Jobs and Careers
TO

Senior Manager, Cybersecurity Attack Surface & Vulnerability Management

Toyota North America
United Statesfull_timeVerifiedPosted 28 Apr 2025

About the role

Overview

Who we are

Collaborative. Respectful. A place to dream and do. These are just a few words that describe what life is like at Toyota. As one of the world’s most admired brands, Toyota is growing and leading the future of mobility through innovative, high-quality solutions designed to enhance lives and delight those we serve. We’re looking for talented team members who want to Dream. Do. Grow. with us.

To save time applying, Toyota does not offer sponsorship of job applicants for employment-based visas or any other work authorization for this position currently.

Toyota's Cybersecurity & Risk Management (CSRM) group objective is to become a global cybersecurity leader in the mobility space - with the talent, scale, and services to enable our mission of securely bringing mobility for all.

We hope you will join us in this time of transformation and be a part of defining the next-generation cybersecurity capabilities for one of the largest global companies in the world. #Cyber

Who We're Looking For

Toyota’s CSRM group is looking for team members who are passionate about technology and interested in joining a collaborative and highly motivated team as a Senior Manager, Cybersecurity Attack Surface & Vulnerability Management.

Reporting to the Deputy CISO, the primary responsibility of this role is to lead a dedicated team of cybersecurity professionals focused on managing our attack surface, and ensuring that vulnerabilities in our environment are quickly identified, triaged, tracked, and appropriately remediated. This role involves working with cross-functional, global stakeholders to drive remediation and systemic hygiene improvements, managing and developing your team and their service delivery, and ensuring that our coordinated disclosure / bug bounty practices uphold Toyota’s reputation as a partner to the information security community. 


What You’ll Be Doing

  • Maturing and advancing an attack surface / vulnerability management program and strategy that aligns with the evolving threat trends in the industry and organization. 

  • Managing and leading a team of cybersecurity professionals, fostering a collaborative and innovative work environment. 

  • Assessing, validating, and triaging vulnerabilities, working closely with asset owners to ensure timely remediation or approved exception tracking. 

  • Maintaining vulnerability scanning infrastructure and configurations as well as evaluating and recommending new products and solutions ensuring the most up-to-date and accurate vulnerability detection and assessment. 

  • Managing and overseeing the coordinated disclosure / bug bounty program and working closely with external security researchers and internal stakeholders to address reported vulnerabilities and to uphold Toyota’s reputation as a cybersecurity leader and a partner to the information security community. 

  • Tracking and following up on findings with asset owners to ensure that vulnerabilities are remediated or receive proper tracking and approved exceptions. 

  • Providing dashboards and regular reports to senior management on the status of the vulnerability management program, including progress on remediation efforts and any critical vulnerabilities requiring immediate attention. 


What You Bring

  • Strong leadership, communication, and organizational skills, with the ability to effectively manage and develop a team and collaborate with cross-functional stakeholders. 

  • 8+ years of experience in IT, Cybersecurity, Risk / Vulnerability Analysis or Management, or related fields, with at least 2 years in a leadership role. 

  • Strong knowledge of vulnerability management processes, tools, best practices, and vulnerability validation and triaging. 

  • Demonstrated experience implementing a centralized vulnerability management solution that integrates data from multiple scanning tools and supports unified tracking, remediation, and reporting. 

  • Bachelor’s degree in Computer Science or related discipline, or equivalent work experience 


Added Bonus If You Have

  • Experience with industry-standard enterprise vulnerability scanning offerings, such as Qualys, Tenable, or RiskIQ and Attack Surface Management platforms. 

  • Vulnerability Management experience within containerization platforms (Docker, Kubernetes, etc.) and major cloud environments (AWS, Azure, GCP, etc.) 

  • Familiarity with security frameworks and standards, such as NIST, ISO 27001, OWASP Top 10, or CIS Critical Security Controls. 

  • Master's degree in Computer Science or rela

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Toyota North America

View company profile →