Global Cybersecurity Planning and Implementation

Mizuho Financial Group

Cybersec

Security

About this role

This full-time role leads global cybersecurity planning, design, rollout, and governance across overseas offices and subsidiaries. The position works with domestic CISO and planning teams to build and operate a consistent framework that reflects the regulations and business characteristics of each country.

Responsibilities include designing and standardizing global cybersecurity policies, standards, and control frameworks; aligning local policies with global requirements, regulations, and industry standards; deploying security measures to overseas locations and subsidiaries; and building agreement with regional CIOs, CISOs, and IT leaders.

The role also designs a global incident-response structure, including overseas locations, and leads the coordination of initial response support, headquarters assistance, and recurrence-prevention measures when an incident occurs. It promotes the collection, analysis, and distribution of cyber-intelligence from overseas information agencies, industry organizations, and vendors. The assigned scope may be adjusted according to experience and skills, including a lead role or planning and practical execution.

The Cybersecurity Control Division combines first-line functions for defense, detection, and response to cyberattacks with second-line functions for group-wide rulemaking and governance. Its scope includes important infrastructure systems, large-scale cloud environments, overseas offices, and overseas subsidiaries.

Required qualifications are advanced cybersecurity expertise and practical experience; experience working in a global environment or equivalent communication ability; experience leading, discussing, or negotiating projects with overseas offices, subsidiaries, or customers, or participating in global projects; experience advancing a project across multiple departments and countries or locations as a project leader or core member; and business-level English. Preferred qualifications include internationally recognized security certifications such as CISSP, CISM, CISA, GIAC, or Registered Information Security Specialist. Experience with deep, document-level understanding of NIST, CIS, or CRI security guidelines, organizational application, and gap analysis is also preferred, as is cybersecurity or IT risk management experience at a global financial institution, financial authority, international organization, or multinational company. No education requirement is stated.

The work location is Tokyo, with possible changes to company-designated locations including telework locations. The contract has no fixed term, although individualized treatment may be offered based on experience. The probationary period is six months, with the same salary during probation. Standard hours are 8:40 to 17:10, including 7.5 hours of scheduled work and a 60-minute break; flextime may apply depending on the department. Saturdays, Sundays, public holidays, and year-end and New Year holidays are days off. Annual paid leave is 21 days, subject to a first-year adjustment based on the hiring month, with other special leave available. Overtime and holiday work may be required. Monthly pay is determined under company rules based on ability and suitability. Commuting expenses are fully covered under company rules, and a lunch subsidy may be provided. Employment, workers' compensation, health, and employees' pension insurance are provided, along with a stock ownership plan, babysitter childcare discount, housing-related programs, asset-building support, and leisure support. Indoor smoking is prohibited.

This is an AI-generated summary of the employer's original posting — details can be incomplete, out of date or simply wrong. Always confirm everything on the official posting before applying.