ForgeApply
Try it free

ForgeApply · Job listing

Security Operations Center (SOC) Analyst - L1

Toyota

Plano, TX, USonsite

See all 59 open roles at Toyota

Tailor your resume for this Toyota job in about a minute.

ForgeApply tailors your resume and cover letter to this exact posting, then hands you a ready-to-submit application for Toyota's site. Free trial, no card required.

About this role

Overview

Who we are

Collaborative. Respectful. A place to dream and do. These are just a few words that describe what life is like at Toyota. As one of the world’s most admired brands, Toyota is growing and leading the future of mobility through innovative, high-quality solutions designed to enhance lives and delight those we serve. We’re looking for talented team members who want to Dream. Do. Grow. with us.

An important part of the Toyota family is Toyota Financial Services (TFS), the finance and insurance brand for Toyota and Lexus in North America. While TFS is a separate business entity, it is an essential part of this world-changing company- delivering on Toyota's vision to move people beyond what's possible. At TFS, you will help create best-in-class customer experience in an innovative, collaborative environment.

Toyota does not offer support or sponsorship of job applicants for employment-based visas or any other work authorization for this role now or in the future. You must have the right to work in the United States and not require Toyota support or sponsorship for immigration-related employment (e.g., H-1B, O-1, E-3, H-1B1, TN, F-1 OPT, F-1 STEM OPT, F-1 CPT, ‘job flexibility benefits’ [also known as I-140 or Adjustment of Status portability], etc.) now or in the future. You should not apply for this role if you will require Toyota to assist with immigration support or sponsorship now or in the future.

Who we’re looking for 

Toyota Financial Services is seeking a Security Operations Center (SOC) Analyst to join our team.  We are seeking a SOC Analyst to help monitor, triage, and investigate security alerts across SIEM, EDR, email, cloud, and network security platforms. This role supports incident detection and response, threat analysis, and ongoing SOC process improvements while helping ensure compliance with internal procedures and service level expectations.

What you’ll be doing 

Security Monitoring & Alert Triage • Monitor security events and alerts generated from SIEM, EDR, email security, cloud security, and network security platforms.

• Perform initial triage of security alerts to determine legitimacy, severity, and potential business impact.

• Investigate suspicious activities and indicators of compromise (IOCs).

• Document investigative findings and actions taken in accordance with established procedures.

• Escalate potential security incidents to senior analysts or incident response teams as required.

• Respond to incidents after hours or as needed by on-call rotation

Incident Detection & Response Support • Assist in the identification, containment, and remediation of cybersecurity incidents.

• Participate in incident response activities under the guidance of senior analysts.

• Gather and preserve relevant evidence for investigations.

• Support post-incident documentation and lessons learned activities.

Threat Intelligence & Analysis • Review threat intelligence reports and security advisories.

• Identify suspicious patterns, known threat indicators, and emerging threats that may impact Toyota Financial Services.

• Support threat-hunting and proactive monitoring initiatives.

Security Operations & Process Improvement • Follow established SOC workflows, playbooks, and standard operating procedures.

• Support tuning efforts to reduce false positives and improve alert fidelity.

• Contribute to process improvement initiatives that enhance SOC effectiveness.

• Maintain accurate case management records and investigation notes.

Compliance & Risk Support • Assist in supporting cybersecurity controls related to regulatory and compliance requirements.

• Help ensure timely handling of security events and incidents according to internal service level agreements (SLAs).

• Support audit requests and compliance-related investigations when needed.

What you bring 

• Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field; or equivalent work experience.

• 0-2 years of cybersecurity, information security, IT operations, help desk, network administration, or related experience.

• Experience working with security monitoring tools is preferred.

• Internship experience in cybersecurity or IT security is a plus.

Technical Knowledge

Basic understanding of: • Security Operations Center functions and processes

• Network fundamentals (TCP/IP, DNS, DHCP, HTTP/S)

• Windows and Linux operating systems

• Cybersecurity threats, attack techniques, and common vulnerabilities

• Security monitoring and logging concepts

• Identity and access management principles

• Endpoint security technologies

• Cloud security fundamentals (AWS and Microsoft 365 preferred)

Security Tools • CrowdStrike Falcon

• Microsoft Defender XDR

• Microsoft Sentinel or similar SIEM platforms

• Email security solutions

• Vulnerability management platforms

• Threat intelligence platforms

Desired Skills • Strong analytical and problem-solving abilities

• Ability to identify patterns from large datasets and security alerts

• Excellent written and verbal communication skills

• Strong attention to detail

• Ability to work effectively in a team environment

• Ability to manage multiple tasks and priorities simultaneously

• Customer-focused mindset

• Willingness to learn new technologies and security practices

Added bonus if you have

One or more of the following certifications are preferred: • CompTIA Security+

• CompTIA CySA+

• ISC2 Certified in Cybersecurity (CC)

• GIAC GFACT

• Microsoft Security Certifications

• AWS Cloud Practitioner

Key Performance Indicators (KPIs) • Alert triage and response time

• Incident escalation accuracy

• Case documentation quality

• Adherence to SOC procedures and SLAs

• Reduction of false-positive investigations

• Completion of assigned training and development goals

What we’ll bring

During your interview process, our team can fill you in on all the details of our industry-leading benefits and caree

Salary insight

This posting doesn't disclose pay. Across 985 Dallas jobs with disclosed salaries on ForgeApply, the median is $134k.

See full Operations salary data for Dallas

Based on live postings with disclosed pay on ForgeApply; refreshed daily. Not an estimate of this employer's offer.

Tailor your resume for this Toyota role before you apply.

Tailor my resume for this job

Similar jobs

More like this: Operations Jobs · Operations Jobs in Dallas · Browse all jobs

Free ATS checker · No Salary on the Job Posting? How to Find the Number Before You Interview