Security Operations Center (SOC) Lead - L3

Plano, TX, US • Posted 4 hours ago • Updated 4 hours ago
Full Time
On-site
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • Network Layer
  • Financial Services
  • Finance
  • Insurance
  • Brand
  • Microsoft TFS
  • Customer Experience
  • Employment Authorization
  • Immigration
  • Use Cases
  • Root Cause Analysis
  • Recovery
  • Security Engineering
  • Optimization
  • Onboarding
  • System On A Chip
  • Mentorship
  • Tier 1
  • Tier 2
  • IT Infrastructure
  • Reporting
  • Continuous Improvement
  • Leadership
  • Security Operations
  • Malware Analysis
  • Risk Assessment
  • IT Management
  • Process Improvement
  • Information Technology
  • Computer Science
  • Cyber Security
  • Incident Management
  • Network
  • Cloud Computing
  • SIEM
  • Threat Analysis
  • Log Analysis
  • Analytical Skill
  • Conflict Resolution
  • Problem Solving
  • Communication
  • CISSP
  • GCIH
  • GCFA
  • GCIA
  • Cloud Security
  • Workflow
  • Scripting
  • Windows PowerShell
  • Python
  • Regulatory Compliance
  • Collaboration
  • Teamwork
  • Taxes
  • Health Care
  • FSA
  • Military
  • Law

Summary

Overview

Who we are

Collaborative. Respectful. A place to dream and do. These are just a few words that describe what life is like at Toyota. As one of the world's most admired brands, Toyota is growing and leading the future of mobility through innovative, high-quality solutions designed to enhance lives and delight those we serve. We're looking for talented team members who want to Dream. Do. Grow. with us.

An important part of the Toyota family is Toyota Financial Services (TFS), the finance and insurance brand for Toyota and Lexus in North America. While TFS is a separate business entity, it is an essential part of this world-changing company- delivering on Toyota's vision to move people beyond what's possible. At TFS, you will help create best-in-class customer experience in an innovative, collaborative environment.

Toyota does not offer support or sponsorship of job applicants for employment-based visas or any other work authorization for this role now or in the future. You must have the right to work in the United States and not require Toyota support or sponsorship for immigration-related employment (e.g., H-1B, O-1, E-3, H-1B1, TN, F-1 OPT, F-1 STEM OPT, F-1 CPT, 'job flexibility benefits' [also known as I-140 or Adjustment of Status portability], etc.) now or in the future. You should not apply for this role if you will require Toyota to assist with immigration support or sponsorship now or in the future.

Who we're looking for

The SOC Analyst III serves as a senior member of the Security Operations Center, responsible for advanced threat detection, investigation, incident response, and security monitoring activities. This role provides technical leadership for complex cybersecurity incidents, develops and optimizes detection content, and collaborates with cross-functional teams to strengthen the organization's security posture. The SOC Analyst III also mentors junior analysts, drives continuous improvement initiatives, and contributes to the development of security operations processes and procedures.

What you'll be doing

Threat Detection & Monitoring

  • Lead advanced monitoring and analysis of security events, alerts, and telemetry from multiple security platforms.
  • Identify, investigate, and validate potential cybersecurity threats and suspicious activities.
  • Perform threat hunting activities to proactively detect malicious behavior and emerging threats.
  • Develop and maintain detection logic, use cases, correlation rules, and alerting content to improve security visibility.


Incident Response & Investigation

  • Lead investigations of complex security incidents across endpoint, network, cloud, and identity environments.
  • Perform root cause analysis and determine the scope, impact, and severity of security events.
  • Coordinate containment, eradication, and recovery efforts with internal and external stakeholders.
  • Document incident findings, actions taken, and lessons learned.


Security Engineering & Optimization

  • Evaluate and tune security monitoring technologies to improve detection effectiveness and reduce false positives.
  • Assist with onboarding and integration of new log sources, security tools, and data feeds.
  • Support automation initiatives that enhance SOC efficiency and operational effectiveness.
  • Contribute to the development and maintenance of SOC processes, playbooks, and operational standards.


Leadership & Collaboration

  • Provide technical mentorship and guidance to Tier 1 and Tier 2 analysts.
  • Serve as an escalation point for complex investigations and security incidents.
  • Collaborate with IT, infrastructure, cloud, engineering, and business teams to address security risks.
  • Participate in security exercises, tabletop events, and post-incident reviews.


Reporting & Continuous Improvement

  • Prepare incident summaries, metrics, and operational reports for leadership and stakeholders.
  • Analyze trends and recommend improvements to detection, response, and security operations capabilities.
  • Stay current on emerging threats, attack techniques, and industry best practices.


Core Competencies

  • Incident Response
  • Threat Hunting
  • Detection Engineering
  • Security Monitoring
  • Malware Analysis
  • Security Automation
  • Risk Assessment
  • Technical Leadership
  • Process Improvement
  • Cross-Functional Collaboration


What you bring

  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or equivalent experience.
  • 5+ years of experience in cybersecurity operations, incident response, threat hunting, or a related field.
  • Experience investigating advanced threats across endpoint, network, cloud, and identity technologies.
  • Strong understanding of attacker tactics, techniques, and procedures (TTPs) and frameworks such as MITRE ATT&CK.
  • Experience with SIEM, EDR/XDR, threat intelligence, and log analysis platforms.
  • Strong analytical, troubleshooting, and problem-solving skills.
  • Excellent written and verbal communication skills
  • Industry certifications such as CISSP, GCIH, GCFA, GCIA, CySA+, or equivalent.


Added bonus if you have

  • Experience with cloud security technologies and security monitoring in hybrid environments.
  • Experience developing detection content, threat-hunting methodologies, and automation workflows.
  • Familiarity with scripting or automation languages such as PowerShell, Python, or similar technologies.
  • Experience supporting regulatory, compliance, or security framework requirements.


What we'll bring

During your interview process, our team can fill you in on all the details of our industry-leading benefits and career development opportunities. A few highlights include:

  • A work environment built on teamwork, flexibility, and respect
  • Professional growth and development programs to help advance your career, as well as tuition reimbursement
  • Team Member Vehicle Purchase Discount
  • Toyota Team Member Lease Vehicle Program (if applicable)
  • Comprehensive health care and wellness plans for your entire family
  • Toyota 401(k) Savings Plan featuring a company match, as well as an annual retirement contribution from Toyota regardless of whether you contribute (if applicable)
  • Paid holidays and paid time off
  • Referral services related to prenatal services, adoption, childcare, schools and more
  • Tax Advantaged Accounts (Health Savings Account, Health Care FSA, Dependent Care FSA)
  • Relocation assistance (if applicable)


Belonging at Toyota

Our success begins and ends with our people. We embrace all perspectives and value unique human experiences. Respect for all is our North Star.

Applicants for our positions are considered without regard to race, ethnicity, national origin, sex, sexual orientation, gender identity or expression, age, disability, religion, military or veteran status, or any other characteristics protected by law.

Have a question, need assistance with your application or do you require any special accommodations? Please send an email to .
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 91097479
  • Position Id: 10333144
  • Posted 4 hours ago
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Carrollton, Texas

Today

Full-time

Plano, Texas

Today

Easy Apply

Contract

$50 - $65

Southlake, Texas

Today

Full-time

USD 101,000.00 - 194,000.00 per year

Remote or Colorado

Today

Full-time

USD 121,300.00 - 220,220.00 per year

Search all similar jobs