Mercari
Senior IT Risk & Security Specialist
Senior IT Risk & Security Specialist - Merpay/Mercoin
Tags: Full-time, 6~8 YOE, Fluent Japanese
Roppongi, Minato City, Tokyo, Japanã»Fetched 23 days ago
Job Description
Team: Accounting/Auditing
This job requires Japanese language ability. JD is available in Japanese only. ã
Senior IT Risk ïŒ Security Specialist - Merpay/Mercoin
- éçšåœ¢æ ïŒãæ£ç€Ÿå¡
- åãæ¹ïŒ ãã¬ãã¯ã¹ã¿ã€ã å¶ïŒã³ã¢ã¿ã€ã ãªãïŒ
- å€åå°ïŒ å æ¬æš
詳现ã¯ãã£ãªã¢ãµã€ãã®åéèŠé ããã確èªãã ãã
ã¡ã«ã«ãªã°ã«ãŒãã«ã€ããŠ
ãããã䟡å€ã埪ç°ããããããã人ã®å¯èœæ§ãåºãã
ãå°çè³æºãéãããŠãããªããããè±ããªç€ŸäŒãã€ããããã«äœãã§ããããã2013幎ã嵿¥è ã®å±±ç°é²å€ªéãäžçäžåšã®æ ã§æ±ããèª²é¡æèãããããªãã¢ããªãã¡ã«ã«ãªãã¯çãŸããŸãããç§ãã¡ã¯ãç©ççãªã¢ãããéã«éãããããã䟡å€ã埪ç°ãããããšã§ã誰ããããããããšãå®çŸãã人ã瀟äŒã«è²¢ç®ããããã®éžæè¢ãå¢ããããšãã§ãããšä¿¡ããŠããŸãã
ãã¯ãããžãŒã®åã§äžçäžã®äººã ãã€ãªãããããã人ã®å¯èœæ§ãçºæ®ãããäžçãå®çŸããŠãããŸããã¡ã«ã«ãªã°ã«ãŒãã®ç®æãã¹ãæ¹éã«ã€ããŠã¯ Mercari Culture Doc ãã芧ãã ããã
çµç¹ã»ããŒã ã®ããã·ã§ã³
- Fintechäºæ¥è ãšããŠãã客æ§ããé·æçãªä¿¡é ŒãåŸãããã«å¿ èŠãªã匷åºãªæ å ±ã»ãã¥ãªãã£ããã³ã·ã¹ãã ãªã¹ã¯ç®¡çæ å¢ãæ§ç¯ããç¶ç¶çã«æ¹åããŸã
- ã¹ããŒãçµå¶ãæ¯ããITã¬ããã³ã¹ã確ç«ããå€åã«å¯ãã ç°å¢äžã§æ°ããæä»£ã®ã¹ã¿ã³ããŒããåµåºããŸã
- ã¡ã«ã«ãªã®ããã·ã§ã³ã»ããªã¥ãŒã«ã€ããŠã®è©³çްã¯ãã¡ããã芧ãã ãã
æ¥åå
容
ã¡ã«ãã€ã»ã¡ã«ã³ã€ã³ã®æ å ±ã»ãã¥ãªãã£ããã³ã·ã¹ãã ãªã¹ã¯ç®¡çãçµ±æ¬ããã¹ãã·ã£ãªã¹ããšããŠãFintechäºæ¥ãã²ããŠã¯ã°ã«ãŒãå šäœã®GRC(Governance, Risk, Compliance)ç®¡çæ å¢åŒ·åã«è²¢ç®ããŠããã ããŸããåéšçœ²ãšé£æºããç€Ÿå æèã®åäžãç®çãšããæœçã®äŒç»ã»å°å ¥ãããªã·ãŒãããã»ã¹ã®çå®ã»å®è¡ããªãŒãããŠããã ããŸãã
ã¡ã«ã«ãªã°ã«ãŒãã¯ãããªãã¢ããªãã¡ã«ã«ãªãã«å ããæ±ºæžãµãŒãã¹ãã¡ã«ãã€ããæå·è³ç£é¢é£äºæ¥ãã¡ã«ã³ã€ã³ããªã©ã倿§ãªéèãããã¯ããæäŸããŠãããæ å ±ã»ãã¥ãªãã£ããã³ã·ã¹ãã ãªã¹ã¯ç®¡çã®éèŠæ§ã¯ãŸããŸãé«ãŸã£ãŠããŸãã
æ¬ããžã·ã§ã³ã§ã¯ãã¡ã«ãã€ã»ã¡ã«ã³ã€ã³ã®ITã·ã¹ãã ãäžå¿ã«ãã¡ã«ã«ãªã°ã«ãŒãã®ãªã¹ã¯ç®¡çéšéãã³ã³ãã©ã€ã¢ã³ã¹éšéããããã¯ãã»ãšã³ãžãã¢ãªã³ã°éšéãšç·å¯ã«é£æºããéèäºæ¥ã«ãããIT Risk Managementå šè¬ãæ ã£ãŠããã ããŸãã
å ·äœçã«ã¯ã以äžã®æ¥åã«å¹ åºãæºãã£ãŠããã ããŸãã
- æŠç¥çå®ãšäœå¶æ§ç¯: æ å ±ã»ãã¥ãªãã£ããã³ã·ã¹ãã ãªã¹ã¯ç®¡çæ å¢ã®æ¹éçå®ãèŠçšé¡ã®æŽåãäœå¶èšèšã»æ§ç¯ãããã³ç¶ç¶çãªæ¹åãæšé²ããŸãã
- ãªã¹ã¯ã¢ã»ã¹ã¡ã³ããšå¯Ÿå¿: ã·ã¹ãã ãªã¹ã¯ã®è©äŸ¡ãšè»œæžçã®å®æœãããã³ã·ã¹ãã ãªã¹ã¯ã®ã¢ãã¿ãªã³ã°ãè¡ããŸãã
- ããã»ã¹èšèšãšæ¹å: æ å ±ã»ãã¥ãªãã£ããã³ã·ã¹ãã ãªã¹ã¯ç®¡çã«é¢ããããã»ã¹ã®èšèšã»æ§ç¯ãææžåãè¡ããæ¢åããã»ã¹ã®æ¹åãç¶ç¶çã«å®æœããŸãã
- æè²ãšåè: æ å ±ã»ãã¥ãªãã£ããã³ã·ã¹ãã ãªã¹ã¯ç®¡çã«é¢ããç€Ÿå æè²ã»åèæŽ»åãäŒç»ãã宿œããŸãã
- ãããžã§ã¯ãæ¯æŽ: åçš®éèãããžã§ã¯ããæ å ±ã»ãã¥ãªãã£ããã³ã·ã¹ãã ãªã¹ã¯ç®¡çã®èгç¹ããæ¯æŽããŸãã
- ã€ã³ã·ãã³ã管ç: ã·ã¹ãã é害ã®ç®¡çãåæãå ±åãè¡ããšãšãã«ãã»ãã¥ãªãã£ã€ã³ã·ãã³ãçºçæã®å¯Ÿå¿ãäž»å°ããŸãã
- å€éšå§èšç®¡ç: å€éšå§èšå ãå€éšãã³ããŒãå€éšãµãŒãã¹ã®å©çšã«é¢ããã»ãã¥ãªãã£ç®¡çã培åºããŸãã
- ç£æ»ã»æ€æ»å¯Ÿå¿: æ å ±ã»ãã¥ãªãã£ã«é¢ããç£æ»ãæ€æ»å¯Ÿå¿ãããã³å å€ç£æ»å¯Ÿå¿ãåœå±æ€æ»å¯Ÿå¿ãã¹ã ãŒãºã«è¡ããŸãã
äžèšã«å ããã³ã³ãã©ã€ã¢ã³ã¹é¢é£æ¥åããã®ä»ã®IT Risk Managementé¢é£æ¥åã«ã€ããŠããç¶æ³ã«å¿ããŠãæ åœããã ãå¯èœæ§ããããŸãã
ãŠããŒã¯ãªãã£ã¬ã³ãž
- AIã»LLMãæŽ»çšããæ°ããªIT Risk Managementç®¡çæ å¢ã®æ§ç¯
- Fintechäºæ¥ãã²ããŠã¯ã¡ã«ã«ãªã°ã«ãŒãå šäœã®GRC(Governance, Risk, Compliance)ç®¡çæ å¢ãçµå¶èŠç¹ã§åŒ·åããŠããåãçµã¿
- åªãããšã³ãžãã¢ãªã³ã°ããŒã ãšé£æºããå€åã®æ¿ããç°å¢ã®äžã§æ¬¡äžä»£ã®ç®¡çæ å¢ã®æšæºãæ§ç¯
å¿åèŠä»¶
- æ±ããçµéšã»ã¹ãã«
- ã¡ã«ã«ãªã°ã«ãŒãããã³åã«ã³ãããŒã®ããã·ã§ã³ãšããªã¥ãŒã«å ±æããŠããã ããæ¹
- æ¥åçµéš:
- éèæ¥ã«ãããæ å ±ã»ãã¥ãªãã£ããã³ã·ã¹ãã ãªã¹ã¯ç®¡çæ¥åã®çµéšããããã¯ããã«æºããç¥èŠãããã³ã³ã³ãµã«ãã£ã³ã°ã»ã¢ããã€ã¶ãªãŒæ¥åçµéšïŒ5幎以äž
- æè¡çµéš:
- ããã³ããšã³ããããã¯ãšã³ããã€ã³ãã©ããããã¯ãŒã¯çãããããã®ç¹å®é åã«ããããšã³ãžãã¢ãªã³ã°ãŸãã¯PMã®å®åçµéšïŒ3幎以äž
- ç¥èã»ã¹ãã«
- ã·ã¹ãã ãªã¹ã¯ã®èгç¹ãã課é¡ãçºèŠãã解決ã«å°ããé«ãè«ç¹æŽçèœå
- å©å®³ãã¹ãã«ã¬ãã«ã®ç°ãªãè€æ°ã®é¢ä¿è ãšèª¿æŽããåæåœ¢æã§ããé«ãã³ãã¥ãã±ãŒã·ã§ã³ã¹ãã«
- çŸç¶ã®èª²é¡ãèªãèŠã€ããŠèª²é¡èšå®ãã解決ã«åããŠèªèµ°ã§ããèœå
- æ¥æ¬èªã«ãããåçš®æ³ä»€ã®èªè§£ãããã³èŠçšé¡ã®ææžå·çã¹ãã«
- 瀟å ã»ç€Ÿå€åãã®å ±åã¹ãã«ïŒè³æäœæããã¬ãŒã³ãå«ãïŒ
- åºæ¬çãªãããªãã¯ã¯ã©ãŠãã«é¢ããç¥èïŒGoogle Cloud, AWS, Microsoft Azure çïŒ
- åºæ¬çãªITã€ã³ãã©ã«é¢ããç¥èïŒTCP/IP, ãããã¯ãŒã¯, ãµãŒã, èªèšŒããã£ã¬ã¯ããªãµãŒãã¹, ãšã³ããã€ã³ããããŒãžã¡ã³ãïŒ
- æè¿ããçµéšã»ã¹ãã«
- ç¥èã»è³æ Œç
- æ å ±ã»ãã¥ãªãã£ãã·ã¹ãã ãªã¹ã¯ãã·ã¹ãã ç£æ»ã«é¢é£ããè³æ ŒïŒCISAãCISMãCISSPãªã©ïŒ
- ITã·ã¹ãã ã«é¢ããå¹ åºãç¥è
- æ å ±ã»ãã¥ãªãã£ã»ãµã€ããŒã»ãã¥ãªãã£ã»å人æ å ±ä¿è·æ³ã«é¢ããç¥èŠ
- FISCããŒã¹ã®å éšçµ±å¶ãISO27001ãCIS ControlsãNIST SP 800-171 çãäœç³»åãããã»ãã¥ãªãã£ã»ãã¬ãŒã ã¯ãŒã¯ã«é¢ããç¥èåã³éçšçµéš
- ã»ãã¥ãªãã£ç®¡çããŒã«ã«é¢ããåºæ¬çãªç¥è (SAST, DAST, EDR, CASB ç)
- AIã»LLM ã«é¢ããç¥èŠ
- å®åçµéš
- è³éæ±ºæžæ³ã»è²žéæ¥æ³çã®åçš®æ³ä»€ã«åºã¥ãã·ã¹ãã ãªã¹ã¯ç®¡çæ¥åã®çµéš
- ITå šè¬çµ±å¶ã«é¢ãã察å¿çµéš
- ã·ã¹ãã ã«é¢ããå€éšå§èšå ã®è©äŸ¡çµéš
- ã³ã³ãã£ã³ãžã§ã³ã·ãŒãã©ã³ã®äœæããã³èšç·Žå®æœçµéš
- éèåºèŠå¶å¯Ÿè±¡æ¥ç/äŒæ¥ã§æ å ±ã»ãã¥ãªãã£ç®¡çã«æºãã£ãæ¥åçµéš
- ãã®ä»
- ããžãã¹ã·ãŒã³ã§è±èªã«ãŠãå°±æ¥å¯èœãªæ¹ïŒã§ããã°æ¥åžžäŒè©±ã¬ãã«ä»¥äžïŒ
- ããŒã ãããžã¡ã³ãããããžã§ã¯ããããžã¡ã³ãã®çµéš
- èªåŠå
- æ¥æ¬èªïŒProficient (CEFR - C1) å¿ é
- è±èªïŒè±èªïŒIndependent (CEFR - B2) æè¿
â»CEFRã®è©³çްã«ã€ããŠã¯ããã¡ããã芧ãã ãã
ã¡ã«ã«ãªã°ã«ãŒãã«ã€ããŠç¥ãã
- ãã£ãªã¢ãµã€ã https://careers.mercari.com/
- ã¡ã«ã«ã³ïŒhttps://mercan.mercari.com/
- SNSïŒX / Linkedin
éžèã«ã€ããŠ
ã¡ã«ã«ãªã°ã«ãŒãã§ã¯ã¡ã«ã«ãªã°ã«ãŒãããã³åã«ã³ãããŒã®ããã·ã§ã³ãšããªã¥ãŒãžã®å ±æã»äœçŸã倧åã«ããŠããŸããã¡ã³ããŒãçºæ®ãã䟡å€ã®ç·éãæå€§åããããããªçµç¹ã¥ãããæšé²ããããã«ãåè£è ã®ã¿ãªããã®çµéšãã¹ãã«ãããæ£ããçè§£ããããšèããŠããŸãã
éžèã®æµã
- æžé¡éžè
- æè¡èª²é¡ïŒãšã³ãžãã¢ããžã·ã§ã³ã§ã¯HackerRankãŸãã¯Githubã§ã®æè¡èª²é¡ãããšã³ãžãã¢ä»¥å€ã®ããžã·ã§ã³ã§ã¯æ¡çšããžã·ã§ã³ã«ãããŸãïŒé¢æ¥ã¿ã€ãã³ã°ãšååŸããããšããããŸãïŒ
- 颿¥ïŒããžã·ã§ã³ã«ãããè€æ°åã®é¢æ¥ããé¡ãããŸã
- ãªãã¡ã¬ã³ã¹ïŒãªã³ã©ã€ã³åç圢åŒã®ãã®ã§ãæçµéžèã®ååŸã§ãé¡ãããŸã
- ãªãã¡ãŒïŒæçµéžèãšãªãã¡ã¬ã³ã¹ã®å
容ããæ±ºå®ãããŸã
ãâ»è©³ãã㯠ãã¡ãã®ããŒãžãã芧ãã ãã
éžèã«ãããæ©äŒã®å¹³ç
ã¡ã«ã«ãªã§ã¯ãããã¯ã°ã©ãŠã³ãã«ãã£ãŠå人ã®å¯èœæ§ã決ãã€ããããããšãªããèªç±ã«äŸ¡å€ãçã¿ã ãæ©äŒãæã«ã§ãã瀟äŒã®å®çŸãç®æããŠããŸãããããŠã¡ã«ã«ãªãããã·ã§ã³ãå®çŸããããã«ãInclusion & Diversityããšããèãæ¹ã¯äžå¯æ¬ ãªååšã ãšèããŠããŸãã
æ¡çšæŽ»åã«ãããŠããã¡ã«ã«ãªã®ããã·ã§ã³ã»ããªã¥ãŒã«å ±æãããæ§ã ãªããã¯ã°ã©ãŠã³ãã®æ¹ã«ãžã§ã€ã³ããŠããã ãããããå¹Žéœ¢ãæ§å¥ãæ§çæåã人皮ã宿ã身äœèœåããã®ä»èšå·ã«åºã¥ãããããå·®å¥ããªããããšãçŽæããŸãã
詳ããã¯ãI&D statementãã芧ãã ããã
ãªãããå¿åã®éã«ã¯ãã©ã€ãã·ãŒããªã·ãŒãã確èªãã ããã
#LI-DNI
