Supports Claris partners and customers through technical demonstrations, solution proposals, documentation, training, and custom FileMaker applications, including AI-enabled use cases.
About this role
This full-time information security role will advance company-wide security initiatives while working with the security management officer and teams across engineering, human resources and general affairs, and corporate management. The position will initially operate as an individual contributor and is intended to develop into leadership of the Security Management Department.
Responsibilities include planning and progressing ISMS certification, preparing and managing related documents and evidence, conducting risk assessments and treatments, tracking response plans, checking control effectiveness, and supporting internal audits, management reviews, certification assessments, and continued ISMS improvement. The role will also identify company-wide security risks, propose controls, implement and operate measures with relevant departments, and improve gaps between rules and actual operations.
The role manages information asset inventories and access reviews, checks security controls for internal SaaS and systems, administers accounts and permissions, reviews administrator and privileged access, and considers MFA, SSO, IdP, VPN, connection restrictions, and company-managed devices. Cloud access and security improvements are coordinated with engineering. Additional responsibilities cover security assessments for vendors and cloud services, security questionnaires, periodic reassessments, and security requirements at contract start, change, and termination.
Other duties include drafting and revising information security policies, standards, and procedures; communicating rules and responding to internal questions; planning employee security education and exercises; handling initial information gathering and investigation support during incidents; maintaining records; analyzing causes; promoting corrective actions; and improving incident processes. The role coordinates with LINE Yahoo Group security functions, certification bodies, security vendors, and internal stakeholders, and distributes relevant threat information internally. Major policy and risk decisions are handled with the security officer and management, while advanced product and cloud-platform decisions are handled with engineering.
The working environment includes Google Workspace, Slack, Notion, GCP, AWS and other cloud services, SaaS, MFA, SSO, VPN-based remote access, endpoint security services, information asset registers, and system access-control management tables. Required experience is approximately three years or more planning or operating information security measures in information security, information systems, IT infrastructure, or a related field, including practical experience with ISMS, security management, IT controls, asset management, access rights, risk management, or security operations. Candidates must understand technologies such as MFA, SSO, cloud services, endpoint management, and networks, and be able to work with multiple internal departments while continuing to learn about security technologies, threats, and regulations. Management experience and prior responsibility for an entire ISMS certification project are not required.
Preferred experience includes ISMS construction, certification, operation, or secretariat work; policy development; risk assessment and treatment; SaaS or cloud security; AWS environments; IdP, SSO, and MFA; MDM or EDR; vendor assessments; incident response; security education; internal, external, or certification audits; P-Mark operation; security work at an IT or SaaS company; coordination with parent or group-company security teams; and leadership of a small project or team. Relevant qualifications include Registered Information Security Specialist, CISSP, and CISM.
The role is based in Shibuya, Tokyo. Work combines two office days per week with remote work, although office frequency may change based on business conditions or group policy. Flextime applies with eight standard working hours, a 11:00–16:00 core period, flexible periods from 6:00–11:00 and 16:00–22:00, and a one-hour break. Annual compensation is JPY 6.0–8.5 million, with monthly pay of JPY 500,000–709,000 including fixed overtime pay. Benefits include health checks, influenza vaccination support, qualification-cost assistance, seminar and conference allowances, commuting expenses, and a JPY 10,000 monthly remote-work allowance subject to the stated commuting-pass condition. Insurance includes health, pension, employment, and workers’ compensation coverage. Holidays include weekends, national holidays, and December 29 through January 3, plus statutory annual leave, up to three days of annual Trevaca leave, and special leave. The selection process is document screening, an aptitude test before the first interview, a final interview, and an offer meeting.
This is an AI-generated summary of the employer's original posting — details can be incomplete, out of date or simply wrong. Always confirm everything on the official posting before applying.