Tokyo Rakuten

Job Description
Business Overview
The Technology Management Division (TMD) provides Corporate IT, and Cyber Security & Privacy Governance to Rakuten Group companies and essential business management for technology organizations, thereby enabling innovation and strengthening the technology foundation. Within TMD, the Technology Management Services Supervisory Department (TMSSD) plays a vital role in CIO Governance, IT financial management, IT procurement, Quality Management System (QMS), technology-related public relations, and human resources strategy. By promoting efficiency, quality, risk management, and organizational strength, we ensure that Tech Divisions remain agile and at the forefront of technological advancement.

Department Overview
The Cyber Security Defense Department (CSDD) is responsible for safeguarding all Rakuten companies and users from cyber threats, ensuring the security and integrity of Rakuten Group's global internet services. We oversee all aspects of both Secure Development and Security Operations for services developed within the group, with dedicated security teams and operation centers strategically located in key regions worldwide.

Position
Why We Hire
We are seeking a highly motivated and experienced Mid-Level Security Engineer to join our corporate IT security monitoring team. This role is crucial in safeguarding our digital assets by focusing on robust Security Incident and Event Management (SIEM) practices, proactive incident response, and continuous threat detection enhancement. The ideal candidate will possess a strong technical background in cybersecurity, with a particular emphasis on SIEM tool utilization, incident response plan development and execution, and the ability to craft sophisticated detection use cases. Experience with the Secure Development Life Cycle (SDLC) and change management processes is also essential. You will play a key role in analyzing threats, responding to incidents, and collaborating with cross-functional teams to maintain a secure environment.

Position Details
Security Incident and Event Management (SIEM)

  • Utilize SIEM tools to manage events, alerts, and logs related to security incidents, ensuring effective monitoring and analysis.
  • Perform regular reviews and updates of SIEM rules and threat intelligence to ensure the latest threats are included in detection.
  • Continuously test and tune detection rules and methods to improve detection accuracy and reduce false positives/negatives.
  • Develop, implement, and maintain custom signatures, rules, and policies for intrusion and anomaly detection, utilizing network, endpoint, and application data sources.

Incident Response (IR) & Playbook Management

  • Establish and maintain incident response plans, playbooks, and procedures, ensuring they are current, effective, and align with industry best practices.
  • Respond to security incidents, including leading response activities and coordinating with cross-functional internal teams and third-party partners when necessary.
  • Assist in information and intelligence sharing with internal and external stakeholders during incident response.
  • Conduct real-time analysis of malware campaigns, threat actors, and known attack vectors to detect and report potential threats.
  • Deliver detailed technical reports of findings to management with recommended action plans and countermeasures as appropriate.

Threat Detection & Use Case Development

  • Create, refine, and prioritize detection use-cases and threat scenarios to enhance our ability to identify and mitigate emerging threats.
  • Understand key threat actors and their tools, tactics, techniques, and procedures (TTPs) to ensure that testing scenarios simulate real-world attacks.
  • Analyze system and network data to identify potential indicators of compromise (IOCs).
  • Continuously research and evaluate security trends, threats, and emerging technologies to provide proactive and agile responses.

Secure Development Life Cycle (SDLC) & Change Management

  • Partner with development teams and project/product managers to build and deliver secure services, integrating security throughout the SDLC.
  • Perform system requirements/system design reviews on systems to identify and address potential security vulnerabilities.
  • Evaluate and integrate security software solutions, ensuring they align with our security posture and architectural standards.
  • Join projects and create security-related guidelines, policies, and regulations.

General Cybersecurity Expertise

  • Maintain situational awareness of the global threat landscape as well as overall industry trends and advancements.
  • Stay up-to-date with the latest security technologies and trends and identify opportunities to improve security architectures and processes.
  • Familiarity with regulatory frameworks such as NIST, CIS, and ISO standards.
  • Proficient in one or more scripting languages (e.g., Python, Ruby) for automating security tasks and analysis.
  • Proven knowledge in network and web application protocols and security issues.

Mandatory Qualifications

  • Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or a related field.
  • Approximately 5+ years of experience in a security engineering role with incident response, cyber threat intelligence, security operations center (SOC) related additional experience.
  • Strong experience with SIEM tools, forensics, and malware analysis.
  • Knowledge of cyber threats and attack vectors, malware delivery, and command and control (C2) mechanisms.
  • Strong understanding of security frameworks such as NIST, CIS, and ISO 27001.
  • Ability to work under pressure and multitask in a fast-paced environment.
  • Excellent verbal and written communication skills; ability to convey complex technical information to non-technical stakeholders.
  • Strong teamwork capabilities in a diverse team environment.

Desired Qualifications

  • Experience with Purple Team testing methodologies, including automated testing tools and techniques.
  • Experience with at least one major commercial cloud environment.
  • Strong ownership and sense of responsibility.
  • Understanding of the MITRE ATT&CK Framework.
  • Proven experience in handling various cyber threats including ransomware, APTs, social engineering, and DDoS attacks.
  • Related professional certifications such as CISSP, GCIA, GCIH, GPEN, CEH, Security+, GIAC, OSCP/OSCE, or SSCP.
  • Japanese language communication skills.

engineer #securityengineer #technologymanagementdiv



  • Tokyo Rakuten

    · We are seeking a highly motivated and experienced Mid-Level Security Engineer to join our corporate IT security monitoring team. This role is crucial in safeguarding our digital assets by focusing on robust Security Incident and Event Management (SIEM) practices, proactive inc ...

  • Security Engineer

    19時間前


    Tokyo Tailor

    プロダクトづくりの難しい部分を簡単にし、誰もがプロダクトの作り手になれる。これがテイラーが実現したい世界です。 · ...


  • Tokyo Datadog

    Datadogのセールスエンジニアは、顧客やパートナーとの商談を成立させるためのサポートを行います。現状のモニタリング・運用などの体制に課題をかかえ改善していきたいお客様や、Datadogの購入を検討頂いているお客様などにテクニカルデモンストレーション、技術評価(POV)、疑問点・問題点の解決等の提案・サポートを通じて、技術的な専門知識を提供します。 · 営業チームと連携し、Datadogのバリュープロポジション、ビジョン、戦略を顧客に明確に伝えること · 新しい技術を継続的に学習し、競争力のある知識、技術スキル،信頼性を作る · ...

  • Mid-Level Business

    1週間前


    Tokyo, Japan Lewis & Associates

    The Tokyo office of an international law firm seeks a highly motivated mid-level associate to join our Business & Finance Practice. · ...


  • Tokyo 株式会社エクサウィザーズ ¥7,080,000 - ¥13,080,000

    エクサウィザーズのセキュリティ部門はイノベーションと開発者体験を促進しつつ、当社が構築するAIプロダクトやサービスを保護することに全力で取り組んでいます。企業セキュリティ、クラウドセキュリティ、ネットワークの回復力、およびガバナンスの最前線で活動し、当社のインフラストラクチャと製品の安全性、コンプライアンス、堅牢性を確保しています。 · シニアクラウドセキュリティエンジニアとして、全体的なセキュリティ態勢の強化、チームメンバーへの指導とメンタリングを行い、その上で当社のセキュリティフレームワークが業界標準や規制要件に適合していることを確認します。 · ...


  • Greater Tokyo Area Randstad Japan

    +セキュリティポリシー、ガバナンスフレームワーク、全社的なコンプライアンスの策定・維持 · ISO 27001 に準拠した情報セキュリティおよびリスク管理体制の構築・運用 · インシデント対応、社内研修などを含むセキュリティプロセスの設計・レビュー、文書化 · +5年以上のセキュリティ実務経験と体制構築・運用能力用経験 · 主要なセキュリティ標準フレームワーク(ISO27001、ISMAP、NISTなど)の導入または運用経験 · + ...


  • Tokyo, Sumida-ku, Japan () Astroscale

    私たちのリアルな様子はこちらから→ 株式会社アストロスケールの会社情報 - Wantedly · Export Control Laws · ...


  • Tokyo, Japan Gensler ¥2,000,000 - ¥2,800,000 per year

    We are a diverse team of creative and analytical thinkers who apply proven research tools and practical methodologies to solve complex problems related to space, people, operations, finance and technology. Our practice is growing and we are looking for design analysts who will he ...


  • Tokyo 株式会社エクサウィザーズ ¥7,080,000 - ¥13,080,000

    エクサウィザーズのセキュリティ部門はイノベーションと開発者体験を促進しつつ、同社が構築するAIプロダクトやサービスを保護することに全力で取り組んでいます。 · 正社員 · ...


  • Chiyoda KPMG Ignition Tokyo ¥2,000,000 - ¥2,800,000 per year

    KPMG Ignition Tokyo (KIT)は、 · 「Make the Impossible Possible」(「できない」を「できる」に)というミッションを掲げ、KPMGグローバルおよびKPMGジャパン内各グループ会社(各メンバーファーム)と協業して共通基盤とソリューションを創発し、クライアント企業のデジタルトランスフォーメーションに伴うビジネス変革を支援しています。 · ツールや自動化されたプロセスなどのセキュアで継続的なデリバリーアプローチの定義とサポート · 自動化(CI/CD)、アクセス制御、承認、認証、ネットワークセキュリティ、ア ...


  • Tokyo APCO ¥4,000,000 - ¥8,000,000 per year

    We are looking for a dynamic public affairs / communications professional to drive APCO's Japan business with a broad range of international clients. The role will be based in Tokyo with some domestic travel and occasional travel to other markets. · Prepare and lead customized cr ...


  • Tokyo, Japan APCO Worldwide Holdings

    APCO Worldwide is looking for a dynamic public affairs / communications professional to drive APCO's Japan business with a broad range of international clients. · ...

  • Security Engineer

    2ヶ月前


    Tokyo Check Point Software ¥5,000,000 - ¥10,000,000 per year

    As the world's leading vendor of Cyber Security, facing the most sophisticated threats and attacks, we've assembled a global team of the most driven, creative and innovative people. · Working closely with the sales team to identify prospects. · Demonstrate our full portfolio of s ...


  • Tokyo Kyndryl Japan ¥4,000,000 - ¥10,000,000 per year

    キンドリルは、世界が日々依存しているミッション・クリティカルなテクノロジー・システムの設計、構築、管理、およびモダナイズを行っています。 では、なぜキンドリルで働くのでしょうか? 私たちは常に前進しており、社員、お客様、そしてコミュニティーのために、より公平でインクルーシブな世界を築けるよう常に努力を続けています · 大企業のお客様プロジェクトにおけるセキュリティ領域のリーダーとして、お客様のセキュリティ課題解決のためのMicrosoft E3 / E5ソリューションの提案、導入、運用をリードしていただきます。 · 技術者としてプロジェクトの技術対応や課 ...


  • Tokyo PayPay Corporation ¥900,000 - ¥1,200,000 per year

    The PayPay Product Security team is looking for experienced infrastructure security engineers to lead improvements to our infrastructure and operational security, and introduce key security solutions. · Analyzing security risks relevant to the production infrastructure · Designin ...


  • Tokyo, Japan AheadGroup ¥2,400,000 - ¥2,800,000 per year

    Ahead Group is looking for an Cyber Security Engineer to join a global e-commerce company. · ...


  • Tokyo Woven ¥6,000,000 - ¥12,000,000 per year

    You will join the Enterprise Cloud Security team part of the Enterprise Security department. We are looking for a motivated Cloud Security Engineer with experience in enterprise platforms such as Cloud and Kubernetes. · Bachelor's degree in Computer Science, Information Security, ...


  • Greater Tokyo Area Smartbrain

    We are looking for an IT Infrastructure Engineer who can thrive in a dynamic and fast-paced environment. · We encourage candidates to apply even if they don't meet all requirements. Continuous learning and equal opportunities are important to us. · If you're passionate about this ...


  • Tokyo Woven

    About Woven by Toyota · Woven by Toyota is enabling Toyota's once-in-a-century transformation into a mobility company. Inspired by a legacy of innovating for the benefit of others,Our mission is to challenge the current state of mobility through human-centric innovation expanding ...


  • Tokyo, Japan AheadGroup

    This opportunity lies within the Cyber Security and Defense Department (CSDD) of a global leader in digital innovation. · ...


  • Tokyo キンドリルジャパン

    · キンドリルで働く理由について · 私たちは常に前進しており、社員、お客様、そしてコミュニティーのために · より公平でインクルーシブな世界を築けるよう常に努力を続けています · サイバーセキュリティ技術者として必要な人材像: · お客様志向の考えを持っており、お客様との会話や活動が実践できるようにします · 案件をリードする能力があります · 論理的な考え方と会話力がある人が必要です ...