Compliance Product Owner, Japan
Adobe
Job Summary
As a Sr. Compliance Product Owner at Adobe in Tokyo, you will shape a scalable Security Compliance Program for the APAC region, focusing on Japanese Security Compliances. This role involves collaborating with global teams, external assessors, government agencies, and product development teams to ensure optimal sales for a product-based organization. You will build and maintain scalable processes, translate compliance requirements into actionable programs, and manage ISMAP compliance activities, including internal assessments and external audits.
Must Have
- Build and maintain scalable processes to support security compliance across the APAC region.
- Translate security compliance requirements into actionable programs.
- Perform internal assessments against ISMAP control domains.
- Manage ISMAP compliance activities, working closely with external auditors and Japanese government agencies.
- Prepare, review, and finish the application documentation required for ISMAP compliance.
- Independently conduct end-to-end security compliance audits and assessments.
- Manage audit work, identify and analyze process gaps, draft compliance reports.
- Serve as the domain expert for ISMAP, leading compliance discussions.
- Apply proficiency in Japanese to prepare documentation and communicate effectively with local partners.
- Drive technology compliance activities across Adobe.
- Minimum 5-6 years of related security compliance assessments, IT/Cloud auditing, and control testing experience.
- Proven knowledge of Security Compliance frameworks (e.g., ISMAP, IRAP, ISO, SOC 2, etc.).
- Strong auditing background, technical expertise, and deep knowledge of information security controls such as SDLC, Cryptography, Access management and Backup.
- Knowledge of cloud infrastructure like AWS, Azure, GCP.
Good to Have
- Relevant security related certifications (e.g., CISA, CISM).
- Knowledge of AI in security and compliance is preferred.
Perks & Benefits
- Health insurance
- Global days off
- Wellness fund
- Parental leave
- Access to Employee Stock Purchase Program
- Programs designed to help you continue to build your career
- Opportunities to get involved with corporate social responsibility, philanthropy, employee, and community engagement
Job Description
The Opportunity
Are you interested in shaping a scalable Security Compliance Program for APAC region while collaborating with global teams? As the Sr. Compliance Product Owner at Adobe in Tokyo, you'll be part of Adobe's Technology GRC (Tech GRC) team focusing on driving Japanese Security Compliances, collaborating with external assessors, government agencies, product development & operations teams, core security teams, and others. This is your chance to create an outstanding impact and ensure sales go through optimally for a product-based organization!
What you'll Do
- Build and maintain scalable processes to support security compliance across the APAC region, ensuring alignment with global standards and unified compliance strategies.
- Translate security compliance requirements into actionable programs, including gap analyses, remediation plans, and implementation of necessary security controls.
- Perform internal assessments against ISMAP control domains for products seeking the certification, ensuring detailed evaluation and readiness for external review.
- Manage ISMAP compliance activities, working closely with external auditors and Japanese government agencies.
- Prepare, review, and finish the application documentation required for ISMAP compliance, ensuring accuracy and timely submission.
- Independently conduct end-to-end security compliance audits and assessments, consistently meeting strict deadlines and maintaining executive-level metrics and reporting.
- Manage audit work, identify and analyze process gaps, draft compliance reports to detail the compliance objectives, key findings, and work with teams to remediate key findings
- Serve as the domain expert for ISMAP, leading compliance discussions, raising awareness, and facilitating both internal and external audit interviews.
- Apply your proficiency in Japanese to prepare documentation and communicate effectively with local partners and collaborators.
- Work under the supervision and support of the Tech GRC manager and drive technology compliance activities across Adobe.
What you need to succeed
- Verbal and written proficiency in both Japanese and English
- Bachelor’s degree or equivalent experience in Information Security/Cyber Security or related field.
- Minimum 5-6 years of related security compliance assessments, IT/Cloud auditing, and control testing experience.
- Proven knowledge of Security Compliance frameworks (e.g., ISMAP, IRAP, ISO, SOC 2, etc.).
- Strong auditing background, technical expertise, and deep knowledge of information security controls such as SDLC, Cryptography, Access management and Backup will be useful
- Knowledge of cloud infrastructure like AWS, Azure, GCP, along with hands on experience
- Good interpersonal skills. It is essential that the candidate is a team-player and possesses strong organizational and planning skills
- Ability to anticipate questions, independently assess risk, and think critically and creatively.
- Ability to work closely with others in a fast-paced environment.
- Relevant security related certifications (e.g., CISA, CISM) are a plus.
- Knowledge of AI in security and compliance is preferred.
- Fluent in Japanese and Business-level English is required.