Security Operations Center (SOC) Analyst II (L2)
Toyota North AmericaAbout the role
Overview
Who we are
Collaborative. Respectful. A place to dream and do. These are just a few words that describe what life is like at Toyota. As one of the world’s most admired brands, Toyota is growing and leading the future of mobility through innovative, high-quality solutions designed to enhance lives and delight those we serve. We’re looking for talented team members who want to Dream. Do. Grow. with us.
An important part of the Toyota family is Toyota Financial Services (TFS), the finance and insurance brand for Toyota and Lexus in North America. While TFS is a separate business entity, it is an essential part of this world-changing company- delivering on Toyota's vision to move people beyond what's possible. At TFS, you will help create best-in-class customer experience in an innovative, collaborative environment.
Security Operations Center (SOC) Analyst II
Plano, TX
Who we are
Collaborative. Respectful. A place to dream and do. These are just a few words that describe what life is like at Toyota. As one of the world’s most admired brands, Toyota is growing and leading the future of mobility through innovative, high-quality solutions designed to enhance lives and delight those we serve. We’re looking for diverse, talented team members who want to Dream. Do. Grow. with us.
An important part of the Toyota family is Toyota Financial Services (TFS), the finance and insurance brand for Toyota and Lexus in North America. While TFS is a separate business entity, it is an essential part of this world-changing company – delivering on Toyota’s vision to move people beyond what’s possible. At TFS, you will help create best-in-class customer experiences in an innovative, collaborative environment.
To save time applying, Toyota does not offer sponsorship of job applicants for employment-based visas or any other work authorization for this position at this time.
Who we’re looking for:
The Security Operations Center (SOC) Analyst II role will be responsible for helping a hybrid SOC with 24x7x365 coverage and responding to alerts, notifications, communications, and providing incident response activities. They will support daily SOC operations, including but not limited to: Alert analysis/triage/response, review and action on Threat Intel for IOCs and other operationally impactful information, and understanding of SOC operations requirements and policies. The SOC analysis tasks will be end-to-end, including the network, underlying servers, and infrastructure (physical and virtual) as well as the application. Candidates will be required to perform SOC triage and response analysis, uncovering attack vectors involving a variety of malware, data exposure, and phishing and social engineering methods.
This person will be a self-directing, organized, and effective communicator (verbal and written) who can transfer industry, business, and stakeholder requirements into scalable, cost efficient, and performance driven solutions.
What you’ll be doing
Monitor Security Alerts: Continuously monitor security alerts from various sources, including SIEM, IDS/IPS, firewalls, and endpoint protection tools.
Threat Analysis: Analyze and investigate potential security threats and vulnerabilities.
Documentation: Document incidents, actions taken, and outcomes in a clear and concise manner.
Collaboration: Work closely with other SOC team members and departments to ensure comprehensive security coverage.
What you bring
2+ years of progressive, broad based Information Security (IS) experience participating in projects and playing a key role toward successful security operations
Strong understanding of Cyber Threat TTPs, Threat Hunt, and the application of the MITRE Attack Framework
Strong experience supporting 24x7x365 SOC operations including alert and notification activities- analysis/triage/response, review and action on Threat Intel for IOCs and other operationally impactful information, initial review and triage of reported alerts and Incidents
Strong experience and understanding of event timeline analysis and correlation of events between log sources
Strong experience with an enterprise SIEM (i.e. Splunk, Exabeam, Chronicle, etc) or security analytics solution and understanding of security incident response processes
Strong experience ability to use, contribute, develop and follow Standard Operating Procedures (SOPs)
Extensive Experience with triage and resolution of SOC tasks, including but not limited to: vulnerability announcements, phishing
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s