NIKE, Inc.チームの 一員になる

NIKE, Inc.の仕事は、世界トップクラスのアスリートたちにウェアやシューズを提供することだけではありません。ここは自分の潜在力を探求し、限界を取り払って、可能性を大きく広げることができる職場です。Nikeが求めているのは、意欲を持って成長し、自分の頭で考え、夢を思い描き、新しく創造できる人材。多様性を武器に創意工夫を奨励することで、企業文化を発展させています。Nikeブランドは、成功に向かって努力を続ける人や、チームを率いるリーダーや、大きな目標を思い描ける人材を求めています。常に進化し続ける仕事にはやりがいがあり、NIKE, Inc.では従業員一人ひとりが各々のスキルと情熱を日々の業務に注いでいます。

WHO YOU’LL WORK WITH

You’ll be a key member of the SecureCode team within the Application Security Consulting group, collaborating with Corporate Information Security and cross-functional teams across Nike. In this position, you will report directly to the Director of Information Security Engineering Consulting, ITC, and receive strategic guidance from the SecureCode leadership team based in the United States. Your responsibilities will include close collaboration with engineering, data, and product teams to integrate secure development practices, deliver meaningful security metrics, and effectively coordinate across the USA (PST, EST) and EMEA time zones.

WHO WE ARE LOOKING FOR

We’re looking for a Senior Application Security Engineer/Analyst with deep technical expertise in application security testing, data engineering, and metrics-driven security insights. You should be comfortable navigating ambiguity, learning on the fly, and leveraging emerging technologies—including GenAI services—to accelerate and automate security data pipelines.

The candidate needs to have strong Information Security knowledge, extremely strong written and verbal communication skills and a demonstrated ability to communicate across all areas and levels of the business. They should also be able to comprehend complex business initiatives, leveraging excellent analytical and problem-solving skills.  We are seeking a motivated self-starter who is has a track record of taking ownership of information security challenges and driving them to resolution.

  • Bachelor’s degree in Computer Science, Information Security, or Business Information Management, or equivalent work experience.

  • 5+ years of progressive experience in information security, application security engineering, or cybersecurity consulting.

  • Deep expertise in Application Security Testing (AST) tools, prefrebly including SAST, DAST, SCA, SBOM analysis, and Mobile AST.

  • Strong experience integrating security into CI/CD pipelines using tools like GitHub Actions and Jenkins.

  • Proficiency in Python scripting, API development, and working with structured, semi-structured, and unstructured data.

  • Hands-on experience with SQL, NoSQL, and platforms such as MongoDB and Databricks; solid understanding of ETL fundamentals and API-based data ingestion.

  • Familiarity with cloud-native and serverless architectures, including event-driven patterns and AWS services such as EKS, ECS, Lambda, Bedrock, DocumentDB, DynamoDB, and RDS.

  • Knowledge of threat modeling and secure design review methodologies.

  • Demonstrated ability to communicate effectively across technical and executive audiences, adjusting style and approach as needed.

  • Strong analytical and problem-solving skills with a track record of resolving complex challenges.

  • Ability to lead cross-functional collaboration, build stakeholder relationships, and drive consensus in a global, matrixed environment.

  • Familiarity with security standards, regulatory frameworks, and cloud security best practices.

  • Adaptability to evolving threats and technologies in a fast-paced cybersecurity landscape.

  • Security certifications such as CISSP, CSSLP, CCSP, CISM, or CRISC are preferred but not required.

WHAT YOU’LL WORK ON

If this is you, you’ll be working with the Application Security Consulting SecureCode team to perform these key tasks:

  • Design and implement cybersecurity metrics (KPIs/KRIs) to measure control effectiveness and program reach.

  • Build centralized reporting capabilities and integrate metrics into dashboards using Tableau, PowerBI, and Databricks.

  • Analyze large, complex datasets to identify trends, anomalies, and actionable insights.

  • Collaborate with global engineering and DevOps teams to integrate security tooling into CI/CD pipelines.

  • Prepare executive-level reports and committee summaries on security posture and risk trends.

  • Maintain documentation and process repositories to support compliance and continuous improvement.

  • Stay current with industry trends, regulatory requirements, and best practices in application security metrics and reporting.

今後の予定

私たちの採用プロセス

01 応募

私たちのチームは、多様なスキルセット、知識、意見、アイデア、バックグラウンドを持つメンバーで構成されています。 職務内容、部門、チームを確認して、自分に合った役割を見つけましょう。

02 採用担当者に会う、または評価を受ける

コーポレートの職務を選んだ場合、面接プロセスを開始するために採用担当者が連絡を取り、面接が終了するまでの間、あなたの主な窓口となります。 リテール職の場合は、チャットとクイズを含む対話型の評価を行うことになります。所要時間は約10~20分です。 職務に関わらず、私たちは皆さんの人となりを知りたいと思っています。世界トップクラスのサービスに対する考え方や、あなたの独自性について遠慮なく話してください。

03 面接

Nikeについて調べ、Nikeが何を求めているのかを理解し、あなたの人となりや経歴について詳しく知るために設定された質問に答えられるよう準備し、自信を持ってこのステージに臨んでください。

屋外で笑顔で抱き合う 2 人