Toyota

Security Operations Center (SOC) Lead - L3

Toyota$110K — $130K *
Plano, TX 75025In-Person
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Cybersecurity, IT, Computer Science, or equivalent.
  • 5+ years in cybersecurity operations, incident response, or threat hunting.
  • Experience with advanced threats on endpoint, network, cloud, and identity systems.
  • Strong understanding of attacker TTPs and MITRE ATT&CK framework.
  • Proficiency in SIEM, EDR/XDR, and threat intelligence platforms.
  • Excellent problem-solving and analytical skills.
  • Outstanding written and verbal communication abilities.

Responsibilities

  • Lead advanced monitoring of security events and alerts from various platforms.
  • Investigate and validate potential cybersecurity threats and suspicious activities.
  • Conduct threat hunting to proactively identify malicious behavior.
  • Develop and optimize detection content and alerting mechanisms.
  • Manage investigations of complex security incidents across environments.
  • Document incident findings, actions taken, and lessons learned.
  • Collaborate with internal teams to strengthen security posture.

Benefits

  • Teamwork-focused work environment with flexibility and respect.
  • Professional development and tuition reimbursement programs.
  • Comprehensive health care and wellness plans for families.
  • 401(k) Savings Plan with company match and annual contribution.
  • Paid holidays and generous paid time off.
  • Referral services for childcare, schools, and other needs.
Full Job Description
Overview

Who we're looking for

The SOC Analyst III serves as a senior member of the Security Operations Center, responsible for advanced threat detection, investigation, incident response, and security monitoring activities. This role provides technical leadership for complex cybersecurity incidents, develops and optimizes detection content, and collaborates with cross-functional teams to strengthen the organization's security posture. The SOC Analyst III also mentors junior analysts, drives continuous improvement initiatives, and contributes to the development of security operations processes and procedures.

What you'll be doing

Threat Detection & Monitoring
  • Lead advanced monitoring and analysis of security events, alerts, and telemetry from multiple security platforms.
  • Identify, investigate, and validate potential cybersecurity threats and suspicious activities.
  • Perform threat hunting activities to proactively detect malicious behavior and emerging threats.
  • Develop and maintain detection logic, use cases, correlation rules, and alerting content to improve security visibility.


Incident Response & Investigation
  • Lead investigations of complex security incidents across endpoint, network, cloud, and identity environments.
  • Perform root cause analysis and determine the scope, impact, and severity of security events.
  • Coordinate containment, eradication, and recovery efforts with internal and external stakeholders.
  • Document incident findings, actions taken, and lessons learned.


Security Engineering & Optimization
  • Evaluate and tune security monitoring technologies to improve detection effectiveness and reduce false positives.
  • Assist with onboarding and integration of new log sources, security tools, and data feeds.
  • Support automation initiatives that enhance SOC efficiency and operational effectiveness.
  • Contribute to the development and maintenance of SOC processes, playbooks, and operational standards.


Leadership & Collaboration
  • Provide technical mentorship and guidance to Tier 1 and Tier 2 analysts.
  • Serve as an escalation point for complex investigations and security incidents.
  • Collaborate with IT, infrastructure, cloud, engineering, and business teams to address security risks.
  • Participate in security exercises, tabletop events, and post-incident reviews.


Reporting & Continuous Improvement
  • Prepare incident summaries, metrics, and operational reports for leadership and stakeholders.
  • Analyze trends and recommend improvements to detection, response, and security operations capabilities.
  • Stay current on emerging threats, attack techniques, and industry best practices.


Core Competencies
  • Incident Response
  • Threat Hunting
  • Detection Engineering
  • Security Monitoring
  • Malware Analysis
  • Security Automation
  • Risk Assessment
  • Technical Leadership
  • Process Improvement
  • Cross-Functional Collaboration


What you bring
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or equivalent experience.
  • 5+ years of experience in cybersecurity operations, incident response, threat hunting, or a related field.
  • Experience investigating advanced threats across endpoint, network, cloud, and identity technologies.
  • Strong understanding of attacker tactics, techniques, and procedures (TTPs) and frameworks such as MITRE ATT&CK.
  • Experience with SIEM, EDR/XDR, threat intelligence, and log analysis platforms.
  • Strong analytical, troubleshooting, and problem-solving skills.
  • Excellent written and verbal communication skills
  • Industry certifications such as CISSP, GCIH, GCFA, GCIA, CySA+, or equivalent.


Added bonus if you have
  • Experience with cloud security technologies and security monitoring in hybrid environments.
  • Experience developing detection content, threat-hunting methodologies, and automation workflows.
  • Familiarity with scripting or automation languages such as PowerShell, Python, or similar technologies.
  • Experience supporting regulatory, compliance, or security framework requirements.


What we'll bring

During your interview process, our team can fill you in on all the details of our industry-leading benefits and career development opportunities. A few highlights include:
  • A work environment built on teamwork, flexibility, and respect
  • Professional growth and development programs to help advance your career, as well as tuition reimbursement
  • Team Member Vehicle Purchase Discount
  • Toyota Team Member Lease Vehicle Program (if applicable)
  • Comprehensive health care and wellness plans for your entire family
  • Toyota 401(k) Savings Plan featuring a company match, as well as an annual retirement contribution from Toyota regardless of whether you contribute (if applicable)
  • Paid holidays and paid time off
  • Referral services related to prenatal services, adoption, childcare, schools and more
  • Tax Advantaged Accounts (Health Savings Account, Health Care FSA, Dependent Care FSA)
  • Relocation assistance (if applicable)


About Toyota

Toyota Motor Corporation is a Japanese multinational automotive manufacturer headquartered in Toyota City, Aichi, Japan. The company was founded in 1937 by Kiichiro Toyoda and has since grown to become the world's largest automotive manufacturer. Toyota Motor Corporation produces a wide range of vehicles including cars, trucks, and buses. The company is committed to sustainability and has set a goal of achieving zero carbon emissions by 2050. Toyota Motor Corporation has operations in over 170 countries and regions around the world.
Learn more about Toyota
Size
372,817 employees
Market Cap
$225.1 billion
Industry
Net Income
$1,531.2 billion
Founded
1937
5 Year Trend
+2.6%
Revenue
$26,625.1 billion
NASDAQ

Similar Jobs

More Jobs at Toyota

  • Toyota
    Manager - Safety
    $100K — $120K *
    Plano, TX 75025 (Collin County)
    Manufacturing & Automotive
    In-Person
  • Toyota
    Senior Software Engineer - Frontend
    $120K — $140K *
    Plano, TX 75025 (Collin County)
    Information Technology
    In-Person
  • Toyota
    Body shop Estimator
    $60K — $120K *
    Hemet, CA 92544 (Riverside County)
    Manufacturing & Automotive
    In-Person
  • Toyota
    Lead, DevOps Engineer
    $125K — $150K *
    Plano, TX 75025 (Collin County)
    Information Technology
    In-Person
  • Toyota
    Product Owner
    $108K — $130K *
    Plano, TX 75025 (Collin County)
    Finance & Insurance
    In-Person

More Information Technology Jobs

Find similar Security Operations Center (SOC) Lead - L3 jobs: