Job Description:
Department Overview
In Rakuten Group, the security and safety of the internet services are guaranteed by the Cyber Security Defense Department (CSDD). CSDD covers all aspects of the System Development Life Cycle (SDLC) and operation security for all the services developed inside Rakuten Group.
Position:
Why We Hire
We are seeking a highly motivated and experienced Mid-Level Security Engineer to join our corporate IT security monitoring team. This role is crucial in safeguarding our digital assets by focusing on robust Security Incident and Event Management (SIEM) practices, proactive incident response, and continuous threat detection enhancement. The ideal candidate will possess a strong technical background in cybersecurity, with a particular emphasis on SIEM tool utilization, incident response plan development and execution, and the ability to craft sophisticated detection use cases. Experience with the Secure Development Life Cycle (SDLC) and change management processes is also essential. You will play a key role in analyzing threats, responding to incidents, and collaborating with cross-functional teams to maintain a secure environment.
Position Details
Security Incident and Event Management (SIEM)
- Utilize SIEM tools to manage events, alerts, and logs related to security incidents, ensuring effective monitoring and analysis.
- Perform regular reviews and updates of SIEM rules and threat intelligence to ensure the latest threats are included in detection.
- Continuously test and tune detection rules and methods to improve detection accuracy and reduce false positives/negatives.
- Develop, implement, and maintain custom signatures, rules, and policies for intrusion and anomaly detection, utilizing network, endpoint, and application data sources.
Incident Response (IR) & Playbook Management
- Establish and maintain incident response plans, playbooks, and procedures, ensuring they are current, effective, and align with industry best practices.
- Respond to security incidents, including leading response activities and coordinating with cross-functional internal teams and third-party partners when necessary.
- Assist in information and intelligence sharing with internal and external stakeholders during incident response.
- Conduct real-time analysis of malware campaigns, threat actors, and known attack vectors to detect and report potential threats.
- Deliver detailed technical reports of findings to management with recommended action plans and countermeasures as appropriate.
Threat Detection & Use Case Development
- Create, refine, and prioritize detection use-cases and threat scenarios to enhance our ability to identify and mitigate emerging threats.
- Understand key threat actors and their tools, tactics, techniques, and procedures (TTPs) to ensure that testing scenarios simulate real-world attacks.
- Analyze system and network data to identify potential indicators of compromise (IOCs).
- Continuously research and evaluate security trends, threats, and emerging technologies to provide proactive and agile responses.
Secure Development Life Cycle (SDLC) & Change Management
- Partner with development teams and project/product managers to build and deliver secure services, integrating security throughout the SDLC.
- Perform system requirements/system design reviews on systems to identify and address potential security vulnerabilities.
- Evaluate and integrate security software solutions, ensuring they align with our security posture and architectural standards.
- Join projects and create security-related guidelines, policies, and regulations.
General Cybersecurity Expertise
- Maintain situational awareness of the global threat landscape as well as overall industry trends and advancements.
- Stay up-to-date with the latest security technologies and trends and identify opportunities to improve security architectures and processes.
- Familiarity with regulatory frameworks such as NIST, CIS, and ISO standards.
- Proficient in one or more scripting languages (e.g., Python, Ruby) for automating security tasks and analysis.
- Proven knowledge in network and web application protocols and security issues.
Mandatory Qualifications:
- Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or a related field.
- Approximately 5+ years of experience in a security engineering role with incident response, cyber threat intelligence, security operations center (SOC) related additional experience.
- Strong experience with SIEM tools, forensics, and malware analysis.
- Knowledge of cyber threats and attack vectors, malware delivery, and command and control (C2) mechanisms.
- Strong understanding of security frameworks such as NIST, CIS, and ISO 27001.
- Ability to work under pressure and multitask in a fast-paced environment.
- Excellent verbal and written communication skills; ability to convey complex technical information to non-technical stakeholders.
- Strong teamwork capabilities in a diverse team environment.
Desired Qualifications:
- Experience with Purple Team testing methodologies, including automated testing tools and techniques.
- Experience with at least one major commercial cloud environment.
- Strong ownership and sense of responsibility.
- Understanding of the MITRE ATT&CK Framework.
- Proven experience in handling various cyber threats including ransomware, APTs, social engineering, and DDoS attacks.
- Related professional certifications such as CISSP, GCIA, GCIH, GPEN, CEH, Security+, GIAC, OSCP/OSCE, or SSCP.
- Japanese language communication skills.
#engineer #securityengineer #technologymanagementdiv
-
Tokyo Rakuten Full time¥600,000 - ¥1,200,000 per yearWe are seeking a highly motivated and experienced Mid-Level Security Engineer to join our corporate IT security monitoring team. · Utilize SIEM tools to manage events, alerts, and logs related to security incidents, ensuring effective monitoring and analysis. · Perform regular re ...
-
Tokyo Rakuten ¥600,000 - ¥1,200,000 per yearWe are seeking a highly motivated and experienced Mid-Level Security Engineer to join our corporate IT security monitoring team. · Utilize SIEM tools to manage events, alerts, and logs related to security incidents, ensuring effective monitoring and analysis. · Perform regular re ...
-
Security Engineer
2ヶ月前
Tokyo パーソルキャリア株式会社 BRSグローバルに展開する医薬品メーカーで、セキュリティエンジニアを募集しています。DX推進にあたり、セキュリティ体制を強化することが求められます。 · セキュリティアーキテクチャの設計・管理 · セキュリティソリューションの企画立案 · プロジェクトマネジメント、予算管理、社内調整、ベンダーコントロール等 · セキュリティソリューション導入後の運用 · セキュリティ対策についてのリスク評価、助言 · セキュリティ業務へのAI活用の推進 · セキュリティインシデント対応 · ...
-
Security Engineer
1ヶ月前
Minato SB Intuitions ¥6,500,000 - ¥18,000,000生成AIを生み出し、使う人類は、多様性に満ちた存在。世界には、さまざまな言語、歴史、文化、慣習、制度を持つ国や地域があります。 · セキュリティポリシー・ガバナンス体制の策定、社内展開、定期的なレビューと改善 · 情報セキュリティ/リスク管理体制の構築・運用 · ISO27001の基準をベースにしたリスクアセスメント・監査対応 · セキュリティ関連プロセスの設計・改善・文書化 · 社内教育・啓発活動の企画および実施 · インシデントレスポンス体制の構築・運用 · SaaS製品導入時のリスク評価、セキュリティレビュー · セキュリティ関連の業務経験(3年以 ...
-
Tokyo byFood ¥3,000,000 - ¥6,000,000 per yearbyFood is a Japan-based, rapidly expanding one-stop platform for foodie travelers. We're seeking new team members who are eager to join a growing international company. Through byFood, users can book food experiences around the world, including cooking classes and food tours, and ...
-
Mid-Level Business
2週間前
Tokyo, Japan Lewis & Associates ¥900,000 - ¥1,200,000 per yearThe Tokyo office of an international law firm seeks a highly motivated mid-level associate to join the Business & Finance Practice. · A native English speaker (or equivalent) and proficient in Japanese. · Significant corporate transactional experience, preferably in mergers & acq ...
-
Tokyo Global Insurance Company ¥10,000,000 - ¥14,000,000Improve the security level of the entire organization through the design, construction, and operation of a DevSecOps platform. · ...
-
IT Security Engineer
1ヶ月前
Tokyo スキルハウス・スタッフィング・ソリューションズ株式会社 ¥80,000 - ¥120,000 per yearA Global insurance company is seeking an IT Security Engineer to drive the advancement of information security and support digital transformation initiatives. · ...
-
Tokyo, Japan Gensler ¥1,500,000 - ¥6,000,000 per yearGensler's Consulting Practice is focused on how space, technology, policies, and services support the changing nature of work and learning. Our multidisciplinary team works with a wide range of organizations including major Corporations, Healthcare and Cultural Institutions, Real ...
-
Security Engineer
1ヶ月前
Minato Mercari, Inc. InternshipSHIP¥3,000,000 - ¥6,000,000 per yearThis internship provides an environment where you can engage in experience design with a management perspective, not just engineering tasks, and grow into a leader who will drive the Mercari Group in the future. · Participate in threat modeling, code reviews, and security testing ...
-
Tokyo Specialized Group ¥4,000,000 - ¥8,000,000 per yearA global leader in the food industry seeks an Entry-Mid Level Accountant with strong mentorship and promotion path opportunities. · ...
-
Security Engineer
2ヶ月前
Bunkyō HCLTech ¥900,000 - ¥1,200,000 per yearThe position is responsible for protecting corporate and organizational information systems and minimizing the risk of cyberattacks and data leaks. · As a cybersecurity specialist, monitor systems and detect and respond to suspicious activity · Investigate and respond to cyberatt ...
-
Tokyo PayPay株式会社 ¥2,000,000 - ¥2,500,000 per yearThe PayPay Product Security team is looking for experienced infrastructure security engineers to lead improvements to our infrastructure and operational security, and introduce key security solutions. · Development of tools and technologies to assist PayPay security positioning · ...
-
Tokyo Woven by Toyota Full time¥4,500,000 - ¥9,000,000 per yearWoven by Toyota is enabling Toyota's once-in-a-century transformation into a mobility company. Inspired by a legacy of innovating for the benefit of others, our mission is to challenge the current state of mobility through human-centric innovation — expanding what ...
-
Tokyo Woven by Toyota ¥4,000,000 - ¥10,000,000 per yearWoven by Toyota is enabling Toyota's once-in-a-century transformation into a mobility company. Our mission is to challenge the current state of mobility through human-centric innovation — expanding what ...
-
Tokyo HCLTech ¥5,000,000 - ¥10,000,000 per yearWe are seeking a highly motivated and experienced L2/L3 IAM Security Engineer to join our customer's growing cybersecurity team. This role is crucial for designing, implementing, maintaining, and optimizing our Identity and Access Management (IAM) solutions. The successful candid ...
-
Tokyo Relocate ¥6,000,000 - ¥12,000,000 per yearThe PayPay Product Security team is looking for experienced infrastructure security engineers to lead improvements to our infrastructure and operational security, and introduce key security solutions. · Development of tools and technologies to assist PayPay security positioning · ...
-
Tokyo First Point Group ¥1,800,000 - ¥2,500,000 per yearWe are looking for a Senior Network Security Engineer with deep expertise in Fortinet technologies and modern network security architectures. · Lead the deployment of Fortinet SD-WAN and SASE solutions across enterprise environments. · Design and execute cutover strategies from M ...
-
Tokyo PayPay株式会社 ¥2,000,000 - ¥2,500,000 per yearThe PayPay Product Security team is looking for experienced infrastructure security engineers to lead improvements to our infrastructure and operational security, and introduce key security solutions. · Analyzing security risks relevant to the production infrastructure · Designin ...
-
Tokyo キンドリルジャパン ¥10,000,000 - ¥20,000,000 per yearキンドリルは、世界が日々依存しているミッション・クリティカルなテクノロジー・システムの設計、構築、管理、およびモダナイズを行っています。では、なぜキンドリルで働くのでしょうか? 私たちは常に前進しており、社員、お客様、そしてコミュニティーのために、より公平でインクルーシブな世界を築けるよう常に努力を続けています · ゼロトラスト領域においてMicrosoft E3/E5のセキュリティソリューション・プロジェクトを中心に活躍するデリバリーフェーズのセキュリティ技術者 · 大企業のお客様プロジェクトにおけるセキュリティ領域のリーダーとして、お客様のセキュリテ ...
-
Tokyo Carrwood ¥4,000,000 - ¥8,000,000 per yearAre you a skilled lawyer specializing in Corporate / M&A law? Do you have business-level Japanese and aspire to work with some of the most prestigious clients in the market? If yes, we want to connect with you · Handling high-profile cross-border deals · Collaborating with elite ...