KINTO Technologies
Cloud Security Engineer (Leader Candidate) / SCoE G / Tokyoã»Osaka
ã14ãã¯ã©ãŠãã»ãã¥ãªãã£ãšã³ãžãã¢ïŒãªãŒããŒåè£ïŒïŒSCoE GïŒæ±äº¬ã»å€§éª
Tags: Full-time, 2 YOE, Business Japanese
Nihonbashi Muromachi, Chuo-ku, Tokyo, Japan / Kanda Nishiki-cho, Chiyoda-ku, Tokyo, Japan / Minamisenba, Chuo-ku, Osaka, Japanã»Fetched 30+ days ago
Job Description
KINTOãã¯ãããžãŒãºã«ã€ããŠ
åŒç€Ÿã¯ãããšã¿èªåè»æ ªåŒäŒç€Ÿãã°ããŒãã«ã«å±éããã¢ããªãã£ãµãŒãã¹ãã©ã³ãã KINTO(https://www.kinto-mobility.com/) ããã¯ãããšãããããããã¢ããªãã£ãµãŒãã¹ãæè¡é åããå®çŸãããéçºçµç¹ãšããŠã2021幎4æã«èšç«ãããŸããã
ã¢ãã€ã«ãšã³ãžãã¢ãããã³ããšã³ããšã³ãžãã¢ãããã¯ãšã³ããšã³ãžãã¢ãã€ã³ãã©ãšã³ãžãã¢ãããŒã¿ãµã€ãšã³ãã£ã¹ãããã¶ã€ããŒããããã¯ããããŒãžã£ãŒãªã©ã®è·çš®ã§çŽ300åãåšç±ããŠãããçŽ25%ãå€åœç±ã®ã¡ã³ããŒã§ãã
å®å®ããçµå¶ç°å¢ãšãã³ãã£ãŒãã€ã³ããæã¡åãããæ°ãããã£ã¬ã³ãžãã§ããäŒç€Ÿã§ãïŒ
About KINTO Technologies Corporation
KINTO Technologies was established in April 2021 as a development organisation tasked with the implementation of all kinds of mobility services, including KINTO, the global mobility service brand of Toyota Motor Corporation.
We have about 300 employees in various positions including mobile engineers, front-end and back-end engineers, infrastructure engineers, data scientists, designers, and product managers; about 25% of our employees are international members.
We are a company that combines a stable environment with a venture mindset and the drive to take on new challenges.
Information
(https://blog.kinto-technologies.com/)
(https://www.wantedly.com/companies/company_7864825/stories)
Security Center of Excellence ( SCoE ) ã°ã«ãŒãã«ã€ããŠ
SCoE ã°ã«ãŒãã¯ããã«ãã¯ã©ãŠã ( AWS, Google Cloud, Azure ) ç°å¢ã®ã»ãã¥ãªãã£ã¬ããã³ã¹ãæ åœããŠããŸããKINTO ãã¯ãããžãŒãºå ã ãã§ãªããã°ã«ãŒãå ã®é¢é£çµç¹ãšãååããªãããæ¥åã«è¡ããŸããæ°èšã®ã°ã«ãŒãã§ãããæ°ããªããšã«æ°å€ããã£ã¬ã³ãžããæ©äŒããããŸãã
SCoE ã«é¢ããããã¯ããã°èšäº
CCoE掻åãšGoogle Cloudã»ãã¥ãªãã£ããªã»ããç°å¢ã®æäŸ(https://blog.kinto-technologies.com/posts/2023-06-22-whats-ccoe-and-security-preset-gcp/)
ã¯ã©ãŠãã»ãã¥ãªãã£ã®é²åããªãŒããã SCoE ã°ã«ãŒã(https://blog.kinto-technologies.com/posts/2024-05-13-SCoE/)
Azure ãµãã¹ã¯ãªãã·ã§ã³ã®åæã»ãã¥ãªãã£ãã¹ããã©ã¯ãã£ã¹ãèãã(https://blog.kinto-technologies.com/posts/2024-12-01-azure-security-preset/)
KTC ã¯ã©ãŠãã»ãã¥ãªãã£ãšã³ãžãã¢ã®ãšããäžæ¥(https://blog.kinto-technologies.com/posts/2024-12-14-CloudSecurityEngineer/)
(https://www.wantedly.com/companies/company_7864825/post_articles/950665)
ããã·ã§ã³
ã¯ã©ãŠãã»ãã¥ãªãã£ã®å°éçµç¹ãšããŠãKINTO ãã¯ãããžãŒãºã®ãã«ãã¯ã©ãŠãç°å¢ã®ã»ãã¥ãªãã£ã¬ããã³ã¹ã«è²¬ä»»ãæã¡ãŸãã
- ã»ãã¥ãªãã£ãªã¹ã¯ãçºçãããªã
- ã»ãã¥ãªãã£ãªã¹ã¯ãåžžã«ç£èŠã»åæãã
- ã»ãã¥ãªãã£ãªã¹ã¯ãçºçãããšãã«éããã«å¯Ÿå¿ãã
æ¥åå 容
ããã·ã§ã³ãéæããããã«æ§ã ãªæ¥åã宿œããŸããæ¥ã ã課é¡ãçºèŠãããããã解決ããããã«èªãæ¥åãå®çŸ©ããŸããSCoE ã°ã«ãŒãã¯ãçµç¹æšªæåã®ã°ã«ãŒãã®ãããå€ãã®ä»ã°ã«ãŒããšååãæ¥åæŽ»åãè¡ããŸãã
å ·äœçãªæ¥åå 容
â çŸåšã®ã³ã¢ããã·ã§ã³
- ã¯ã©ãŠãã»ãã¥ãªãã£ã®ã¢ãã¿ãªã³ã°ãšæ¹å掻å
- AWS Security Hub ãªã©ã® CSPMïŒCloud Security Posture ManagementïŒããŒã«ã掻çšãããã«ãã¯ã©ãŠãç°å¢ã®ã»ãã¥ãªãã£ã¢ãã¿ãªã³ã°ã宿œããŸãã
- 宿çã«ã¬ããŒããäœæãããªã¹ã¯ã®ããèšå®ãç¹å®ããŸãããããã®ãªã¹ã¯ã¯ããããã¯ãéçºããŒã ãšååããŠæ¹åãé²ããŸãã
- æ¹åæ¹æ³ãèšèŒããããã¥ã¡ã³ãã®äœæã瀟å å匷äŒãéããŠãæ¹åã®æµžéãå³ããŸãã
- è
åšæ€ç¥ãšå¯Ÿå¿
- Amazon GuardDuty çã®è åšæ€ç¥ãµãŒãã¹ã掻çšãããã«ãã¯ã©ãŠãç°å¢ã SaaS ç°å¢ã®è åšæ€ç¥ãæ¥ã 宿œããŸãã
- æ€ç¥ãããªã¹ã¯ã«ã¯ãªã¢ã«ã¿ã€ã ã§å¯Ÿå¿ããç°å¢æ§ç¯ãã«ãŒã«ã®ãã¥ãŒãã³ã°ãæ åœããŸãã
- ã¯ã©ãŠãç°å¢ã®æäŸãšã»ãã¥ãªãã£èšå®
- ãããã¯ãéçºããŒã ã«ãã«ãã¯ã©ãŠãç°å¢ãæäŸããŸããæäŸæã«ã¯ãã°ã«ãŒãããªã·ãŒãã»ãã¥ãªãã£ãã¹ããã©ã¯ãã£ã¹ã«æºæ ããèšå®ãäºåã«é©çšããŸãã
- èªååãæŽ»çšããã»ãã¥ãªãã£èšå®ã®ä»çµã¿ã¥ãããããªã·ãŒèšèšãè¡ããŸãã
- èšå®ã¢ã»ã¹ã¡ã³ããšå¹çå
- ãããã¯ã·ã§ã³ç°å¢ãã°ã«ãŒãããªã·ãŒã«æºæ ããŠããããã¢ã»ã¹ã¡ã³ãããŸãã
- å 補ããŒã«ãéçºããã¢ã»ã¹ã¡ã³ãããã»ã¹ãå¹çåããŸãã
- ä»ã°ã«ãŒããžã®ã¯ã©ãŠãã»ãã¥ãªãã£ãµããŒã
- ä»ã°ã«ãŒãã«å¯ŸããŠãã¯ã©ãŠãã»ãã¥ãªãã£ã®èгç¹ããã®ãµããŒããã¢ããã€ã¹ã宿œããŸãã
â ä»åŸã®åãçµã¿
- CWPP åã³ CIEM ããŒã«ã®å°å
¥ã»éçš
- ãã«ãã¯ã©ãŠãç°å¢ã§ã® CWPP (Cloud Workload Protection Platform) ããã³ CIEM (CloudInfrastructure Entitlement Management) ããŒã«ã®å°å ¥ãšéçšãæ åœããŸãã
- ããŒã«éžå®ããæ€èšŒãå°å ¥ãéçšãŸã§ãäžè²«ããŠå®æœããSCoE ã°ã«ãŒãå ã§ã®å 補éçºãé²ããŸãã
- çæ AI ãæŽ»çšããã¢ããªã±ãŒã·ã§ã³éçºã«å¯Ÿå¿ããã»ãã¥ãªãã£å¯Ÿç
- ã»ãã¥ãªãã£ã¬ã€ãã©ã€ã³ããã¬ãŒãã¬ãŒã«ãèšèšã»éçºããŸãã
- AWS, Azure, Google Cloud ã§ã®éçºããã»ã¹å šäœãã«ããŒããã»ãã¥ãªãã£ãã¬ãŒã ã¯ãŒã¯ãå®çŸ©ããŸãã
â ã³ãã¥ããã£æŽ»å
- ããšã¿ã°ã«ãŒãå ã§ã®ã³ãã¥ããã£æŽ»åã瀟å€ã®ã³ãã¥ããã£æŽ»åã«ç©æ¥µçã«åå ããæ å ±çºä¿¡ãè¡ã£ãŠããŸãã
ããžã·ã§ã³ã®é å
- ã¯ã©ãŠãã»ãã¥ãªãã£ã®å°éå®¶ãšããŠã瀟å å€ã®æ§ã ãªçµç¹ãšååããªãããã»ãã¥ãªãã£ã¬ããã³ã¹ã®ä»çµã¿ãäœãããšãåºæ¥ãŸãã
- æ°èšã®ã°ã«ãŒãã§ãããæ°ããªããšã«ãã£ã¬ã³ãžããæ©äŒãæ°å€ããããŸãã
- ã¯ã©ãŠãã³ã³ãã¥ãŒãã£ã³ã°ã®çºå±ãçæç³» AI çã®çºå±ã«äŒŽããã¯ã©ãŠãã»ãã¥ãªãã£ã®ãšã³ãžãã¢ã¯ãæé·ãèŠèŸŒãŸããåéã§ããã瀟å ã ãã§ãªã瀟äŒçã«ãéèŠãªåœ¹å²ãšãªããŸãã
åéèŠä»¶
å¿ é
- AWS, Google Cloud, Azure ãªã©ãçšããæ¥åã·ã¹ãã éçºã»æ§ç¯ã»éçšçµéšïŒ2幎以äžïŒ
- Well-Architected FrameworkããCIS, NIST ãªã©ã®ã¯ã©ãŠãã»ãã¥ãªãã£ã«é¢ããç¥è
- CloudFormation, Terraform, CLI ãªã©ã® IaC ã®éçºçµéš
æè¿
- CCoE ã®æŽ»åçµéšãç¹ã«ãã«ãã¢ã«ãŠã³ã管çãããªã·ãŒçå®ãªã©æè¿
- CSPM, CWPP çã®ã¯ã©ãŠããã€ãã£ãã»ãã¥ãªãã£ãµãŒãã¹ã®éçºã»æ§ç¯ã»éçšçµéš
- ã¯ã©ãŠããã³ããŒã®ãããã§ãã·ã§ãã«ã¬ãã«ïŒå°éç¥èã¬ãã«ã®è³æ Œä¿æ
- èªç€ŸïŒç€Ÿå€ã³ãã¥ããã£ã®ç«äžããéçšçµéš
- è±èªã§ã®ã³ãã¥ãã±ãŒã·ã§ã³ãå¯èœãªæ¹ïŒ ããžãã¹ã¬ãã« )
- ã°ã«ãŒãäŒç€Ÿãšã®ã³ãã¥ãã±ãŒã·ã§ã³ã«å©çšããŸã
人ç©å
- ã¯ã©ãŠãã»ãã¥ãªãã£ã«èå³ããããææ°æè¡ãåŠã³ãªããå®è·µãããæ¹
- ååãã«ä»äºã«åãçµãå§¿å¢ããæã¡ã®æ¹
- èªãèããè¡åããç©æ¥µæ§ããæã¡ã®æ¹
- çµç¹ïŒåœ¹å²ãè¶ããã³ãã¥ãã±ãŒã·ã§ã³ãå¯èœãªæ¹
- æ°ãããµãŒãã¹ãæè¡ã«å¯Ÿãã奜å¥å¿ããã£ã¬ã³ãžç²Ÿç¥ããæã¡ã®æ¹
- åžžã«èªå·±ç éœãããæ¹
éçºç°å¢
- PCïŒWindows ãš Mac ããèªç±ã«éžæå¯
- éçºèšèªïŒCloudFormation, Terraform ãªã©
- ãã©ãããã©ãŒã ïŒAWS, Google Cloud, Azure ãªã©
- ããŒã«ïŒDocker, Github, JIRA, Confluence, Slack, Zoom, Teams ãªã©
ãè·çš® / åéããžã·ã§ã³ã
ã14ãã¯ã©ãŠãã»ãã¥ãªãã£ãšã³ãžãã¢ïŒãªãŒããŒåè£ïŒïŒSCoE GïŒæ±äº¬ã»å€§éª
ãéçšåœ¢æ ã
æ£ç€Ÿå¡
ã絊äžã
幎å 5,200,000å ã 12,400,000å
â è©³çŽ°ïŒæçµŠå¶ãåºæ¬çµŠ 241,000åïœ/æ
â è³äžïŒå¹Ž2åïŒ7æã»12æïŒ
ãå€åå°ã
æ±äº¬éœäžå€®åºæ¥æ¬æ©å®€çº2äžç®3-1 COREDO宀çº2
æ±äº¬éœå代ç°åºç¥ç°éŠçºäžäžç®22çªå° ãã©ã¹ã¹ã¯ãšã¢8F
倧éªåºå€§éªåžäžå€®åºåè¹å Ž4äžç®3çª11å· å€§éªè±ç°ãã«ïŒF
â 宀çºãªãã£ã¹
æ±äº¬ã¡ãã åèµéç·ã»é座ç·ãäžè¶åé§ ãçŽçµ A6çªåºå£
JR ç·æŠç·å¿«éãæ°æ¥æ¬æ©é§ ãçŽçµ
â ç¥ä¿çºãªãã£ã¹
æ±äº¬ã¡ããåèµéç·ã»éœå¶äžç°ç·ãç¥ä¿çºãé§ åŸæ©2å
â Osaka Tech LabïŒå€§éªãªãã£ã¹ïŒ
å°äžé埡å çç·ã»é·å é¶ŽèŠç·å°ç·ãå¿ææ©é§ ã3çªåºå£ åŸæ©1å
â»æ·å°å çŠç ïŒå±å å«ç å¯èœå ŽæããïŒ
â»å€æŽã®ç¯å²ïŒäŒç€Ÿã®å®ãããªãã£ã¹
ãæ¥åå 容ã
éå ¥ãçŽåŸïŒä»äºæŠèŠã«èšèŒã®ããæ¥åå 容
倿Žã®ç¯å²ïŒäŒç€Ÿã®å®ããæ¥å
ãåŸ éã»çŠå©åçã
â æ®æ¥
æ®æ¥æéã«å¿ããŠå¥éæ¯çµŠïŒæéé£åå¶ïŒ
â»äžå®ã®è·å¶ä»¥äžã¯åºå®æ®æ¥ä»£å¶ïŒ30æéåãæçµŠã«ããããŠæ¯çµŠãè¶ éåã¯å¥éæ¯çµŠïŒ
â å€åæé
ã³ã¢ã¿ã€ã ç¡ããã«ãã¬ãã¯ã¹ã¿ã€ã å¶åºŠïŒ1æ¥åœããã®å®å8æéïŒ
â éè·é
ããïŒéè·äžæéã»ç¢ºå®æ åºå¹ŽéïŒ
â çŠå©åç
å®¶è³è£å©ïŒå身赎任çäžéšå¯Ÿè±¡è ã®ã¿ïŒãå®¶ææåœïŒèŠå®ã«æºããŠæ¯çµŠïŒãæä¿¡ç©ç«ãŠãµãŒãã¹ ãªã©
â è©Šçšæé
3ã¶æïŒè©Šçšæéäžã®å€åæ¡ä»¶ïŒå€æŽç¡ïŒ
ãäŒæ¥ã»äŒæã
â äŒæ¥
åååã»æ¥ã»ç¥ç¥æ¥ã幎éäŒæ¥121æ¥
â æçµŠäŒæ
ã»å幎床ïŒå ¥ç€Ÿæã«å¿ãä»äž
ã»ïŒå¹Žç®ä»¥éïŒæ¯å¹ŽïŒæã«èŠå®æ¥æ°ãä»äž
â 瀟äŒä¿éº
å¥åº·ä¿éºãåç幎éãéçšä¿éºãåŽçœä¿éº
äŒç€Ÿæ å ±
ãäŒç€Ÿåããã¯ãããžãŒãºæ ªåŒäŒç€Ÿ
ã代衚è ã
代衚åç· åœ¹ç€Ÿé·ãå°å¯º ä¿¡ä¹
ãèšç«ã
2021幎4æ
ãäºæ¥å 容ã
ããžã¿ã«åéã«ãããæ å ±ã·ã¹ãã ã®èšèšãéçºãéçšç®¡çããã³è²©å£²çã®æ å ±åŠçãµãŒãã¹ãäŒæ¥çµå¶æŠç¥ãããŒã±ãã£ã³ã°æŠç¥ã®äŒç»ãç«æ¡ããã³ã³ã³ãµã«ãã£ã³ã°ã«é¢ããæ¥å
ãäž»èŠæ ªäž»ã
ããšã¿ãã¡ã€ãã³ã·ã£ã«ãµãŒãã¹æ ªåŒäŒç€ŸïŒ100%åºè³ïŒ
ãæ¬ç€Ÿæåšå°ã
æç¥çåå€å±åžäžæåºåé§ åäžç®8çª18å·
åå€å±äžäºãã«ãã£ã³ã°å通 14F
ããªãã£ã¹ã
â 宀çºãªãã£ã¹
æ±äº¬éœäžå€®åºæ¥æ¬æ©å®€çº2-3-1
宀çºå€æ²³äžäºãã«ãã£ã³ã°ïŒCOREDO宀çº2ïŒ
â ç¥ä¿çºãªãã£ã¹
æ±äº¬éœå代ç°åºç¥ç°éŠçºäžäžç®22çªå°
ãã©ã¹ã¹ã¯ãšã¢8F
â åå€å±ãªãã£ã¹
æç¥çåå€å±åžäžæåºåé§ åäžç®8çª18å·
åå€å±äžäºãã«ãã£ã³ã°å通 14F
â Osaka Tech LabïŒå€§éªãªãã£ã¹ïŒ
倧éªåºå€§éªåžäžå€®åºåè¹å Ž4äžç®3çª11å·ã倧éªè±ç°ãã«ïŒF
ãè³æ¬éã
1,000äžå
ãåŸæ¥å¡æ°ã
çŽ300åãâ»2023幎6æçŸåš
ãé¢é£äŒç€Ÿã
ããšã¿ãã¡ã€ãã³ã·ã£ã«ãµãŒãã¹æ ªåŒäŒç€Ÿ
ããšã¿ãã¡ã€ãã³ã¹æ ªåŒäŒç€Ÿ
æ ªåŒäŒç€ŸKINTOãã»ã