Incident Response Lead
Job Summary
Overview
Who we are
Collaborative. Respectful. A place to dream and do. These are just a few words that describe what life is like at Toyota. As one of the worlds most admired brands Toyota is growing and leading the future of mobility through innovative high-quality solutions designed to enhance lives and delight those we serve. Were looking for talented team members who want to Dream. Do. Grow. with us.
An important part of the Toyota family is Toyota Financial Services (TFS) the finance and insurance brand for Toyota and Lexus in North America. While TFS is a separate business entity it is an essential part of this world-changing company- delivering on Toyotas vision to move people beyond whats possible. At TFS you will help create best-in-class customer experience in an innovative collaborative environment.
Toyota does not offer support or sponsorship of job applicants for employment-based visas or any other workauthorization for this role now or in the future. You must have the right to work in the United States and not requireToyota support or sponsorship for immigration-related employment (e.g. H-1B O-1 E-3 H-1B1 TN F-1 OPT F-1 STEM OPT F-1 CPT job flexibility benefits also known as I-140 or Adjustment of Status portability etc.) now or in thefuture. You should not apply for this role if you will require Toyota to assist with immigration support or sponsorshipnow or in the future.
Who were looking for
Toyota Financial Services (TFS) Technology team is seeking an experienced and proactive Post Incident Review Lead to oversee and drive the post-incident review process for cybersecurity events and incidents. This leadership role is responsible for managing the PIR team ensuring thorough analysis of security incidents driving continuous improvement in post incident review and collaborating with senior stakeholders to strengthen Toyotas cybersecurity posture.
What youll be doing
- Lead and manage the Post Incident Review team providing guidance mentorship and performance management to senior and junior analysts
- Oversee all post-incident investigations to ensure comprehensive root cause analysis impact assessment and actionable remediation recommendations
- Collaborate closely with Security Operations IT Risk Management Business Units and executive leadership to communicate findings and drive resolution
- Develop and enhance post-incident review frameworks methodologies and tools to improve efficiency and effectiveness of incident analysis
- Facilitate lessons learned sessions and ensure key insights are integrated into incident response playbooks SOPs and training programs
- Identify systemic risks and trends from incident data to inform strategic risk mitigation and security program enhancements
- Ensure compliance with regulatory requirements and internal policies through detailed documentation and audit support
- Drive continuous improvement initiatives in incident response processes based on evolving threat landscape and industry best practices
- Represent the PIR function in cross-functional security governance forums and contribute to enterprise-wide cybersecurity strategy
What you bring
- Bachelors degree in computer science Information Security or related field or equivalent experience
- 7 years of progressive experience in Information Security with significant exposure to incident response and post-incident review activities
- Proven leadership experience managing technical and/or non-technical teams in a cybersecurity environment
- Strong expertise in root cause analysis incident timeline reconstruction and application of frameworks such as MITRE ATT&CK
- Deep understanding of Cyber Threat TTPs threat hunting techniques and enterprise SIEM/security analytics platforms (e.g. Splunk Exabeam)
- Excellent communication skills with ability to translate complex technical findings for diverse audiences including executives
- Experience developing and refining SOPs playbooks and training materials for post incident review or incident response programs
- Familiarity with security frameworks such as ISO 27001 NIST SOX and regulatory compliance requirements
Added bonus if you have
- Masters degree in Cyber Security Computer Science Statistics or related field
- Experience in the financial services banking or insurance industry
- Relevant certifications (e.g. CISSP GCIH GSEC OSCP CYSA)
What well bring
During your interview process our team can fill you in on all the details of our industry-leading benefits and careerdevelopment opportunities. A few highlights include:
A work environment built on teamwork flexibility and respect
Professional growth and development programs to help advance your career as well as tuition reimbursement
Team Member Vehicle Purchase Discount
Toyota Team Member Lease Vehicle Program (if applicable)
Comprehensive health care and wellness plans for your entire family
Toyota 401(k) Savings Plan featuring a company match as well as an annual retirement contribution from Toyotaregardless of whether you contribute (if applicable)
Paid holidays and paid time off
Belonging at Toyota
Our success begins and ends with our people. We embrace all perspectives and value unique human experiences. Respect for all is our North Star.
Applicants for our positions are considered without regard to race ethnicity national origin sex sexual orientation gender identity or expression age disability religion military or veteran status or any other characteristics protected by law.
Have a question need assistance with your application or do you require any special accommodations Please send an email to .