Enterprise Security Engineer

Tokyo
Technology Shared Services – Enterprise Technology /
Employee /
Hybrid
About Woven by Toyota
Woven by Toyota is enabling Toyota’s once-in-a-century transformation into a mobility company. Inspired by a legacy of innovating for the benefit of others, our mission is to challenge the current state of mobility through human-centric innovation — expanding what “mobility” means and how it serves society.

Our work centers on four pillars: AD/ADAS, our autonomous driving and advanced driver assist technologies; Arene, our software development platform for software-defined vehicles; Woven City, a test course for mobility; and Cloud & AI, the digital infrastructure powering our collaborative foundation. Business-critical functions empower these teams to execute, and together, we’re working toward one bold goal: a world with zero accidents and enhanced well-being for all.

=========================================================================

TEAM
The Identity & End User Security Team at Woven by Toyota secures our identity providers, users, and endpoints. We work closely with enterprise IT operations and other security teams to develop solutions that improve the organization’s security posture, protecting the company’s computing and data assets on premise and in the cloud. We also provide expert consultations to teams at Woven by Toyota to help develop secure software solutions.

WHO ARE WE LOOKING FOR?
You have hands-on experience in identity provider, user, and endpoint security in a hybrid on-prem/cloud corporate infrastructure across a diverse range of platforms and systems. You will participate in the secure design of new services, products, and implementation of tools for security automation. You are knowledgeable of security standards and best practices, and balancing security with user experience. You will have a good mix of deep technical knowledge and a demonstrated background in information security, specifically in identity systems and endpoint management across a variety of operating systems. If you do not meet all of the requirements but feel you have relevant experience that makes up for it, we'd still like to talk to you.

RESPONSIBILITIES
・Protect user identities managed in Entra ID, Entra Domain Services, and Google Workspace
・Protect Windows, macOS, Linux, iOS, and Android endpoints by identifying threats and implementing security controls
・Design, support, and deploy security-focused solutions for the corporate on-premise and cloud infrastructure to drive security operations excellence
・Be a security-focused counterpart for the Infrastructure IT team
・Participate in architecture discussions to work through risk, security, and compliance concerns
・Communicate effectively at multiple levels of sensitivity, and multiple audiences
・Report to the manager for Identity & End-User Security and come to the office three times per week as per our hybrid work policy

MINIMUM QUALIFICATIONS
・Bachelor’s Degree or higher in Computer Information Systems, Information Technology, or Security related field, or equivalent work experience
・3+ years of relevant infrastructure security experience AND 2+ years of experience architecting/deploying/operating
   ・endpoint and server management solutions (e.g. Intune, Jamf, Puppet)
    OR
   ・cloud based identity management, sso, authentication and authorization systems
・Knowledge of authentication/authorization protocols (e.g. SAML, OIDC, OAuth2)
・Experience with security architecture reviews and threat modeling 
・Experience with hardening baselines and frameworks such as CIS, STIG, NIST, etc.
・Proficient in one or more scripting languages such as Powershell, Python, and Bash

NICE TO HAVES

    • Experience with Entra ID
    • Experience with zero trust security modeling
    • Excellent understanding of Windows, macOS, Linux, iOS, and Android
    • Endpoint zero touch deployment experience
    • Business-level Japanese (N2+)
=========================================================================
Important Points
・All interviews will be arranged via Google Meet, unless otherwise stated.
・The same job descriptions are available in both English and Japanese; therefore, we kindly ask that you apply to only one version.
・We kindly request that you submit your resume in English, if possible. However, Japanese resumes are also acceptable. Please note that, depending on the English proficiency requirements of the role, we may request an English version of your resume later in the process.

WHAT WE OFFER
・Competitive Salary - Based on experience
・Work Hours - Flexible working time
・Paid Holiday - 20 days per year (prorated)
・Sick Leave - 6 days per year (prorated)
・Holiday - Sat & Sun, Japanese National Holidays, and other days defined by our company
・Japanese Social Insurance - Health Insurance, Pension, Workers’ Comp, and Unemployment Insurance, Long-term care insurance
・Housing Allowance
・Retirement Benefits
・Rental Cars Support
・In-house Training Program (software study/language study)

Our Commitment
・We are an equal opportunity employer and value diversity.
・Any information we receive from you will be used only in the hiring and onboarding process. Please see our privacy notice for more details.