Skip to content

Open nowPosted 27 days ago

Senior Security Analyst

Workable (global search)108,016 open roles

Where
Musashino, Tokyo, Japan
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowSenior Security AnalystWorkable (global search) · Musashino, Tokyo, Japan
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Workable (global search)'s own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.9% of postings close within 7 days. Measured by our own scanner across the market. Workable (global search) postings stay open a median of 7 days.

Share of postings closed within
  1. 1.6%1 day
  2. 3.6%3 days
  3. 7.9%7 days
  4. 14.9%14 days
  5. 34.0%30 days
This job: posted 27 days ago

Workable (global search) median: 7 days open

The posting

About KOMOJU

KOMOJU is the leading cross-border payment gateway for Japan. We power payments for companies like video game distribution platform Steam and the popular mobile app TikTok. Today we help thousands of merchants by providing them with the payment infrastructure they need through developer-friendly API’s to integrations on popular platforms like Shopify and Wix; we help our merchants grow in all markets they are expanding.

About the position

We are a payment processor that handles very sensitive data for both our merchants and their customers. As we grow we need to make sure that our security is excellent and that our customer’s data is secure.

We are seeking a skilled and motivated Senior Security Analyst to serve as a technical anchor of our security operations team. You'll lead investigations into complex threats, build the detections that catch them earlier next time, and raise the bar for how the whole team responds to incidents.

This is a hands-on role for someone who has outgrown pure alert triage and wants ownership: of detection quality, of incident outcomes, and of mentoring the analysts around you.

What you'll do

  • Lead investigation and response for high-severity security incidents, from initial detection through containment, eradication, recovery, and post-incident review.
  • Design, tune, and maintain detection logic across our SIEM, EDR, and cloud security tooling, and retire the rules that generate noise instead of signal.
  • Conduct proactive threat hunts based on threat intelligence, adversary TTPs, and anomalies in telemetry.
  • Perform forensic analysis of endpoints, network traffic, and cloud environments to determine scope and root cause.
  • Write and maintain runbooks, playbooks, and post-incident reports that make the next response faster.
  • Partner with engineering and IT teams to close gaps surfaced by incidents and hunts, and to improve logging and telemetry coverage.
  • Automate repetitive response steps through SOAR (Security Orchestration, Automation, and Response) workflows or scripting.
  • Mentor junior analysts on investigation methodology, tooling, and escalation judgment.
  • Contribute to tabletop exercises, purple team engagements, and control validation.
  • Support audit and compliance evidence requests as they relate to security monitoring and incident response.

Requirements

What we're looking for

  • 5+ years of experience in security operations, incident response, threat hunting, or a closely related cybersecurity function.
  • Experience managing outsourced SOC providers, including setting expectations, overseeing performance, and ensuring effective monitoring and incident response.
  • Proven ability to build and scale security operations teams, including defining processes, roles, workflows, and operating procedures.
  • Deep hands-on experience with SIEM platforms such as Splunk, Microsoft Sentinel, or Elastic, including developing, tuning, and maintaining detection content.
  • Strong expertise with EDR solutions and endpoint forensics, with the ability to investigate and respond to sophisticated endpoint threats.
  • Strong understanding of attacker techniques and tradecraft, including practical application of frameworks such as MITRE ATT&CK.
  • Solid technical foundation in networking, Windows and Linux operating systems, authentication, and identity management.
  • Scripting and automation skills using Python, PowerShell, or similar languages to support security analysis, investigation, and operational efficiency.
  • Excellent written and verbal communication skills, with the ability to clearly explain security incidents and technical risks to both engineering teams and executive stakeholders.
  • Strong judgment and decision-making skills, particularly when operating under pressure, during active incidents, and with incomplete or ambiguous information.

Nice to Haves

  • Experience securing cloud environments (AWS, GCP or Azure), including cloud-native logging and detection.
  • Familiarity with containers and Kubernetes security.
  • Experience with SOAR (Security Orchestration, Automation, and Response) platforms and detection-as-code workflows.
  • Malware analysis or reverse engineering experience.
  • Certifications such as GCIA, GCIH, GCFA, OSCP, CISSP, or equivalent practical experience
  • Exposure to compliance frameworks relevant to our business (SOC 2, ISO 27001, PCI DSS, HIPAA).

Who You Are

  • Challenge the Status Quo: Builds KOMOJU’s security operations capability from the ground up, continuously improving detection, response, and automation.
  • Impact Driven: Prioritizes measurable risk reduction by improving detection coverage, reducing false positives, accelerating incident response, and building an audit-ready security operations model that protects customers and supports KOMOJU’s growth.
  • Frontline Decision-Making & Ownership: Takes end-to-end ownership of security incidents, making timely, proportionate decisions under pressure and following through to resolution.
  • Obsession with Customer Value: Protects the sensitive payment and personal data entrusted to KOMOJU, strengthening merchant confidence and service reliability.
  • Multiplier: Partners with Engineering, SRE, IT, Compliance, and external SOC providers while sharing knowledge that improves security capability across the organization.

Benefits

  • 10 days regular vacation, additional 5 days summer, and year-end holidays.
  • Paid birthday holiday.
  • Budget for self-learning allowance, to ensure our employees’ skills remain current.
  • Access to the O’Reilly Learning Platform.
  • Language training for Japanese/ English
  • Twice a week office lunch.
  • Learning allowance.

By submitting your application, you agree that your personal data will be processed in accordance with our Privacy Policy solely for recruitment and evaluation purposes.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Workable (global search)'s own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Workable (global search)'s form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Workable (global search)'s answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.