Lead customer projects for major Japanese companies from scope and architecture through data pipelines, implementation, rollout and operations, coordinating departments. Remote work is available.
About this role
The Security Lead will define and execute security strategy and roadmaps across the company and its group companies. The role covers designing, prioritizing and implementing security measures; improving security architecture and foundations across multiple products and IT environments; evaluating, selecting, introducing and improving security solutions and tools; and driving practical countermeasures with development, SRE and Corporate IT teams.
The role will also advise executives, including the CISO and business leaders, by organizing technical risks, providing risk-based recommendations and supporting decisions. During security incidents, responsibilities include leading investigation, containment and recovery, coordinating with relevant departments and external partners, organizing the situation during serious incidents, escalating issues and supporting executive decisions. The role will strengthen CSIRT processes and incident-response structures over time.
People management responsibilities include setting goals for the security team, hiring, performance evaluation and employee development. The role will also improve organizational structures and work processes and coordinate with external partners, specialists and audit firms. It initially requires a detailed understanding of operational conditions and existing systems from a technical and architectural perspective, with responsibility expected to expand toward organization management, group-wide governance and strategy, and eventually a security leadership role including CISO responsibilities.
Required qualifications include experience leading security design, implementation or operation and making appropriate technical decisions; team management experience in security or IT, including hiring, evaluation and development; experience completing cross-organizational initiatives with multiple departments and stakeholders; experience structuring technical risks and building agreement with executives and business leaders; and experience leading investigation, containment and recovery during security incidents.
Preferred experience includes serving as a security leader, deputy CISO or security manager across multiple areas; developing company-wide security policies, roadmaps or architecture; advising executives on risk and decision-making; building or improving CSIRT or SOC operations; leading major-incident response and executive reporting; handling security, IT controls, J-SOX or audit matters at a listed or listing-preparation company; integrating security after an M&A transaction; managing group companies, budgets, vendors or audit firms.
The company operates the Speeda economic-information platform, the NewsPicks economic-news platform and MIMIR services, with both B2B and B2C products. Products have different business models, technology stacks and development cultures, including agile development and pair programming. The security function works across corporate security, product development, SRE and business operations in a period involving business expansion, group-management enhancement, M&A and preparation for relisting.
This is a full-time position in Marunouchi, Chiyoda-ku, Tokyo, with remote work permitted. The work schedule uses a super-flextime system. Annual compensation is JPY 11,000,000 to JPY 13,000,000, with the final amount determined through the selection process based on experience and skills. Holidays include Saturdays, Sundays and public holidays, annual paid leave of 10 days or more, and a long-vacation benefit providing two seven-consecutive-day breaks per year including weekends. Benefits include a company-provided PC selected from a catalog and a reduced-hours system. The possible work location may change to the employee's home, the head office or another company-approved location, and duties may change to any duties designated by the company. The selection process is document screening, approximately four online interviews, an offer meeting and a final offer; the stated period from the first interview to the offer is approximately two to three months.
This is an AI-generated summary of the employer's original posting — details can be incomplete, out of date or simply wrong. Always confirm everything on the official posting before applying.