Japan CISO and Japan Head of Security Architecture & Engineering (SAE)【IT】

  • 正社員
この求人の紹介
を受けたい
登録無料

募集要項

仕事内容

◆Company overview:

Nomura is a global financial services group with an integrated global network spanning over 30 countries. Japan IT (Information Technology) is a diverse environment with employees of over 25 nationalities, who work on technical support, application development and implementation of system changes for Japan Retail Wealth Management Business and Global Wholesale (Global Markets and Investment Banking). Nomura provides competitive employee benefits, training and upskilling opportunities, and is committed to promoting diversity, equity and inclusion, employee health and well-being. Founded in 1925, the firm is built on a tradition of disciplined entrepreneurship, serving clients with creative solutions and considered thought leadership.

野村は、世界30カ国以上に広がる統合されたグローバルネットワークを持つグローバル金融サービスグループです。日本のIT (情報技術)は、25カ国以上の国籍の従業員がおり、日本のリテール・ウェルス・マネジメント事業とグローバル・ホールセール(グローバル・マーケッツ・インベストメント・バンキング)の技術サポート、アプリケーション開発、システム変更の実装に取り組んでいます。野村は、競争力のある従業員福利厚生、トレーニング、スキルアップの機会を提供し、多様性、公平性、インクルージョン、従業員の健康と福祉の促進に取り組んでいます。1925年に設立された野村は、規律ある起業家精神の伝統に基づいて構築されており、創造的なソリューションと思慮深いリーダーシップでクライアントにサービスを提供しています。


◆Role Overview:

This dual-function role combines regional CISO responsibilities for Japan with leadership of Security Architecture&Engineering (SAE). Reporting directly to the Group CISO, you will be a senior member of the Global Information Security Leadership Team and oversee all CISO team members based at Nomura’s Japan Headquarters. Most team members have dual reporting lines. This means that they support the Japan regional organization and report to the Regional CISO, while also contributing to global functions and reporting to the relevant Global Heads.


This hands-on role is responsible for developing and implementing the global SAE strategy in Japan while ensuring that Japan-specific requirements are addressed. It also oversees regional security operations, including security Governance, Risks and Controls (GRC), regulatory compliance, data protection, and security project management. A core responsibility is to ensure that all global strategic programs - not only those related to SAE - are aligned with and support the broader global strategies.


◆Key Responsibilities:

  • Japan Security Architecture&Engineering (SAE) Leadership
  • Develop and maintain comprehensive information security architecture framework aligned with business objectives and the Information Security Risk and Control Framework
  • Create and maintain reference architecture for security, ensuring full alignment with enterprise reference architecture developed by the Global Head of Security Architecture to meet the needs of the CTO organization and the business line CIOs (Wholesale, Wealth Management, Nomura Assets Management, and Nomura Trust Banking)
  • Ensure that the implementation of global security policies, standards, best practices, and technical implementation guides are in place and operating effectively
  • Lead design and implementation of secure network architecture, AI&cloud security solutions, and endpoint protection, data protection mechanisms including security tooling management
  • Support the establishment a Security Engineering Hub in our Mumbai-based delivery center to provide 24x7 engineering support of our Japan and global security platforms
  • Collaborate with cross-functional teams to evaluate and select security technologies including AI/ML, SaaS, security automation, and R&D initiatives
  • Provide technical guidance and expertise on security infrastructure design, configuration, and deployment across all regions
  • Ensure that the implementation of global security controls and measures to protect against cyber threats, malware, and unauthorized access are in place and operating effectively
  • Lead security architecture reviews and assessments to identify gaps, vulnerabilities, and areas for resilience improvement; provide recommendations on risk mitigation in collaboration with the Global Heads and other regional CISOs to ensure consistency in control implementation
  • Ensure that Security by Design practices are in place in collaboration with the global AppSec team (located in our New York office); support the development of a DevSecOps program for Nomura in Japan
  • Establish and manage security lab and sandbox for evaluating security solutions and testing emerging technologies in collaboration with the global Security R&D / Innovation team located in our New York office
  • Identify and assess emerging cyber technologies and startups that could support revenue generation for our Investment Banking and Digital Company stakeholders
  • Stay current on emerging technologies, trends, and threats in information security architecture and engineering
  • Establish a resourcing plan in Japan to build strong security architecture and engineering capabilities
  • Ensure SAE resourcing coverage aligns with key regions to support regional business, IT, and business development needs
  • Japan Regional CISO Responsibilities
  • Strategic Leadership: Implement comprehensive information security and risk management program for Japan according to group strategy and roadmap, including budget planning for security activities
  • Partnership Collaboration: Liaise with Japanese business units (Internal Audit, Law, Finance, Safety&Security, Risk Management, HR) and external agencies to maintain strong security posture
  • Regional and Global Management: Collaborate with Global Heads of Information Security to ensure consistency and standardization of global practices across Japan, while accounting for regional differences; in addition, support the Group CISO in ensuring domestic lines of business receive timely regulatory security updates through metrics, committees/forums, project support, and related channel
  • Regional and Global Management: Collaborate with the Global Heads of Information Security to ensure consistency and standardization of global practices across Japan while taking into account regional differences.
  • Advisory Role: Provide leadership and guidance on information security topics, business continuity, and disaster recovery plans specific to Japan operations
  • Risk Management: Identify, assess, and mitigate information security risks across Japan region through regular risk assessments and audits
  • Policy Support: Enforce security policies, standards, and procedures ensuring compliance with Japanese regulatory requirements and best practices
  • Security Governance: Lead governance, risk and control activities for Nomura Japan implementing business-centric risk management and managing third-party stakeholder risks
  • Compliance: Ensure compliance with regional and international regulations, including Japanese data protection laws and industry standards
  • Security Awareness: Support culturally appropriate security awareness programs and lead key security awareness events in Japan
  • Incident Response: Lead and represent regional management in response to significant information security breaches and events, serving as point of contact for all regional cyber events
  • Cyber Threat Management: Monitor external threat environment for emerging threats and advise stakeholders on appropriate courses of action
  • Cyber Simulation Tests: Run various security exercises including cyber simulations with appropriate understanding of regulatory risks
  • Team Management: Recruit, train, and manage security professionals in Japan region capable of adequately protecting the company
  • Japan Support: As the Group CISO is based at the Japan headquarters, the Japan Head of Security Engagement will support you with communications, reporting, and overall engagement with Japan-based entities
  • Leadership&People Management
  • Adhere to and promote company values and ethical framework across global and regional teams
  • Lead environment where people management and development is top priority, empowering and mentoring direct reports
  • Drive achievement of high performance through effective career management, succession planning, and talent management
  • Act as role model communicating SMART business-driven objectives and ensuring continuous performance reviews
  • Proactively manage people decisions aligning performance with organizational needs
  • Provide regional perspective on talent, skills, development, promotion, and compensation
  • Contribute to year-end compensation process, hiring, retention, promotion, and disciplinary actions
経験・資格
※求人情報の応募要件全てに該当しなくても、企業様に対して内々に打診したり相談することが可能な場合もございます。一つでも当てはまる方は前向きにご検討下さい。

Required Qualifications:

●Education&Certifications

Bachelor's degree in Computer Science, Information Technology, or related field; Master's degree or equivalent preferred

CISSP or CISM certification required or equivalent cybersecurity certifications


●Experience

  • Minimum 15+years of leadership experience in large, complex, global organizations
  • Minimum 10 years in information security with focus on security architecture and engineering
  • Demonstrated executive experience leading relevant business of similar size and complexity across multiple locations
  • Experience with matrix organization leadership and non-staff resource allocation
  • Broad experience across business and infrastructure disciplines including regulatory interaction, audit facilitation, and technology service delivery


●Technical&Strategic Skills

  • Strong knowledge of security technologies, protocols, and frameworks (ISO 27001, NIST, OWASP)
  • Experience designing and implementing security controls for cloud environments, network infrastructure, and software applications
  • Strategic and operational understanding of risk frameworks and regional security best practices
  • Information security experience with global and regional trends for managing security in complex organizations


●Core Competencies:

  • Excellent analytical, problem-solving, and project management skills
  • Strong communication and interpersonal skills for diverse stakeholder collaboration
  • Ability to translate complex technical security concepts into business risks and business cases
  • Ability to communicate with knowledge and credibility to all management levels including management committees
  • Demonstrated ability to develop strong relationships with regional external oversight and regulators
  • Japanese and English proficiency critical for global collaboration and regional regulatory interaction
  • Ability to reach out to the cybersecurity community in Japan through either formal security associations (e.g., FS-ISAC) or informal roundtables, peer sessions, etc.
  • Right to work in Japan
  • Ability to collaborate with internal and external stakeholders ensuring alignment with industry standards and regulatory requirements
  • Experience managing complex change agendas and driving strategy formulation and service delivery
※更なる詳細事項はカウンセリング(面談)時にお伝えします。
勤務地
東京都江東区豊洲二丁目2番1号 豊洲ベイサイドクロスタワー
【受動喫煙対策の有無:有】
想定年収
※ご経験、スキルにより応相談
福利厚生・待遇
●休暇・休業制度
・育児/介護関連休暇・休業
・年次有給休暇
・傷病等休暇(有給)
・人間ドック休暇/二次検査休暇(有給)
・ワクチン休暇(有給)
・F休暇(有給)
・その他特別休暇(有給)
その他にも下記のような特別休暇がございます。
・慶弔休暇
・赴任休暇
・公職休暇
・通院休暇(障がい者)

・海外勤務等同行休職

●社宅制度

●資産形成補助・手当
・退職給付制度
・従業員持株会
・職場つみたてNISA
・野村グループ保険

●両立支援
・産前産後休暇/配偶者・パートナーのための出産・育児休暇(有給)
・育児休業
・育児休業取得奨励金
・介護休業
・不妊治療休職
・卵子凍結費用補助
女性社員が自身のライフプランを考えるうえでの選択肢を増やすための支援として、卵子凍結費用補助を行っています。
・子の看護等のための休暇(有給)
・介護休暇(有給)
・育児時間
・介護時間
・託児所等費用補助

●健康支援
・健康保険(野村證券健康保険組合)
・健康診断(人間ドック)
・一部負担還元金(付加給付)
・ヘルスサポート

●成長支援
・能力開発支援制度(Nomura Business Academy)

●柔軟な働き方・環境づくり
・在宅勤務制度
・フレックスタイム制
・ドレスコード
・グループ社内公募

●その他
・保養施設
・カフェテリアプラン
勤務条件

勤務時間

8時40分~17時10分(所定労働時間7時間30分、休憩時間60分)
※掲載時点の情報であり、変更になる可能性があります。

休日・休暇

完全週休2日制(土日)、祝日、年末年始、年次有給休暇・リフレッシュ休暇(5連休の取得)など

試用期間

6ヶ月

昇給・給与

賞与:年1回

加入保険

健康保険、厚生年金保険、労災保険、雇用保険等

Recruiting No.
01005176001348

企業情報

社名
野村證券株式会社
事業内容
証券業
設立
2001年5月7日
資本金
100億円
従業員数
28772名(グループ全体)

エリートネットワーク取材班による独自解説

創業100年を誇る独立系大手証券。従来の仲介からコンサル中心のウェルス・マネジメントへシフトを進め、業界トップ級の実績を維持している。近年、Web3やAI活用といったデジタル化も推進し、異業種人材の中途採用も強化中。
日本を代表する独立系大手金融グループの中核証券会社。1925年(大正14年)創業の圧倒的な歴史とブランド力を誇り、個人から法人・機関投資家まで幅広い顧客基盤を有する。従来型の証券仲介業務から資産承継やコンサルティングを中心とする「ウェルス・マネジメント」領域へのシフトを進めており、同部門における顧客資産残高は175.8兆円に達するなど、国内金融業界トップクラスの実績を維持している。

キャリア観点では、金融プロフェッショナルとしての育成体制に定評があり、個人の適性やキャリア志向に応じた多様な選択肢が用意されている。近年は資産運用立国の推進や顧客ニーズの多様化に対応するため、ウェルス・マネジメント業務を中心としたプロフェッショナルの育成や中途採用を強化。他業種からの転職者や専門人材の受け入れを進めており、コンサルティングやデジタル知見を活かして活躍できるフィールドが広がっている。

なお、社名に略字の「証」ではなく本字の「證」が用いられているのは、1925年の設立時に登記された商号「野村證券株式会社」をそのまま継承しているためだ。「證」は言偏に「登(あきらかにする)」と書き、「事実を言葉で明らかにする・証明する」という意味を持つ。当用漢字制定後に多くの同業他社が「証券」へ改称するなか、創業当時の商号と「言明と信頼の証し」という本来の字義を守り続けている。
続きを読む

転職支援サービスの流れ

  • STEP1
    転職支援サービスへの
    お申し込み
    登録フォームに必要事項を入力のうえ、お申し込みください。サービスは無料です。

    既に応募書類を作成済の方はメールにてこちらから登録いただけます。
  • STEP2
    サービス利用開始の
    ご連絡
    お申し込みから3~4営業日以内に、電話かメールにて連絡をいたします。
    ※求人状況によっては、転職カウンセラーとの面談・相談サービスの提供が難しい場合もございます。
  • STEP3
    転職カウンセリング
    対面(オンライン可)または電話にて、あなたのご要望やご経験、今回の転職で実現したい事柄の優先順位などをお伺いします。
  • STEP4
    求人紹介・応募書類
    チェック
    様々な角度から具体的な企業や求人のご提案をいたします。各社の社風や雰囲気についてもご案内します。
    応募の意向をお知らせください。応募書類一式の添削も承ります。
  • STEP5
    企業への推薦・書類選考
    応募先が決まりましたら、転職カウンセリングにてお伺いした内容をもとに、書類選考を通過すべく作成した魅力的な「推薦状」を添えて、各企業様に打診いたします。
  • STEP6
    面接
    面接の日程調整は転職カウンセラーにお任せください。
    ご希望により、面接に臨むにあたっての事前準備や、各企業毎の面接対策も承っております。
  • STEP7
    内定・退職フォロー
    最終選考に合格した後も、給与や待遇についての交渉は遠慮なく転職カウンセラーにご相談ください。入社企業が決まりましたら現職の円満退社に向けたフォローも承ります。
  • STEP8
    入社
    入社時期のすり合わせ、諸手続き等、入社に至るまで転職カウンセラーがサポートいたします。
    入社後は新天地にて思う存分ご活躍ください。
    ※エリートネットワークを通じて転職に成功された方々の『転職体験記』はこちらからご覧ください。

この求人を見た方に
おすすめの求人

    条件を変えて検索する

    希望職種
    希望業界
    希望勤務地
    フリーワード
    希望年収
    推奨年齢
    こだわり条件

    ご希望の職種を選択してください

    ご希望の職種を選択してください

    ご希望の業界を選択してください

    ご希望の勤務地を選択してください

    ご希望条件を入力ください

    希望年収
    推奨年齢
    フリーワード

    こだわり条件を入力ください

    転職体験記

    • 友人からの紹介でエリートネットワークに相談した30代女性シンクタンク研究員。 有名IT企業のリスクマネジメント担当にキャリアチェンジ。
      32歳/私立女子中高一貫校 卒 難関私立理工系大学建築学科 卒 旧帝大大学院土木...

      【東証プライム上場  ECから金融まで展開するグローバル総合IT企業】 リスクマネジメント部門

      転職体験記を読む
    • 霞が関の中央省庁へ出向中の国家公務員(専門職)28歳男性。会計分野の経験を生かし、東証プライム上場の総合リース会社へ
      28歳/大阪府 私立高校 卒 神戸大学 経済学部 経済学科 卒 TOEIC 670点

      【東証プライム上場 メガバンク系 総合リース会社】 リスクマネジメント統括部 リスク調査・企画・管理

      転職体験記を読む
    • 損害保険会社の法人営業36歳女性。業界の今後を見据え、プライム上場大手インターネット企業のリスクアナリストへ転職成功
      36歳/関東の難関県立高校 卒 中央大学 卒 TOEIC 835点 代理店資格 損害保...

      【東証プライム上場 大手インターネットサービス企業】 本社 リスク管理部 グループ全体の統合的リスク管理

      転職体験記を読む

    注目企業インタビュー

    • 西武グループのダイナミックな成長を、不動産ファンドの運用から推進します。

      株式会社西武不動産投資顧問
      代表取締役社長 西川 和宏氏
    • 日本企業の長期的な成長を支える、新しい金融の仕組み作りに挑戦中です

      株式会社日本政策投資銀行
      執行役員 人事部長 三ヶ山 正明氏、企業金融第5部 兼 ストラクチャードファイナンス部 調査役 川崎 翔太氏、企業金融第3部 副調査役 林 夏実氏
    • オルタナティブ市場成長の担い手として。個が経験を活かし、チームワークで価値を生み出す運用会社です。

      DBJアセットマネジメント株式会社
      代表取締役社長執行役員 草彅 健氏
    • 大企業から中堅中小企業まで。 サステナビリティの視点で ビジネスの成長ストーリーを描く。

      株式会社三菱UFJ銀行
      サステナブルビジネス部 業務推進グループ 次長 太田 悟史氏、サステナブルビジネス部 企画開発グループ 次長 小野寺 真理氏
    • 「成長の果実」を従業員の手に。 世界と日本で多くの企業が待ち望む、 新たな報酬制度の運用を支えたい。

      三菱UFJ信託銀行株式会社
      HRソリューション部長 石川 真嗣氏
    • 世界のスタートアップに投資し、 中長期的な成長に伴走していく。 日本の農林水産業と、食料が育むいのち、 そして地域を元気にするために。

      農林中央金庫
      コーポレート本部 デジタルイノベーション推進部 副部長 沼上 健吾氏
      企業インタビュー一覧はこちら
    • 株式会社西武不動産投資顧問

      西武グループのダイナミックな成長を、不動産ファンドの運用から推進します。

    • 株式会社日本政策投資銀行

      日本企業の長期的な成長を支える、新しい金融の仕組み作りに挑戦中です

    • DBJアセットマネジメント株式会社

      オルタナティブ市場成長の担い手として。個が経験を活かし、チームワークで価値を生み出す運用会社です。

    • 株式会社三菱UFJ銀行

      大企業から中堅中小企業まで。 サステナビリティの視点で ビジネスの成長ストーリーを描く。

    • 三菱UFJ信託銀行株式会社

      「成長の果実」を従業員の手に。 世界と日本で多くの企業が待ち望む、 新たな報酬制度の運用を支えたい。

    • 農林中央金庫

      世界のスタートアップに投資し、 中長期的な成長に伴走していく。 日本の農林水産業と、食料が育むいのち、 そして地域を元気にするために。

       企業インタビュー一覧はこちら
    この求人の紹介を受けたい登録無料 お気に入り
    この求人の紹介を受けたい登録無料 お気に入り