Назад
Company hidden
5 дней назад

Incident Response Lead (Cybersecurity)

Формат работы
onsite
Тип работы
fulltime
Грейд
senior/lead
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Incident Response Lead (Cybersecurity): Leading post-incident reviews for cybersecurity events and incidents with an accent on root cause analysis, incident timeline reconstruction, and actionable remediation. Focus on managing the PIR team, improving incident response playbooks and processes, identifying systemic risks, and communicating complex findings to executive stakeholders.

Location: Plano, Texas, United States. Applicants must already have the right to work in the United States and must not require immigration sponsorship now or in the future.

Company

Toyota Financial Services is Toyota and Lexus's finance and insurance business in North America, providing customer-focused financial services within Toyota.

What you will do

  • Lead and manage the Post Incident Review team, including mentoring and performance management for senior and junior analysts.
  • Oversee post-incident investigations, root cause analysis, incident timeline reconstruction, impact assessment, and remediation recommendations.
  • Collaborate with Security Operations, IT, Risk Management, business units, and executive leadership to communicate findings and drive resolution.
  • Develop and improve post-incident review frameworks, methodologies, tools, playbooks, SOPs, and training programs.
  • Identify systemic risks and trends, support regulatory compliance and audit activities, and contribute to enterprise cybersecurity strategy.
  • Represent the Post Incident Review function in security governance forums and lead continuous improvement initiatives.

Requirements

  • Bachelor's degree in computer science, information security, or a related field, or equivalent experience.
  • At least 7 years of progressive information security experience with significant exposure to incident response and post-incident reviews.
  • Proven experience leading technical or non-technical teams in a cybersecurity environment.
  • Strong expertise in root cause analysis, incident timeline reconstruction, MITRE ATT&CK, cyber threat TTPs, and threat hunting.
  • Experience with enterprise SIEM and security analytics platforms such as Splunk or Exabeam, plus development of SOPs, playbooks, and training materials.
  • Familiarity with ISO 27001, NIST, SOX, and regulatory compliance requirements, along with the ability to communicate technical findings to executives.

Nice to have

  • Master's degree in cybersecurity, computer science, statistics, or a related field.
  • Experience in financial services, banking, or insurance.
  • Certifications such as CISSP, GCIH, GSEC, OSCP, or CySA+.

Culture & Benefits

  • Team-oriented, flexible, and respectful work environment.
  • Professional development programs and tuition reimbursement.
  • Healthcare and wellness plans for employees and their families.
  • 401(k) savings plan with company matching and, where applicable, an annual company retirement contribution.
  • Paid holidays and paid time off.
  • Team member vehicle purchase discount and, where applicable, a team member lease vehicle program.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →