Toyota

Threat and Exposure Analyst, Senior

Toyota$108K — $130K *
Plano, TX 75025In-Person
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 7+ years of experience in Information Security with expertise in threat and vulnerability management.
  • Strong understanding of cybersecurity frameworks such as NIST, ISO 27001, and CIS Controls.
  • Proficiency in vulnerability management tools like Qualys, Tenable, and Rapid7.
  • Certifications such as CISSP, CISM, or CRISC are desirable.
  • Experience integrating security tools and automating systems.
  • Excellent analytical and problem-solving abilities, able to assess complex security issues.
  • Strong communication and leadership skills to collaborate with cross-functional teams.

Responsibilities

  • Manage vulnerability management processes including scanning and remediation tracking.
  • Prioritize risks based on business impact and threat intelligence.
  • Collaborate with IT and business units for timely vulnerability resolution.
  • Establish security governance frameworks and reporting mechanisms.
  • Develop metrics and dashboards to communicate risk posture to stakeholders.
  • Stay updated on emerging threats and best practices in the industry.
  • Automate data collection and reporting through scripting languages and APIs.

Benefits

  • Team-oriented work environment with flexibility and respect.
  • Professional growth programs and tuition reimbursement opportunities.
  • Employee vehicle purchase discount and lease vehicle program.
  • Comprehensive healthcare and wellness plans for employees and families.
  • 401(k) savings plan with company match and annual contributions.
  • Paid holidays and time off, along with relocation assistance if applicable.
  • Referral services for prenatal, childcare, and educational resources.
Full Job Description
Overview

Toyota Financial Services (TFS) Technology team is looking for a highly motivated person to fill a role as a Senior Threat and Exposure Management Analyst, experienced in the integration, automation and continuous improvement of Threat Exposure Management systems and processes. Candidate would leverage their expertise in the areas of vulnerability management, secure configuration management, risk prioritization, web application scanning, Cloud and API security to help improve and continuously evolve the program. This person will be a self-directing, organized, and effective communicator (verbal and written) who can transfer industry, business, and stakeholder requirements into scalable, cost efficient, and performance driven solutions. This role requires strong technical expertise in cybersecurity, excellent leadership skills, and the ability to collaborate effectively with cross-functional teams.

What you'll be doing
  • Will be responsible for vulnerability management processes including scanning, assessment, and remediation tracking.
  • Prioritize risks based on business impact and threat intelligence to guide remediation efforts.
  • Collaborate with IT and business units to ensure timely resolution of identified vulnerabilities.
  • Establish and maintain security governance frameworks and reporting mechanisms.
  • Assist in the development of metrics and dashboards to communicate risk posture to stakeholders.
  • Stay current with emerging threats, vulnerabilities, and industry best practices.
  • Proposing and developing meaningful reporting to highlight key areas of risk, illustrate risk reduction, over time, and to provide actionable information for customers/stakeholders
  • Leveraging scripting languages and API's to facilitate automation, data collection and reporting
  • Creating, maintaining, and driving domain-level standardized solution testing, evaluation, and operational procedures
  • Creating and reviewing domain documentation to meet and exceed internal and regulatory requirements and ensure consistency across all security engineering teams
  • Support incident response activities by providing context on vulnerabilities and exposures.

What you bring
  • Extensive experience in threat and vulnerability management, risk assessment, secure configuration management and multi-discipline security principles.
  • Strong understanding of cybersecurity frameworks such as NIST, ISO 27001, and CIS Controls.
  • Proficiency with vulnerability management tools and platforms (e.g., Qualys, Tenable, Rapid7).
  • Certifications such as CISSP, CISM, CRISC, or similar are highly desirable. 7+ years of progressive, broad-based Information Security (IS) experience participating in projects and playing a key role toward successful security operations
  • Experience with the integration of security tools, disparate data types and systems automation
  • Excellent analytical and problem-solving skills, with the ability to assess complex security issues and recommend effective solutions.
  • Strong leadership and communication skills, with the ability to collaborate effectively with cross-functional teams and articulate technical concepts to non-technical stakeholders.
  • Experience with cloud security and enterprise risk management is a plus.
  • Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent years of experience in the role

Added bonus if you have
  • Experience with developing and implementing enterprise security policies.
  • Risk management experience in a regulated environment.
  • Knowledge of cybersecurity regulations and compliance requirements.
  • Experience with threat modeling and attack surface management.
  • Security incident response and coordination experience.
  • Bachelor's degree in Cybersecurity, Information Technology, or a related field; advanced degree preferred.


What we'll bring
During your interview process, our team can fill you in on all the details of our industry-leading benefits and career development opportunities.

A few highlights include:
  • A work environment built on teamwork, flexibility, and respect
  • Professional growth and development programs to help advance your career, as well as tuition reimbursement
  • Team Member Vehicle Purchase Discount
  • Toyota Team Member Lease Vehicle Program (if applicable)
  • Comprehensive health care and wellness plans for your entire family
  • Toyota 401(k) Savings Plan featuring a company match, as well as an annual retirement contribution from Toyota regardless of whether you contribute (if applicable)
  • Paid holidays and paid time off
  • Referral services related to prenatal services, adoption, childcare, schools and more
  • Tax Advantaged Accounts (Health Savings Account, Health Care FSA, Dependent Care FSA)
  • Relocation assistance (if applicable)

About Toyota

Toyota Motor Corporation is a Japanese multinational automotive manufacturer headquartered in Toyota City, Aichi, Japan. The company was founded in 1937 by Kiichiro Toyoda and has since grown to become the world's largest automotive manufacturer. Toyota Motor Corporation produces a wide range of vehicles including cars, trucks, and buses. The company is committed to sustainability and has set a goal of achieving zero carbon emissions by 2050. Toyota Motor Corporation has operations in over 170 countries and regions around the world.
Learn more about Toyota
Size
372,817 employees
Market Cap
$225.1 billion
Industry
Net Income
$1,531.2 billion
Founded
1937
5 Year Trend
+2.6%
Revenue
$26,625.1 billion
NASDAQ

Similar Jobs

More Jobs at Toyota

More Information Technology Jobs

Find similar Threat and Exposure Analyst, Senior jobs: