Cyber Threat Emulation Operator, Lead

Toyota Motor Sales, U.S.A., Inc.
Plano, TX, United States
about 1 month ago
Apply on www.juju.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours
Job source

Tech stack

Artificial Intelligence Software System Penetration Testing Cloud Computing Cyber Security Emulators Team Foundation Server Red Team (Cyber Security) Data Streaming Large Language Models Multi-Agent Systems Mitre Att&ck Cyber Threat Analysis
+2 more
Purple Team (Cyber Security) Vulnerability Analysis

Job description

This role will help define the technical direction of the TFS threat emulation capability while remaining close to the keyboard. Working across the global TFS Group companies, you will touch complex enterprise, cloud, identity, application, and AI-enabled environments, to challenge real security controls and work directly with defenders to measurably improve them.

This role is suited to an operator who enjoys researching emerging tradecraft, building tools, testing ideas in realistic environments, and turning successful prototypes into repeatable offensive security capabilities.

What you’ll be doing

  • Design and execute end-to-end red team and control test engagements that reproduce realistic adversary behaviors across identity, endpoint, network, application, cloud, container, and AI-enabled environments.

  • Develop custom offensive security tooling and reusable attack capabilities rather than relying exclusively on commercial testing platforms.

  • Build AI-assisted and agentic workflows for reconnaissance, attack-path discovery, campaign planning, vulnerability analysis, payload development, control validation, and post-exploitation emulation.

  • Engineer safe multi-agent systems capable of adapting attack-paths, interpreting results, and coordinating multi-stage adversary simulations at speed and scale.

  • Integrate large language models with internal telemetry and threat intelligence to prioritize and drive offensive security workflows.

  • Test AI-enabled applications and agentic systems, including model interfaces, retrieval pipelines, tool integrations, authorization boundaries, data flows, and indirect prompt-injection paths.

  • Work directly with SOC analysts, detection engineers, incident responders, and threat intelligence analysts to break, tune, retest, and improve security controls through purple team exercises.

  • Stay current on global cyber trends and attack techniques. Propose new research directions by applying relevant insights to the Toyota environment.

  • Mentor other offensive security practitioners while remaining actively involved in research, tooling development, and engagement execution.

Requirements

Toyota Financial Services (TFS) Information Security is seeking a passionate and highly motivated Cyber Threat Emulation Lead to build the next generation of threat emulation capabilities for a global enterprise. This is a hands-on technical opportunity for an experienced offensive security practitioner who wants to develop new capabilities, not simply operate an existing red team program. You will design and execute sophisticated adversary simulations while building AI-assisted and agentic tooling that changes how offensive security testing is performed. You will have the opportunity to experiment with emerging attack techniques, develop custom tooling, orchestrate multi-stage attack workflows, and apply artificial intelligence to increase the speed, adaptability, and scale of threat emulation., + Extensive experience in red teaming, adversary simulation, penetration testing, or offensive security.

  • Demonstrated ability to plan and lead complex, end-to-end security engagements in an enterprise environment.

  • Strong knowledge of modern attack techniques across identity, endpoints, networks, cloud platforms, applications, AI, and security infrastructure.

  • Hands-on experience developing offensive security tooling, automation, or agentic workflows.

  • Ability to communicate complex technical findings clearly to both technical and non-technical audiences.

  • Sound judgment, integrity, and familiarity with the governance and operational safeguards required when conducting offensive security activity.

  • Bachelor’s Degree from an accredited institution, or equivalent experience

Added bonus if you have

  • Relevant security certification (CRTO, OSCP, OSWE, CISSP)

  • Familiarity with security frameworks for attack (MITRE ATT&CK, Cyber Kill Chain), threat modeling (STRIDE, CVSS), and guidance (NIST, PCI).

  • Understanding of regulatory issuances, such as CFPB, GLBA and SOX, and their applicability to technologies, applications and privacy laws (GDPR & CCPA) and other legal and compliance privacy and information security requirements.

  • Advanced degree with a concentration in an IT related area.

Benefits & conditions

During your interview process, our team can fill you in on all the details of our industry-leading benefits and career development opportunities.

A few highlights include:

  • A work environment built on teamwork, flexibility and respect

  • Professional growth and development programs to help advance your career, as well as tuition reimbursement

  • Team Member Vehicle Purchase Discount

  • Toyota Team Member Lease Vehicle Program (if applicable)

  • Comprehensive health care and wellness plans for your entire family

  • Toyota 401(k) Savings Plan featuring a company match, as well as an annual retirement contribution from Toyota regardless of whether you contribute

  • Paid holidays and paid time off

  • Referral services related to prenatal services, adoption, childcare, schools and more

  • Tax Advantaged Accounts (Health Savings Account, Health Care FSA, Dependent Care FSA)

  • Relocation assistance (if applicable)

Belonging at Toyota

Our success begins and ends with our people. We embrace all perspectives and value unique human experiences. Respect for all is our North Star.

About the company

Collaborative. Respectful. A place to dream and do. These are just a few words that describe what life is like at Toyota. As one of the world’s most admired brands, Toyota is growing and leading the future of mobility through innovative, high-quality solutions designed to enhance lives and delight those we serve. We’re looking for talented team members who want to Dream. Do. Grow. with us.

An important part of the Toyota family is Toyota Financial Services (TFS), the finance and insurance brand for Toyota and Lexus in North America. While TFS is a separate business entity, it is an essential part of this world-changing company- delivering on Toyota’s vision to move people beyond what’s possible. At TFS, you will help create best-in-class customer experience in an innovative, collaborative environment.

Toyota does not offer support or sponsorship of job applicants for employment-based visas or any other work authorization for this role now or in the future. You must have the right to work in the United States and not require Toyota support or sponsorship for immigration-related employment (e.g., H-1B, O-1, E-3, H-1B1, TN, F-1 OPT, F-1 STEM OPT, F-1 CPT, ‘job flexibility benefits’ [also known as I-140 or Adjustment of Status portability], etc.) now or in the future. You should not apply for this role if you will require Toyota to assist with immigration support or sponsorship now or in the future.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.juju.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:38 min

Using language models to self-detect and flag software vulnerabilities

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · World Congress 2026 Europe

58 sec

Navigating limitations of local Cosmos DB emulators

Radu Vunvulea Radu Vunvulea · World Congress 2022

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

11:26 min

Identifying system risks and collaborative ecosystem legal challenges

Hans-Jürgen Eidler · LIVE

Videos

See all

Related articles

See all