English summary for screening — check the original posting before applying.
Seeking a Security Engineer to build and enhance the security framework for a "Medical x AI" product. You will own security measures from prioritization to implementation, working closely with the development team.
Must-haves
- 3+ years of experience in web application or cloud security
- Experience in vulnerability management and risk assessment
- Experience coordinating with external security assessment companies
- Technical understanding of authentication, authorization, and network design
- Communication skills for constructive discussion with development teams
Nice-to-haves
- Experience implementing DevSecOps and integrating security into CI/CD
- Experience with penetration testing and security assessments
- Experience with services handling highly confidential data (medical, financial, SaaS)
- Experience with ISMS/SOC2
- Knowledge of LLM and generative AI security
- CISSP, CISA, OSCP, or Information Security Professional Engineer certifications
Tech stack
GitHub ActionsSAST/DASTAWSECSAuroraCognitoS3AWS Security HubPythonMLSwiftKotlinTypeScriptReactFastAPIGCP
Work style
Tokyo Headquarters or Remote (Home). Flextime system (Work between 6:00 AM and 10:00 PM). Standard working hours: 8 hours/day, 160 hours/month.
Other notes
Annual salary: ¥6,000,000 - ¥9,000,000. Fully non-smoking office.