SonicJobs Logo
Left arrow iconBack to search

Technical Lead, Security Embedded Engineering

Toyota Tsusho Systems
Posted a day ago, valid for 25 days
Location

Plano, TX, US

Salary

Competitive

Contract type

Full Time

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.

Sonic Summary

info
  • Toyota Tsusho Systems US, Inc. is seeking a Technical Lead for Security Embedded Engineering, requiring 7+ years of experience in application or cloud security and 2+ years in a leadership role.
  • The position involves leading a team of Security Embedded Engineers while also performing hands-on security engineering tasks directly for clients.
  • Candidates should possess strong technical leadership skills, excellent client communication, and proficiency in AWS services, Java, and/or Go.
  • The role emphasizes the importance of secure design, code quality, and operational reliability, with responsibilities including application security assessments and vulnerability remediation.
  • The salary for this position is competitive and commensurate with experience, reflecting the specialized skills required.
Founded in 2011, Toyota Tsusho Systems US, Inc. (TTS-US) is a Toyota group company, that develops IT solutions wherever global businesses operate. Transforming into a technology and mobility company, TTS-US with it's 8 TTS affiliates worldwide is establishing a secure and resilient Toyota global value chain. The creative capacity to forge such limitless business opportunities is one of the strengths of Toyota Tsusho Systems.聽聽聽聽聽聽聽聽

Position Summary

The Technical Lead, Security Embedded Engineering leads a team of Security Embedded Engineers supporting a client engagement while also serving as an individual contributor. The role provides technical direction, delivery oversight, and hands-on application and cloud security expertise. In addition to leading the team, the Technical Lead receives and executes security engineering tasks directly from the client, ensuring work is delivered accurately, securely, and in alignment with client priorities and program objectives.

Essential Duties and ResponsibilitiesTeam Leadership and Client Engagement
  • Lead, mentor, and provide technical direction to Security Embedded Engineers supporting the client engagement.
  • Serve as a senior technical liaison to the client, receiving, clarifying, prioritizing, and delivering assigned security engineering tasks.
  • Translate client needs, security findings, and program objectives into actionable work plans for the embedded engineering team.
  • Provide technical oversight through design reviews, code reviews, architecture reviews, and quality assurance of team deliverables.
  • Establish and enforce standards for secure design, code quality, testing, documentation, observability, reliability, and operational readiness.
  • Track delivery progress, risks, dependencies, and resource capacity; communicate status, risks, and recommendations to client and internal stakeholders.
  • Coordinate effectively with client engineering, infrastructure, product, operations, and security teams.
Hands-On Application and Cloud Security Engineering
  • Perform hands-on security engineering work directly assigned by the client, including application security assessments, cloud security reviews, vulnerability remediation, and secure-development initiatives.
  • Develop and maintain secure applications, services, integrations, and infrastructure using Java, Go, AWS services, and related technologies; mobile application-security support is a plus.
  • Conduct static and dynamic application security testing to identify vulnerabilities; create detailed reports, evidence, remediation guidance, and validation artifacts.
  • Work with client development teams to prioritize, remediate, and validate identified application-security vulnerabilities.
  • Assess and improve the security posture of AWS cloud environments, including identity and access management, network security, logging, monitoring, encryption, and configuration controls.
  • Design, implement, and maintain application security controls, countermeasures, and secure engineering patterns.
  • Support secure CI/CD practices using GitLab, including source-control governance, automated testing, security scanning, and release controls.
  • Use Datadog and AWS monitoring tools to improve system observability, investigate anomalies, and support operational reliability.
  • Respond to security incidents and infrastructure issues by investigating events, implementing countermeasures, coordinating recovery activities, and documenting root cause and corrective actions.
  • Participate in security research, proof-of-concept testing, tool evaluations, and assessments of emerging threats relevant to the client environment.
  • Identify recurring security or infrastructure issues and drive preventative, scalable improvements.
Required Competencies
  • Strong hands-on technical leadership, with the ability to balance direct client delivery and team oversight.
  • Excellent client-facing communication skills, including the ability to clearly explain technical risks, remediation options, and delivery tradeoffs.
  • Strong problem-solving skills and ability to perform effectively under pressure.
  • Demonstrated ability to mentor engineers, drive accountability, and maintain consistent delivery quality.
  • Effective interpersonal, negotiation, and stakeholder-management skills across technical and non-technical teams.
  • High degree of ownership, self-motivation, adaptability, and sound judgment.
  • Bachelor鈥檚 degree in Computer Science, Engineering, Cybersecurity, or a related field, or equivalent practical experience.
  • 7+ years of experience in application security, cloud security, software engineering, infrastructure engineering, or platform engineering.
  • 2+ years of experience leading technical initiatives, mentoring engineers, or providing technical oversight in a client-facing environment.
  • Strong hands-on experience with AWS services, cloud infrastructure, and AWS security best practices.
  • Proficiency in Java and/or Go; experience with mobile application development or mobile application security is preferred.
  • Experience conducting application security assessments, secure code reviews, vulnerability remediation, and security testing.
  • Proficiency with GitLab for version control and CI/CD pipelines.
  • Experience with Datadog for monitoring, analytics, alerting, and incident investigation.
  • Experience supporting production systems, incident response, root-cause analysis, and operational improvements.
Preferred Qualifications

路聽聽聽聽聽聽聽聽 Experience supporting enterprise, automotive, mobility, or technology client environments.

路聽聽聽聽聽聽聽聽 Relevant security certifications such as CISSP, CSSLP, AWS Security Specialty, GSEC, or equivalent are a plus.

路聽聽聽聽聽聽聽聽 Experience with mobile application security, threat modeling, or secure architecture reviews.

路聽聽聽聽聽聽聽聽 Experience working in a consulting, managed services, or client-facing delivery environment.




Learn more about this Employer on their Career Site

Apply now in a few quick clicks

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.