Sr. Analyst, Infrastructure and InfoSec

TPR Toyota Credit de Puerto Rico Company

Puerto Rico

On-site

USD 90,000 - 120,000

Full time

5 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

TPR Toyota Credit de Puerto Rico Company in Puerto Rico is seeking an Information Security Governance specialist to oversee security programs, access controls, and incident response. The role focuses on regulatory alignment, risk management, and continuous improvement of security controls.

The candidate will collaborate with ISO and regional representatives, manage training, and report security metrics to executive stakeholders.

Qualifications

  • Four-Year College Degree in IT, CS, CE or related field.
  • 2-5 years of relevant progressive work experience in information security.
  • CCZT Zero Trust Certification or equivalent is preferred.

Responsibilities

  • Lead InfoSec governance and reporting activities.
  • Manage access administration and attestation processes.
  • Oversee vulnerability and endpoint management initiatives.
  • Support incident response and security operations.

Skills

InfoSec governance
Vulnerability management
Threat detection
Communication skills
Spanish and English

Education

Four-Year College Degree

Tools

CompTIA A+ Certification
MS Office 365

Job description

Overview Who we are Collaborative. Respectful. A place to dream and do. These are just a few words that describe what life is like at Toyota. As one of the world’s most admired brands, Toyota is growing and leading the future of mobility through innovative, high-quality solutions designed to enhance lives and delight those we serve. We’re looking for talented team members who want to Dream. Do. Grow. with us.

Primary Job Accountabilities
Information / Cyber Security (InfoSec) Security Governance
  • Attain a strong understanding of business processes, policies, procedures, governance practices and regulatory requirements.
  • Ensure all processes and technologies are compliant with TFS Information Security standards (GISG, TMCC, etc.).
  • Complete monthly report of Key Risk Indicators for IT Security Department including vulnerabilities scores, endpoint compliance, material incidents, etc.
  • Provide InfoSec status to ERMC committee when needed.
  • Identify non-compliance to security standards or controls and submit exceptions for approval.
  • Provide status and metrics of information security activities and review with Information Security Officer (ISO) and AOR GISG regional representative for TCPR.
  • Attend AOR InfoSec-GISG/GISS meetings to learn best practices and updated activities for InfoSec.
  • Communicate updates pertaining to TCPR.
Access Administration
  • Ensure access to information assets is authorized by management and asset owners.
  • Ensure that user access is monitored and regularly reviewed (attestation).
  • Ensure new hires are provided with equipment and access in a timely manner.
  • Ensure the access for terminated users are removed in a timely matter.
Security Awareness
  • Manage and conduct all required security training.
  • Ensure that all team members and new hires complete the required security awareness training.
  • Report to IT Manager the list of team members who are not in compliance with training or fail phishing tests.
  • Comply with all continued education requirements, including professional courses, certifications, seminars, trainings, etc., to support the business need.
Information Asset Management
  • Ensure security requirements are addressed throughout the lifecycle of all TCPR assets.
  • Ensure inventories of information assets; including on-premises/cloud network, servers/ workstations, operating systems, applications, and mobile computers and devices are securely configured and issued.
  • Ensure with TMCC that all network devices, servers, workstations, mobile devices, and all other endpoints are protected and monitored for malicious activities.
Vulnerability and Endpoint Management
  • Identify and track system and application vulnerabilities.
  • Perform research and analysis of complex vulnerability incidents until resolved to ensure compliance metrics are being met.
  • This includes cross collaboration to obtain root cause, recommend and determine best fix and apply patch.
  • Work with IT and other resources on vulnerability remediation plans including dates for remediation and responsibilities.
  • Monitor status and progress of remediation and report to IT Manager.
  • Provide TCPR’s ISO with periodic status updates on remedial efforts.
  • Monitor endpoint protection compliance to ensure metric is met weekly for monthly reporting.
  • If issues are found must review, research, and analyze to resolve.
Security Operations and Infrastructure
  • Oversee technological upgrades, tasks, improvements, and major changes to the information security environment.
  • Support the security infrastructure and technologies established for TCPR.
  • Conduct logging of network and system activities (users, local applications, access to physical assets, etc.).
  • Monitor logs and other sources of information (users, applications, networks, systems, access to physical assets, etc.).
  • Analyze, assess, and address suspected malicious activities and elevate appropriately.
Incident Response and Management
  • Member of the Security Incident Response Team (SIRT) as a technical SME.
  • Assist the ISO with security incidents (detection, analysis, response, and recovery).
  • With the ISO, perform tests, exercises, and drills of all response plans.
  • With the ISO, perform problem management, root cause analysis, and postmortem reviews following the occurrence of incidents.
  • With the ISO, conduct forensic investigations by working with law enforcement and other regulatory bodies during and following an incident.
Infrastructure and Network Support
  • Provide direct technical support to onsite infrastructure managed by TMCC.
  • Implement infrastructure upgrades led by TMCC.
  • Prior, complete analysis ensuring operations will not be impacted by planning and coordinating efforts proactively.
  • Complete data room maintenance.
  • Prior, must plan and communicate shut down of equipment without interrupting daily operations.
  • This may include working outside of scheduled hours or days.
  • Answer all requests received from Headquarters on potential errors or problems detected in network and adheres to necessary prevention guidelines applying expert knowledge and analytical work to resolve.
  • Coordinate new technology and facilities implementations and integrations that might include yearlong projects, demonstrating expertise and proficiency.
  • Provide ideas and solutions on the subject matter.
Information Technology Support
  • Manage local and mainland vendors for implementation support.
  • Confirm that expenses incurred for computers, servers, network, and any other technology equipment is aligned to budget and that items purchased are valid.
Education Required
  • Four-Year College Degree (BA or BS): Information Technology, Computer Science, Computer Engineering or related areas
Experience Required
  • 2-5 years of relevant / progressive work experience (in similar field and/or industry)
Preferred
  • 5-10 years of relevant / progressive work experience (in similar field and/or industry)
Licenses, Certifications & Specialized Skills (if applicable)
  • Excellent interpersonal and customer service skills
  • Experience with computer network penetration testing and techniques
  • Exceptional teamwork and communication skills to help other technical support workers / multifunctional teams
  • Knowledge and experience with security technologies and methodologies
  • CompTIA A+ Certification
  • Expertise in supporting MS products. For example: operating systems and 365
  • Ability to identify and mitigate network vulnerabilities
  • Strong verbal and written communication skills – Spanish and English
  • Ability to learn new technologies and implement them
  • Knowledge of firewalls, antivirus, and intrusion detection system concepts
  • SQL knowledge for building basic queries and tables
  • CCZT Zero Trust Certification
Additional Comments, Including Unique Circumstances
  • Work schedule: Monday-Friday from 8:00 am to 5:00 pm. However, in some instances working overtime, night shifts, Saturdays and/or during Holidays may be required to support Department projects.
  • This position is based in San Juan, Puerto Rico and is not eligible for relocation assistance
Belonging at Toyota

Our success begins and ends with our people. We embrace all perspectives and value unique human experiences. Respect for all is our North Star.

Applicants for our positions are considered without regard to race, ethnicity, national origin, sex, sexual orientation, gender identity or expression, age, disability, religion, military or veteran status, or any other characteristics protected by law.

Have a question, need assistance with your application or do you require any special accommodations? Please send an email to tcpr_human_resources@toyota.com.

At Toyota, we don’t just have a vision, but a group of talented, dedicated people who work hard every day to turn that vision into reality. Our mission is to build a future where everyone has the freedom to move. We believe that nothing is impossible. We have big dreams and persevere through any obstacles. We work together to create the future of mobility and make the world a better place.

Career Possibilities

Toyota is a place for people who dream big and are determined to make those dreams a reality. We encourage innovation and look for people who will challenge the status quo in order to make the world a better place. We thrive on teamwork and collaboration and know diverse backgrounds, experiences and perspectives are not only the right thing for our people, they are a business imperative. Together, we’re empowered to forge our own paths — to be agile, curious and embrace a growth mindset and immerse ourselves in situations to gain new perspectives and to inspire bold, innovative ways of thinking and working. Our success as a company is directly tied to our team members’ success, and our collective ability to give back to society through an unwavering commitment to delight our customers and make people’s lives better. If you want to be part of the next-generation of innovations that help keep the world moving, then join us. And let’s start our impossible, together.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr. Analyst, Infrastructure and InfoSec
Sr. Analyst, Infrastructure and InfoSec

Toyota North America • San Juan (PR)

On-site
USD 70,000 - 100,000
Security Operations Center (SOC) Lead - L3
Security Operations Center (SOC) Lead - L3

TCC Toyota Motor Credit Corporation Company • Plano (TX)

On-site
USD 90,000 - 140,000
Team Member Vehicle Purchase Discount
Team Member Lease Vehicle Program
Health care and wellness plans
Threat and Exposure Analyst, Senior
Threat and Exposure Analyst, Senior

TCC Toyota Motor Credit Corporation Company • Plano (TX)

On-site
USD 120,000 - 150,000
Health care and wellness plans
Relocation assistance
Tuition reimbursement
Business Information Security Officer (BISO), Senior
Business Information Security Officer (BISO), Senior

TCC Toyota Motor Credit Corporation Company • Plano (TX)

On-site
USD 140,000 - 190,000
Professional growth programs
Team Member Vehicle Purchase Discount
401(k) with company match
+3
Domain Risk Lead - Banking & Commercial Lending
Domain Risk Lead - Banking & Commercial Lending

TCC Toyota Motor Credit Corporation Company • Plano (TX)

On-site
USD 140,000 - 190,000
Sr. Analyst, Infrastructure and InfoSec
Sr. Analyst, Infrastructure and InfoSec

Toyota Deutschland GmbH • San Juan (PR)

On-site
USD 90,000 - 130,000
Cyber Threat Emulation Operator, Senior
Cyber Threat Emulation Operator, Senior

TCC Toyota Motor Credit Corporation Company • Plano (TX)

On-site
USD 140,000 - 180,000
Vehicle purchase discount
Lease vehicle program
Health care and wellness plans
+1
Cyber Security Program Manager
Cyber Security Program Manager

Toyota Deutschland GmbH • Plano (TX)

On-site
USD 130,000 - 170,000
Vehicle Purchase Discount
401(k) Savings Plan with company match
Comprehensive health care and wellness
Administrator R&D
Administrator R&D

TNA Toyota Motor Engineering & Manufacturing North America, Inc. Company • South Carolina

On-site
USD 65,000 - 95,000
Team Member Vehicle Purchase Discount
401(k) Savings Plan with company match
Comprehensive health care and wellness
+2
Senior Analyst – Fire Protection & Emergency Management
Senior Analyst – Fire Protection & Emergency Management

TMN Toyota Motor North America Company • Plano (TX)

On-site
USD 85,000 - 125,000
Health care plans
Tuition reimbursement
Vehicle purchase/lease discounts
+2