Incident Response Analyst (Mid-Senior Level)

🏢 Toyota Tsusho Systems · all 3 jobs
📍 Plano, Texas, United States
📅 Posted Sep 15, 2026 · via WorkableBoard
🏷 Remote
Apply on original site ↗
✓ Re-crawled against the original posting daily — dead and stale listings expire automatically.

Founded in 2011, Toyota Tsusho Systems US, Inc. (TTS-US) is a Toyota group company, that develops IT solutions wherever global businesses operate. Transforming into a technology and mobility company, TTS-US with it's 8 TTS affiliates worldwide is establishing a secure and resilient Toyota global value chain. The creative capacity to forge such limitless business opportunities is one of the strengths of Toyota Tsusho Systems.

We are seeking a skilled and experienced Incident Response Analyst to join our collaborative cybersecurity incident response team within the Threat Research, Response & Analysis Center (TRRAC). In this role, you will combine technical expertise in digital forensics and incident response with proactive threat intelligence and hunting activities. You will respond to critical security incidents across the ecosystem, conduct comprehensive forensic investigations, and collaborate closely with the 24/7 SOC and other cybersecurity teams. When not actively responding to incidents, you will contribute to threat hunting, cyber threat intelligence, tooling improvements, and the development of SOPs and training materials—helping to elevate the entire team's capabilities.
What You'll Be Doing
- Conduct comprehensive incident response activities following the NIST Cybersecurity Framework across all phases: Initial Detection, Analysis & Validation, Containment, Eradication, Recovery, and Post-Incident Activity.
- Respond to cyber incidents impacting TMNA Corporate, Manufacturing Plants, Third-Parties, Dealerships, and RSOC Customers.
- Perform digital forensic investigations including collection, processing, and analysis of forensic evidence from diverse devices (Windows, Linux, macOS, mobile).
- Maintain an "Always Be Timelining" (ABT) approach, continuously updating incident timelines as findings are discovered.
- Support proactive, reactive, and exploratory threat hunting activities across the ecosystem.
- Analyze emerging cyber threats, attacker TTPs, and track threat actors/groups to anticipate and mitigate potential attacks.
- Collaborate closely with the 24/7 SOC, Threat Detection Engineering, Vulnerability Management, and Insider Risk Management teams.
- Prepare and deliver forensic reports, incident communications, and executive updates during active incidents.
- Participate in weekly on-call rotation schedule for 24/7 incident response coverage.
- Conduct malware analysis (behavioral and static) using TRRAC Labs' dynamic analysis capabilities.
- Help develop, refine, and maintain incident response playbooks, SOPs, and training materials to improve team effectiveness.
- Participate in quarterly tabletop exercises to test incident response workflows and controls.
- Stay current on emerging threats, attacker techniques, and industry best practices.

← All remote jobs

Get remote cybersecurity division jobs like this by email

10 hand-picked jobs, one email a day. No spam, unsubscribe anytime.

Similar for you