Senior Detection & Response Analyst

Toyota Tsusho Systems

Apply to this job
Plano, Texas, US remote Until 9/20/2026 4+ years exp H-1B sponsor history First posted July 22, 2026 Last posted July 22, 2026
Job description

About TTS-US:

Founded in 2011, Toyota Tsusho Systems US, Inc. (TTS-US) is a Toyota group company, that develops IT solutions wherever global businesses operate. Transforming into a technology and mobility company, TTS-US with it's 8 TTS affiliates worldwide is establishing a secure and resilient Toyota global value chain. The creative capacity to forge such limitless business opportunities is one of the strengths of Toyota Tsusho Systems.

 

Summary:

The Senior Detection and Response Analyst role will provide ongoing support to the Regional Security Operations program. In this role the Senior Detection and Response Analyst is expected to maintain effective 24x7 monitoring and detection services to internal and external clients.

Essential Functions:

·       Act as the point of escalation for all security incidents; provide expert level feedback regarding current monitoring and ways to improve it.

·       Assume the role of shift lead as needed, and fulfil this responsibility through leadership and guidance of ID team members, proactively prioritizing, identifying, analyzing and remediating threats

·       Ensure that the ID Analysts’ daily work activity is completed to the required quality levels and timelines, by verifying that their responsibilities are executed, in accordance with the expectations set by the ID Team Lead.

·       Triage security incidents and perform in-depth analysis using Cyber Threat Intelligence, intrusion detection systems, firewalls and other boundary protection devices.

·       Maintain an understanding of the overall threat landscape (cyber, malware, botnets, phishing, DDoS, physical).

·       Provide 24x7 coverage to support the RSOC services; Participate in an on-call rotation.

·       Support Agentic SOC development through providing expert level feedback, tuning, and feature requests for our engineering team to support accurate machine speed response.

·       Train and mentor team members within the Incident Detection Team.

·       Improve the effectiveness and efficiency of day-to-day operations.

·       Assist with service requests from customers and internal teams.

·       Assist with containment and remediation of threats during incidents. Use an internal ticketing system to track investigated incidents and capture relevant details.

·       Support Incident Response efforts as needed, including providing counsel, working with the IR team, as well as other involved stakeholders within the organization and customers to drive forward remediation activities.

·       Conduct threat hunting activities based on internal and external threat intelligence.

·       Provide expert level feedback regarding current monitoring and ways to improve it.

·       Improve the effectiveness and efficiency of day-to-day operations.

·       Create and update daily and monthly reports.

·       Contributes to the creation of documentation to standardize processes and procedures, including playbooks to improve internal processes and procedures.

·       Use investigation findings to identify gaps and recommend security posture improvements.

·       Identify, recommend, coordinate, and deliver timely knowledge to support teams.

Competencies:

·       Excellent critical thinking, logic, and solution orientation and to learn and adapt quickly.

·       Ability to learn and operate in a dynamic environment.

·       Detail-orientated and analytical skills; Problem-solving skills.

·       Strong verbal and written communication skills.

Requirements

·       4+ years of experience in Security Operations monitoring.

·       Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field (preferred)

·       Experience with Security Operations processes, procedures, and services.

·       Experience working with cyber security tools and software such as Sentinel, Splunk, ATP, Symantec End Point, TrendMicro Antivirus, McAfee Web Gateway, Checkpoint Firewalls, Bluecoat, Sourcefire, Active Directory, or relevant cyber security assets.

·       Advanced knowledge of network monitoring and network exploitation techniques.

·       Strong technical background in security, network, infrastructure, cloud, applications.

·       Knowledge of risk assessment tools, technologies and methods.

·       Experience with common attack vectors, including advanced adversaries (nation state/financial motivation).

·       Knowledge around common web application attacks including SQL injection, cross-site scripting, invalid inputs, and forceful browsing.

·       Knowledge of how common protocols and applications work at the network level, including DNS, HTTP, and SMB.

·       Experience working with cyber security tools and software such as Splunk, ATP, Symantec Endpoint, TrendMicro Antivirus, McAfee Web Gateway, Checkpoint Firewalls, Bluecoat, Sourcefire, Active Directory, or relevant cyber security assets.

·       Technical certifications such as GCIA, GCFA, GCIH or CASP is a plus.

·       Tines (or other automation) experience is highly valued

·       Proficient with Microsoft Office & documentation skills (Word, Excel, PowerPoint)

About this role

Summary

Monitor, analyze, and respond to cybersecurity threats; lead security incidents and improve security processes.

Job title

Senior Detection & Response Analyst

Experience level

4+ years

Minimum experience

4+ years exp

Industry

software

Location requirements

On-site in Plano, Texas, with 24x7 support; some remote work possible.

Salary

Not specified

Visa sponsorship

H-1B sponsor history

Management role

No

Skills & keywords

Required skills

cyber threat intelligenceintrusion detection systemsfirewallsincident triagethreat huntingreportingsecurity tools (Sentinel, Splunk, ATP, Symantec, TrendMicro, McAfee, Checkpoint, Bluecoat, Sourcefire, Active Directory)

Preferred skills

GCIAGCFAGCIHCASPTines automation

Specializations

security operationscybersecuritythreat huntingincident responsenetwork monitoring
Locations

Structured locations inferred from the posting.

Plano, TX, USA

Hybrid City
Related searches