Chief Information Security Officer

System DevelopmentTokyo, Japan

Job Description

You will be responsible for designing and implementing security environments for crypto-related services, both domestic and international, including following:

  • Building, configuring, and implementing security environments for crypto-related services in Japan and abroad
  • Strengthening product security in the context of global service expansion
  • Supporting and verifying secure development in collaboration with system development teams
  • Conducting risk analysis and providing technical support
  • Handling security incidents and developing appropriate response processes

Required qualifications

  • 5+ years of hands-on experience in security-related organizations-Practical experience in programming or server set-up
  • Capable of performing actual system design and implementation, not just vendor coordination
  • Experience in designing, building, and operating network and security products-Proven track record in driving end-to-end activities from selection to validation and implementation of security solutions-Experience in planning and executing product security enhancements
  • Hands-on experience in vulnerability assessment or penetration testing
  • Experience in risk analysis and technical consulting-Experience in applying threat modeling for internal initiatives and support
  • Hands-on experience in responding to real-world security incidents
  • English: Business level
  • Japanese: Fluent

Preferred qualifications

  • Project lead experience in security-related projects involving multiple members-Experience launching and operating SOC or CSIRT functions-Incident response experience in PSIRT or CSIRT environments
  • Experience in security-related projects within financial institutions-Knowledge of security standards such as FISC guidelines and PCI DSS
  • Experience working as a security researcher
  • Hands-on experience in vulnerability management
  • Holds network or security certifications such as CCNA, Registered Information Security Specialist, or Information Security Management
  • Holds AWS-related certifications such as AWS Certified Solutions Architect – Professional or AWS Certified Security – Specialty-Practical experience in AWS security configuration, monitoring, and risk mitigation
  • Experience in application development-Experience in developing and validating web applications
  • Experience in vulnerability reporting or obtaining CVE identifiers・Experience in risk assessment using frameworks such as MITRE or CIS Controls

What we value in a candidate

  • Proactive and able to take initiative to achieve goals
  • Collaborative and able to work effectively with team members toward goals
  • Persistent and resilient when facing challenging problems
  • Adaptable to the constantly evolving financial landscape and regulatory environment
  • Committed to continuous learning and self-improvement

Compensation

JPY 10,000,000~20,000,000

Location

Tokyo, Japan