ForgeApply · Job listing
Security Operations Center (SOC) Analyst - L1
Toyota
See all 59 open roles at Toyota →
Tailor your resume for this Toyota job in about a minute.
ForgeApply tailors your resume and cover letter to this exact posting, then hands you a ready-to-submit application for Toyota's site. Free trial, no card required.
About this role
Overview
Who we are
Collaborative. Respectful. A place to dream and do. These are just a few words that describe what life is like at Toyota. As one of the world’s most admired brands, Toyota is growing and leading the future of mobility through innovative, high-quality solutions designed to enhance lives and delight those we serve. We’re looking for talented team members who want to Dream. Do. Grow. with us.
An important part of the Toyota family is Toyota Financial Services (TFS), the finance and insurance brand for Toyota and Lexus in North America. While TFS is a separate business entity, it is an essential part of this world-changing company- delivering on Toyota's vision to move people beyond what's possible. At TFS, you will help create best-in-class customer experience in an innovative, collaborative environment.
Toyota does not offer support or sponsorship of job applicants for employment-based visas or any other work authorization for this role now or in the future. You must have the right to work in the United States and not require Toyota support or sponsorship for immigration-related employment (e.g., H-1B, O-1, E-3, H-1B1, TN, F-1 OPT, F-1 STEM OPT, F-1 CPT, ‘job flexibility benefits’ [also known as I-140 or Adjustment of Status portability], etc.) now or in the future. You should not apply for this role if you will require Toyota to assist with immigration support or sponsorship now or in the future.
Who we’re looking for
Toyota Financial Services is seeking a Security Operations Center (SOC) Analyst to join our team. We are seeking a SOC Analyst to help monitor, triage, and investigate security alerts across SIEM, EDR, email, cloud, and network security platforms. This role supports incident detection and response, threat analysis, and ongoing SOC process improvements while helping ensure compliance with internal procedures and service level expectations.
What you’ll be doing
Security Monitoring & Alert Triage • Monitor security events and alerts generated from SIEM, EDR, email security, cloud security, and network security platforms.
• Perform initial triage of security alerts to determine legitimacy, severity, and potential business impact.
• Investigate suspicious activities and indicators of compromise (IOCs).
• Document investigative findings and actions taken in accordance with established procedures.
• Escalate potential security incidents to senior analysts or incident response teams as required.
• Respond to incidents after hours or as needed by on-call rotation
Incident Detection & Response Support • Assist in the identification, containment, and remediation of cybersecurity incidents.
• Participate in incident response activities under the guidance of senior analysts.
• Gather and preserve relevant evidence for investigations.
• Support post-incident documentation and lessons learned activities.
Threat Intelligence & Analysis • Review threat intelligence reports and security advisories.
• Identify suspicious patterns, known threat indicators, and emerging threats that may impact Toyota Financial Services.
• Support threat-hunting and proactive monitoring initiatives.
Security Operations & Process Improvement • Follow established SOC workflows, playbooks, and standard operating procedures.
• Support tuning efforts to reduce false positives and improve alert fidelity.
• Contribute to process improvement initiatives that enhance SOC effectiveness.
• Maintain accurate case management records and investigation notes.
Compliance & Risk Support • Assist in supporting cybersecurity controls related to regulatory and compliance requirements.
• Help ensure timely handling of security events and incidents according to internal service level agreements (SLAs).
• Support audit requests and compliance-related investigations when needed.
What you bring
• Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field; or equivalent work experience.
• 0-2 years of cybersecurity, information security, IT operations, help desk, network administration, or related experience.
• Experience working with security monitoring tools is preferred.
• Internship experience in cybersecurity or IT security is a plus.
Technical Knowledge
Basic understanding of: • Security Operations Center functions and processes
• Network fundamentals (TCP/IP, DNS, DHCP, HTTP/S)
• Windows and Linux operating systems
• Cybersecurity threats, attack techniques, and common vulnerabilities
• Security monitoring and logging concepts
• Identity and access management principles
• Endpoint security technologies
• Cloud security fundamentals (AWS and Microsoft 365 preferred)
Security Tools • CrowdStrike Falcon
• Microsoft Defender XDR
• Microsoft Sentinel or similar SIEM platforms
• Email security solutions
• Vulnerability management platforms
• Threat intelligence platforms
Desired Skills • Strong analytical and problem-solving abilities
• Ability to identify patterns from large datasets and security alerts
• Excellent written and verbal communication skills
• Strong attention to detail
• Ability to work effectively in a team environment
• Ability to manage multiple tasks and priorities simultaneously
• Customer-focused mindset
• Willingness to learn new technologies and security practices
Added bonus if you have
One or more of the following certifications are preferred: • CompTIA Security+
• CompTIA CySA+
• ISC2 Certified in Cybersecurity (CC)
• GIAC GFACT
• Microsoft Security Certifications
• AWS Cloud Practitioner
Key Performance Indicators (KPIs) • Alert triage and response time
• Incident escalation accuracy
• Case documentation quality
• Adherence to SOC procedures and SLAs
• Reduction of false-positive investigations
• Completion of assigned training and development goals
What we’ll bring
During your interview process, our team can fill you in on all the details of our industry-leading benefits and caree
Salary insight
This posting doesn't disclose pay. Across 985 Dallas jobs with disclosed salaries on ForgeApply, the median is $134k.
See full Operations salary data for Dallas →
Based on live postings with disclosed pay on ForgeApply; refreshed daily. Not an estimate of this employer's offer.
Tailor your resume for this Toyota role before you apply.
Tailor my resume for this jobSimilar jobs
- Sr. Security Analyst - Security Operations Center (SOC) — Lennar · Irving, TX (Job Posting Location) | Miami, FL (Job Posting Location)
- Security Operations Center (SOC) Tier 3 Analyst / Incident Responder — OneMain Financial · Baltimore, MD
- Security Operations Center Analyst — Ardentmc · Remote
- Cybersecurity SOC Analyst II — Chaosindustries · Washington, District of Columbia, United States
- Security Operations Analyst — Unqork · Remote
- Security Operations Analyst — Andurilindustries · Seattle, Washington, United States
- Security Operations Centre (SOC) Supervisor — NorthMark Strategies · Spartanburg, SC
- Staff Security Engineer, SOC — Bloom Energy · San Jose, California
More like this: Operations Jobs · Operations Jobs in Dallas · Browse all jobs
Free ATS checker · No Salary on the Job Posting? How to Find the Number Before You Interview