Business & corporate roles in Tokyo scored for foreign professionals — visa sponsorship, Japanese level, salary and fit. Create a matching profile to personalize the ranking.

Close
Register
Log in

After sending, check your email and click the link

Close
Profile
Opportunities
Resume

City


Information Security and Privacy Governance Specialist

Close

About this role

This senior individual-contributor role leads one or two high-priority, company-wide information security and privacy governance themes. The specialist investigates current operations, policies, authorities, decisions and implementation status; distinguishes facts from hypotheses; identifies priority issues; and compares options by risk, impact, implementation effort and dependencies. They present recommendations and convert agreed direction into RACI, decision criteria, SOPs, KPIs/KRIs and roadmaps through to implementation and adoption.

The role works across executives, legal, Corporate IT, Product Security, business functions, risk management, data and cloud platform teams, Trust & Safety and internal audit. It provides standards, advice and monitoring rather than replacing these teams' implementation, risk aggregation or independent-assessment responsibilities. The position does not manage a department's personnel, budget or operations and does not require the employee to perform technical implementation.

Potential ownership areas include enterprise security and privacy governance; GRC, ISMS, audits, customer security matters and third-party risk; security support for new businesses, SaaS, generative AI and data use; privacy governance, PMS, PIA and privacy by design; major incidents, crisis management and resilience; and Product Security, cloud governance and security architecture. The specialist also develops reusable decision criteria, FAQs, templates and knowledge resources, supports reviews and knowledge transfer, and improves controls based on legal, standards and technology developments.

Within the first three to six months, the employee is expected to understand the assigned area's operations, organization, rules, decisions and key risks; visualize responsibility gaps and overlaps; agree on one or two themes and implementation plans; and establish a 12-month roadmap with baseline measures and KPIs/KRIs. By 12 months, the assigned governance mechanisms should be established and able to demonstrate improvements in dependency on individuals, delays, rework or central-team reliance.

Required experience includes demonstrated results resolving difficult issues in at least one specialist area; structuring ambiguous cross-functional problems; building agreement among stakeholders with different interests; establishing policies or processes; and supporting leadership decision-making with facts, risks, options and recommendations. Candidates must have demonstrated expertise in at least one of GRC and third-party assurance, business security partnership, enterprise governance design, privacy, incident and resilience management, or Product Security and cloud. They must understand relevant systems, data and cloud configurations sufficiently to discuss risks, options and implementation effort with technical leaders.

Preferred qualifications include cross-functional governance work at organizations with 1,000 or more employees, listed companies or fast-growing IT/Web companies; governance design involving group companies, new businesses or M&A; practical use of NIST CSF, CIS Controls, ISO/IEC 27001/27701 or the NIST Privacy Framework; mentoring or reviewing specialists; relevant professional credentials; and experience incorporating generative AI or AI agents into research, reviews, documentation or knowledge workflows with quality, information-management and human-review controls. Listed tools include Google Workspace, Slack, Notion, generative AI, Gem and AI agents.

This is a full-time role in Minato, Tokyo, with a three-month probation period. The working arrangement is generally three days in the office each week. A flextime system has core hours of 11:00–15:30, with standard hours of 09:30–18:30 and eight hours per day. Annual compensation is JPY 9.0–13.0 million, including bonuses paid twice yearly; bonus amounts vary with individual performance, prior compensation is considered, and salary is reviewed twice yearly. The role includes 120 annual holidays, a two-day weekend system, paid leave and other listed leave, commuting expense support up to JPY 50,000 per month, social insurance and additional employee benefits.

Job details

Location
Tokyo
Salary
9 - 13 million yen
Employment
Full-time
Japanese
Japanese
Posted
2026-07-23
Category
Business & Corporate Roles

About Timee

Timee operates a leading Japanese spot-work app that instantly matches workers with short-term, on-demand jobs with no interview required.

All Timee jobs & company profile →

Company details

Size
Mid-size
Founded
2017
HQ
Tokyo, Japan
Employees
501–1,000
Industry
HR Tech · Gig Work
Funding
Publicly traded

AI-generated overview — may be incomplete or wrong, so don't rely on it fully.

This is an AI-generated summary of the employer's original posting — details can be incomplete, out of date or simply wrong. Always confirm everything on the official posting before applying.