663,523open jobs
38,718companies
99,026added this week
Browse all
Salary
$120k – $218k per year (Estimated)
Location
Remote (United States)
Seniority
Senior
Overview
Company
Impact
Profile match
Toyota Tsusho is a major general trading company and a core member of the Toyota Group, offering a wide array of industrial, commercial, and supply chain services. The enterprise spans diverse business sectors including automotive logistics, metals processing, renewable energy, chemicals, and consumer goods distribution. Headquartered in Nagoya and Tokyo, Japan, the global firm maintains a vast international network with offices and subsidiaries operating worldwide.

Founded in 2011, Toyota Tsusho Systems US, Inc. (TTS-US) is a Toyota group company, that develops IT solutions wherever global businesses operate. Transforming into a technology and mobility company, TTS-US with it's 8 TTS affiliates worldwide is establishing a secure and resilient Toyota global value chain. The creative capacity to forge such limitless business opportunities is one of the strengths of Toyota Tsusho Systems.

We are seeking a skilled and experienced Incident Response Analyst to join our collaborative cybersecurity incident response team within the Threat Research, Response & Analysis Center (TRRAC). In this role, you will combine technical expertise in digital forensics and incident response with proactive threat intelligence and hunting activities. You will respond to critical security incidents across the ecosystem, conduct comprehensive forensic investigations, and collaborate closely with the 24/7 SOC and other cybersecurity teams. When not actively responding to incidents, you will contribute to threat hunting, cyber threat intelligence, tooling improvements, and the development of SOPs and training materials-helping to elevate the entire team's capabilities.

What You'll Be Doing

  • Conduct comprehensive incident response activities following the NIST Cybersecurity Framework across all phases: Initial Detection, Analysis & Validation, Containment, Eradication, Recovery, and Post-Incident Activity.
  • Respond to cyber incidents impacting TMNA Corporate, Manufacturing Plants, Third-Parties, Dealerships, and RSOC Customers.
  • Perform digital forensic investigations including collection, processing, and analysis of forensic evidence from diverse devices (Windows, Linux, macOS, mobile).
  • Maintain an "Always Be Timelining" (ABT) approach, continuously updating incident timelines as findings are discovered.
  • Support proactive, reactive, and exploratory threat hunting activities across the ecosystem.
  • Analyze emerging cyber threats, attacker TTPs, and track threat actors/groups to anticipate and mitigate potential attacks.
  • Collaborate closely with the 24/7 SOC, Threat Detection Engineering, Vulnerability Management, and Insider Risk Management teams.
  • Prepare and deliver forensic reports, incident communications, and executive updates during active incidents.
  • Participate in weekly on-call rotation schedule for 24/7 incident response coverage.
  • Conduct malware analysis (behavioral and static) using TRRAC Labs' dynamic analysis capabilities.
  • Help develop, refine, and maintain incident response playbooks, SOPs, and training materials to improve team effectiveness.
  • Participate in quarterly tabletop exercises to test incident response workflows and controls.
  • Stay current on emerging threats, attacker techniques, and industry best practices.

Requirements

· Minimum of 3-5 years of hands-on experience in incident response and digital forensics.

· Proven ability to act as Incident Commander within a team setting during high-pressure incidents.

· Strong technical expertise in Windows, Linux, and macOS internals related to monitoring and threat detection.

· Experience with cloud security incident response and threat mitigation.

· Skilled in malware analysis (behavioral and static) and basic cryptanalysis.

· Familiarity with security frameworks and compliance standards (NIST, HIPAA, ISO, OWASP, etc.).

· Proficient with DFIR tools such as Autopsy, The Sleuth Kit, Volatility, Magnet Axiom, FTK, and others.

· Competent in scripting languages like Python, PowerShell, and Bash for automation and analysis.

· Excellent communication skills with the ability to collaborate effectively across technical teams and stakeholders.

Preferred / Bonus Skills

· Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field (preferred) Experience in enterprise, manufacturing, or software industries.

· Familiarity with SOAR platforms and security automation.

· Prior experience contributing to or improving incident response programs in a team environment.

Why Join Us?

· Be part of a skilled, collaborative incident response team where your expertise helps drive collective success.

· Lead and support incident response efforts alongside experienced peers.

· Continuously grow your skills through diverse investigations, threat hunting, and team knowledge sharing.

· Help shape and improve our incident response processes and training.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
663,523 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Plano
$70k – $150k per year • Remote • Full-Time • 5+ years exp • Bachelor's Degree • Canada
Python
PowerShell
Databases
OpenSearch
DevOps
Splunk
Dynatrace
AWS
Grafana
Configuration Management
Self-Healing
AWS Lambda
Incident Management
SLI/SLO/SLA
Amazon CloudWatch
Apply
$76k per year • Remote/Hybrid • Full-Time • 1+ year exp • Bachelor's Degree • Charlotte • Richmond
Python
Java
SQL
SAS
Analytics
Tableau
Power BI
Microsoft Excel
Apply
$104k – $158k per year • In office • Full-Time • 10+ years exp • Charlotte • Jersey City • Plano
Python
Java
SQL
Scala
Python
pySpark
Databases
Db2
Oracle
Apache Iceberg
Apache Kafka
AI/ML
Hadoop
Spark
Flink
DevOps
GCP
Azure
CI/CD
AWS
Bitbucket
Management
Jira
ServiceNow
Agile
Apply
$72k per year • Remote/Hybrid • Full-Time • Bachelor's Degree • Charlotte • Richmond
Python
Java
SQL
Analytics
Tableau
Power BI
Microsoft Excel
Apply
$149k – $224k per year • In office • Full-Time • 5+ years exp • PhD • Washington
Python
AI/ML
AI Agents
Agentforce
DevOps
CI/CD
Cybersecurity
Threat Modeling
Management
Agile
Apply
$33k – $79k per year (Estimated) • In office • Contractor • Plano
Analytics
Microsoft Excel
Apply
$63k – $159k per year (Estimated) • In office • Plano
Cybersecurity
Wireshark
Apply
$93k – $198k per year (Estimated) • In office • Contractor • Bachelor's Degree • Plano
Management
ServiceNow
Apply
$91k – $193k per year (Estimated) • In office • Princeton
Apply
$96k – $204k per year (Estimated) • In office • Contractor • Liberty
Apply
$74k – $85k per year • In office • Full-Time • 1+ year exp • Bachelor's Degree • Plano
Apply
$210k – $239k per year • In office • Full-Time • 10+ years exp • Bachelor's Degree • Plano • Richmond
Apply
$38k – $42k per year • Equity • Remote • Full-Time • 2+ years exp • Austin • San Antonio • Dallas • Plano • Houston
Apply
$62k – $104k per year • In office • Full-Time • 3+ years exp • High School Diploma • Irving • Greensboro • Plano
Management
Outlook
Apply
$101k – $135k per year • In office • Full-Time • 5+ years exp • Jersey City • Charlotte • Plano
Python
Bash
Databases
Redis
CockroachDB
DevOps
Terraform
Ansible
Red Hat
OpenShift
CI/CD
Jenkins
Git
Kubernetes
Bitbucket
Apply
See all jobs
This is one of many
663,523 more open roles from verified company boards, updated every day.