You will be responsible for designing and implementing security environments for crypto-related services, both domestic and international, including following:
Building, configuring, and implementing security environments for crypto-related services in Japan and abroad
Strengthening product security in the context of global service expansion
Supporting and verifying secure development in collaboration with system development teams
Conducting risk analysis and providing technical support
Handling security incidents and developing appropriate response processes
Required qualifications
5+ years of hands-on experience in security-related organizations-Practical experience in programming or server set-up
Capable of performing actual system design and implementation, not just vendor coordination
Experience in designing, building, and operating network and security products-Proven track record in driving end-to-end activities from selection to validation and implementation of security solutions-Experience in planning and executing product security enhancements
Hands-on experience in vulnerability assessment or penetration testing
Experience in risk analysis and technical consulting-Experience in applying threat modeling for internal initiatives and support
Hands-on experience in responding to real-world security incidents
English: Business level
Japanese: Fluent
Preferred qualifications
Project lead experience in security-related projects involving multiple members-Experience launching and operating SOC or CSIRT functions-Incident response experience in PSIRT or CSIRT environments
Experience in security-related projects within financial institutions-Knowledge of security standards such as FISC guidelines and PCI DSS
Experience working as a security researcher
Hands-on experience in vulnerability management
Holds network or security certifications such as CCNA, Registered Information Security Specialist, or Information Security Management
Holds AWS-related certifications such as AWS Certified Solutions Architect – Professional or AWS Certified Security – Specialty-Practical experience in AWS security configuration, monitoring, and risk mitigation
Experience in application development-Experience in developing and validating web applications
Experience in vulnerability reporting or obtaining CVE identifiers・Experience in risk assessment using frameworks such as MITRE or CIS Controls
What we value in a candidate
Proactive and able to take initiative to achieve goals
Collaborative and able to work effectively with team members toward goals
Persistent and resilient when facing challenging problems
Adaptable to the constantly evolving financial landscape and regulatory environment
Committed to continuous learning and self-improvement