求人詳細

ハイクラス
求人コード 002-062
求人企業 外資系生命保険
求人タイトル 情報セキュリティリスク管理
職務内容 【Key Accountabilities】
◆Support delivery of the yearly company information risk countermeasure and associated improvement plan:
・Conduct Business Risk Analysis with Application Owners and build its improvement plan
・Deliver Information Security projects
・Monitor the security risk exposure of the company, and provide comprehensive reports to Management and Group

◆Execute Security improvement projects from a point of business:
・Design and implement tools and processes for Information Security.
・Monitor and report on delivery of Information Security requirements.
・Initiate risk reduction projects or Security Improvement project
・Analyze local specific threat, FSA and compliance items
・Review the report about Interview with information owner or Application Owner

◆Support Vulnerability, Cyber Resiliency and Security Incident Management:
・Arrange Penetration Test and subsequent remediation
・Support WAF implementation
・Respond to security incidents
・Support Cyber resiliency
・Maintain Web Assets
・Maintain Secure SDLC

◆Review all business projects or main gaps and ensure security compliance:
・Draft the result of review meeting and security comment with recommended solution.
・Explain required security functions and suggestion to project member.

◆Control the vendors:
・Conduct 3rd vendors security inspection
・Make a report and suggestion to mitigate risks

◆Critical Leadership Competencies:
・Communication and Stakeholder management
・Planning and Delivery
・Fostering and championing a culture of continuous improvements in processes and methods in IT. (Change Leadership)
・Understanding the needs and goals of Senior IT Leaders, builds effective relationships with them and stakeholders in department role interacts. (Team Leadership)
・Fostering and championing achievement oriented culture, raising bar for individuals and the team. (Result Orientation)
・Having a firm grasp of the direction company is taking and It’s role in company’s strategy (Strategic Vision)
応募要件
(必須)
最終学歴:四年制大学卒以上
◆Understanding of OWASP Top 10
◆System Development background
◆System Operation Experience
◆Minimum 10 years over all Information technology experience include system in security
◆English skills: Fluent
応募要件
(尚可、その他)
◆Japanese skill: Preferable
◆Knowledge of Infra and Application security is a plus
◆Have some security related license (i.e. CISSP, CISM…etc) is a plus
勤務地 東京
年収 700万円~1100万円(応相談)