シニア セキュリティエクスポージャー&アーキテクチャ エンジニア/Senior Security Exposure & Architecture Engineer at Sony Interactive Entertainment Inc. | JP | Rezi

シニア セキュリティエクスポージャー&アーキテクチャ エンジニア/Senior Security Exposure & Architecture Engineer at Sony Interactive Entertainment Inc.

シニア セキュリティエクスポージャー&アーキテクチャ エンジニア/Senior Security Exposure & Architecture Engineer

Sony Interactive Entertainment Inc. · JP

2 days ago

シニア セキュリティエクスポージャー&アーキテクチャ エンジニア/Senior Security Exposure & Architecture Engineer

Sony Interactive Entertainment Inc. · JP

3 days ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now
Resume preview

Tailor your resume to this シニア セキュリティエクスポージャー&アーキテクチャ エンジニア/Senior Security Exposure & Architecture Engineer role.

Rezi rewrites your resume against Sony Interactive Entertainment Inc.'s job description. Free.

Resume score gauge reading 58 out of 100

Don't guess if your resume is good enough.

See how it scores against the シニア セキュリティエクスポージャー&アーキテクチャ エンジニア/Senior Security Exposure & Architecture Engineer posting at Sony Interactive Entertainment Inc. — free, in seconds.

About the Role

This position is within SIE's information security organization, collaborating with Global Vulnerability Management (GVM) and Global Security Architecture (GSA) to reduce overall security risk across SIE through vulnerability/security exposure management and security architecture. The role involves analyzing root causes of vulnerabilities and security exposures, connecting them to secure design, preventative measures, and standardized architectures. It covers a wide range of technologies including cloud-native environments, next-generation technologies, cloud gaming, AI-driven systems, platform services, and enterprise IT environments. The position requires close collaboration with security, infrastructure, cloud, engineering, IT, and business departments across SIE and Sony Group companies, primarily in Japan and the US, to support the entire lifecycle of security risk management from identification to prevention.

Responsibilities

  • Contribute to joint GVM and GSA initiatives, advancing an integrated exposure-management operating model while delivering secure architecture reviews and architecture-informed remediation.
  • Review new and existing services, platforms, infrastructure designs, and technical proposals to identify security weaknesses, attack paths, and control gaps early and recommend practical improvements.
  • Analyze security exposures and findings using exploitability, business and asset criticality, supporting evidence, existing controls, and remediation complexity to recommend appropriate priorities and treatment options.
  • Contribute across the exposure-management lifecycle by supporting discovery, enrichment, triage, validation, decisions, mobilization, verification, and learning for security exposures and findings.
  • Partner with architecture, infrastructure, cloud, and engineering teams to translate recurring exposures and root causes into scalable design patterns, reference architectures, hardening standards, and preventative controls.
  • Design and advise on secure cloud-native, hybrid, containerized, software-as-a-service (SaaS), platform-as-a-service (PaaS), and on-premises environments, including Amazon Web Services (AWS), Google Cloud, third-party security products, and custom-developed controls.
  • Provide architecture-informed remediation guidance for cloud, network, endpoint, server, container, identity, application, platform, and AI-enabled systems.
  • Contribute to authorized security validation activities such as proof-of-concept testing, attack path analysis, adversarial testing support, and control effectiveness reviews.
  • Develop reusable technical guidance and use security tooling, data, AI, and automation responsibly to improve visibility, prioritization, consistency, and team effectiveness.
  • Communicate security issues, design tradeoffs, and recommendations clearly; lead scoped work through completion; and align delivery across GVM, GSA, Japan, and global stakeholders.

Requirements

  • Demonstrated experience in information security, security engineering, systems engineering, cloud security, infrastructure security, product security, security architecture, or a related field.
  • Strong foundation in security architecture principles, including architecture review, secure design, reference patterns, control selection, and the application of security requirements in complex production environments.
  • Working knowledge of vulnerability and exposure management concepts, including threat-informed prioritization, validation, remediation workflows, and the use of evidence to support risk decisions.
  • Hands-on experience assessing, securing, designing, or operating cloud-based, containerized, network, platform, application, identity, or enterprise infrastructure environments.
  • Experience with security assessment, exposure analysis, vulnerability scanning, validation, architecture review, or secure implementation standards.
  • Knowledge of operating systems, networking, identity, authentication, encryption, key management, segmentation, firewalls, web application firewalls (WAFs), distributed denial-of-service (DDoS) mitigation, and common enterprise security controls.
  • Strong written and verbal communication skills, with business-level proficiency in Japanese and English, including the ability to conduct technical discussions and architecture reviews in English, explain technical risk in business terms, and influence without direct authority.
  • Bachelor’s degree in Computer Science, Information Security, Mathematics, Engineering, a related field, or equivalent practical experience.

Skills

  • Information Security
  • Security Engineering
  • Systems Engineering
  • Cloud Security
  • Infrastructure Security
  • Product Security
  • Security Architecture
  • Architecture Review
  • Secure Design
  • Reference Patterns
  • Security Controls
  • Vulnerability Management
  • Exposure Management
  • Threat-Informed Prioritization
  • Remediation Workflows
  • Cloud Environments
  • Containerized Environments
  • Network Security
  • Platform Security
  • Application Security
  • Identity and Access Management
  • Enterprise Infrastructure
  • Security Assessment
  • Exposure Analysis
  • Vulnerability Scanning
  • Secure Implementation Standards
  • Operating Systems
  • Networking
  • Identity and Authentication
  • Encryption
  • Key Management
  • Network Segmentation
  • Firewalls
  • Web Application Firewalls (WAFs)
  • DDoS Mitigation
  • Enterprise Security Controls
  • AWS
  • Google Cloud
  • Hybrid Cloud
  • Kubernetes
  • CI/CD Security
  • Infrastructure as Code (IaC)
  • SaaS
  • PaaS
  • Multi-tenant Systems
  • AI System Security
  • Modern Application Architectures
  • Proof-of-Concept Testing
  • Attack Path Analysis
  • Adversarial Testing
  • Control Effectiveness Reviews
  • Security Reporting
  • Security Analytics
  • Security Automation
  • Data-Driven Prioritization
  • Reference Architectures
  • Cloud Governance

Location

  • Japan

Work Type

  • Full-time

Experience Level

  • Mid-level
  • Senior-level

Education Level

  • Bachelor's degree in Computer Science, Information Security, Mathematics, Engineering, or related field, or equivalent practical experience.
  • Master's degree or Ph.D. in Computer Science, Information Security, Mathematics, Engineering, or related field, or equivalent advanced experience.

About the Company

  • PlayStation isn’t just the Best Place to Play — it’s also the Best Place to Work.
  • Sony Interactive Entertainment (SIE) is a global leader in entertainment, producing the PlayStation family of products and services.
  • SIE strives to create an inclusive environment that empowers employees and embraces diversity.
  • The PlayStation brand falls under Sony Interactive Entertainment, a wholly-owned subsidiary of Sony Group Corporation.

Equal Opportunity

  • Sony is an Equal Opportunity Employer. All persons will receive consideration for employment without regard to gender (including gender identity, gender expression and gender reassignment), race (including colour, nationality, ethnic or national origin), religion or belief, marital or civil partnership status, disability, age, sexual orientation, pregnancy or maternity, trade union membership or membership in any other legally protected category.
  • We strive to create an inclusive environment, empower employees and embrace diversity. We encourage everyone to respond.
  • PlayStation is a Fair Chance employer and qualified applicants with arrest and conviction records will be considered for employment.