Toyota Tsusho Systems US, Inc. • Plano (TX)

On-site
USD 120,000 - 180,000
Assistant Manager - Security Engineering Project Delivery
Assistant Manager - Security Engineering Project Delivery

Toyota Tsusho Systems • Plano (TX)

On-site
USD 85,000 - 115,000