Handles technical verification, requirements-definition support, design, development, and operations for product systems; manages development teams and projects while improving internal systems.
About this role
The role coordinates cybersecurity teams across domestic and international group companies within a major securities group. Responsibilities include collaborating with group CSIRTs, SOCs, financial institutions and security companies on cyber incident response and strengthening security measures.
The position analyzes threat intelligence from external research organizations, financial institutions, security companies and OSINT sources, then plans proactive responses. It evaluates network, public cloud, on-premises business systems and workplace-device architectures from a security perspective, researches technical countermeasures, defines requirements and supports implementation in system infrastructure.
The role develops short- and medium-term technology roadmaps aligned with system renewals, and plans revisions to organizational operations, monitoring structures and cybersecurity governance. It also plans, introduces and supports the operation of measures for group subsidiaries in coordination with the company’s systems subsidiary, including support for cyber incident response.
Additional responsibilities include monitoring the cybersecurity measures of domestic and overseas affiliated companies, taking corrective action where necessary, managing the CSIRT secretariat and coordinating group-wide incident confirmation and joint response. The position also serves as a contact point for the Financial ISAC and external organizations, including supervisory authorities.
Required qualifications include native-level Japanese, English equivalent to a TOEIC score of 900 or the ability to communicate in English by telephone and video conference, logical decision-making for ambiguous problems, the ability to explain difficult subjects and overall concepts, and hypothesis-driven thinking. Required experience includes at least three years in cybersecurity strategy planning, governance or assessment framework development, incident response or security operations, or security-company monitoring, incident response or penetration testing. Experience planning system architecture grand designs and analyzing cyber intelligence is also required. Knowledge equivalent to or above the IT Passport level, security-related information-processing certifications, project management, governance and rule development, network technology, OA infrastructure and security products are welcome. The position is full-time in Marunouchi, Tokyo, with working hours of 8:40–17:10 and a one-hour break. The schedule includes Saturdays, Sundays, public holidays and year-end holidays off, with 17–23 days of paid leave and other stated leave programs. Salary is discussed at the interview.
This is an AI-generated summary of the employer's original posting — details can be incomplete, out of date or simply wrong. Always confirm everything on the official posting before applying.