Jobs Companies Rakuten Senior Engineer - Penetration Tester

Über diese Senior Engineer - Penetration Tester Stelle bei Rakuten

Rakuten · Vor Ort · RSIN_Bangalore

Job Description:

Job Title: Senior Penetration Tester(Sr. Penetration Tester)
Department: Security Assurance
Reports To: Senior Manager, Security Assurance Section
Location: Bangalore or Indore, India

About the Team/Department:

At Rakuten Mobile Security Assurance, you will help secure one of the world's most advanced cloud-native telecom networks, protecting millions of customers across digital, mobile, cloud, and AI-driven services.

You will work on cutting-edge offensive security challenges spanning 4G/5G telecom platforms, cloud-native infrastructure, applications, APIs, AI/ML systems, and emerging technologies.

We offer an environment where innovation is encouraged, continuous learning is supported, and security experts are empowered to make a direct business impact.

You will have the opportunity to work alongside industry-leading engineers, build next-generation security capabilities, leverage AI to transform security testing, and contribute to protecting critical telecommunications infrastructure at scale.

If you are passionate about offensive security, enjoy solving complex technical challenges, and want to shape the future of cybersecurity in the AI era, we would love to hear from you.


Position Summary
Perform advanced penetration testing and offensive security assessments across Rakuten Mobile's web, mobile,

API, cloud, AI/ML, and telecom environments. The role focuses on identifying complex security vulnerabilities,

validating exploitability, supporting red team activities, and helping engineering teams strengthen the

organization's security posture.


Key Responsibilities
• Conduct manual and automated penetration testing of web applications, mobile applications, APIs, cloud

platforms, and network infrastructure.

• Perform security assessments of AI/ML applications, LLM-based systems, AI agents, RAG implementations,

and MLOps pipelines.

• Identify vulnerabilities such as prompt injection, insecure model integrations, data leakage, model

manipulation, and AI supply chain risks.

• Execute security testing of telecom systems, including BSS/OSS applications, eSIM platforms, subscriber

management systems, mobile network services, and internet-facing telecom applications.

• Support red team exercises, adversary emulation engagements, attack path analysis, and exploit validation.

• Conduct source code reviews, secure design reviews, and architecture-level security assessments when

required.

• Develop proof-of-concepts, create detailed technical reports, and provide actionable remediation

recommendations.

• Validate remediation fixes and perform security re-testing to confirm closure.

• Research emerging attack techniques, exploit methodologies, AI-assisted testing methods, and offensive

security tools.

• Contribute to automation initiatives and continuous security validation capabilities.


Required Qualifications

• 10+ years of hands-on penetration testing and application security experience.

• Strong expertise in web, mobile, API, cloud, infrastructure, and AI security testing.

• Experience with Burp Suite, Kali Linux, Metasploit, BloodHound, Nmap, Nessus, and modern offensive security

frameworks.

• Knowledge of programming and scripting languages such as Python, JavaScript, Bash, and PowerShell.

• Familiarity with cloud platforms such as AWS, Azure, or GCP and containerized environments such as

Kubernetes and Docker.

 


Preferred Qualifications

• Experience with telecom technologies, mobile core networks, BSS/OSS systems, and cloud-native telecom applications is preferred.

• Preferred certifications: OSCP, CRTP, CRTO, OSEP, OSWE, GPEN, GXPN or equivalent certifications.

Nice-to-Have Expertise

• AI/LLM security testing and adversarial machine learning.

• Red team operations and advanced exploit development.

• Cloud and Kubernetes security assessments.

• 5G / telecom security testing and BSS/OSS security validation.

• Bug bounty, vulnerability research, and AI-assisted penetration testing.

 


Core Competencies

  • Advanced Offensive Security – Conducts complex manual penetration tests, exploit validation, and attack-path analysis.
  • Application and API Security – Assesses web, mobile, API, source-code, and application architecture risks.
  • Cloud and Infrastructure Security – Tests AWS/Azure/GCP, Kubernetes, containers, networks, identity systems, and configurations.
  • AI/ML Security Testing – Evaluates LLMs, AI agents, RAG solutions, MLOps pipelines, and AI supply-chain risks.
  • Telecom Security Expertise – Understands 4G/5G, BSS/OSS, eSIM, subscriber platforms, and cloud-native telecom environments.
  • Red Teaming and Adversary Emulation – Applies realistic attacker techniques and supports advanced offensive-security exercises.
  • Security Automation and Scripting – Uses Python, JavaScript, Bash, or PowerShell to automate testing and validation.
  • Analytical Problem-Solving – Investigates complex systems, prioritizes exploitable risks, and develops practical proofs of concept.
  • Risk Communication and Reporting – Clearly explains technical findings, business impact, and actionable remediation to technical and nontechnical stakeholders.
  • Collaboration and Technical Leadership – Works effectively with engineering teams, mentors others, and drives remediation through closure.
  • Continuous Learning and Innovation – Tracks emerging attack techniques, vulnerabilities, tools, and AI-assisted testing methods.
  • Professional Ethics and Accountability – Handles sensitive information responsibly and performs testing within authorized scope.
  • undefined

Bereit, sich bei Rakuten zu bewerben?
Bei Rakuten bewerben

Über Rakuten

In Japanese, Rakuten stands for ‘optimism.’ It means we believe in the future. It’s an understanding that, with the right mind-set, we can make the future better by what we do today. So we challenge ourselves to evolve, innovate and experiment, to create a better, brighter future for everyone. Today, our 70+ businesses span e-commerce, digital content, communications and fintech, bringing the joy of discovery to almost 1.3 billion members across the world. If you have any trouble logging in, please contact us here Rakuten Group, Inc.: [email protected] *Please read the Application Requirements(EN) / 募集要項(JP) before applying. Our Diversity & Inclusion Policy and Applica

Alle Jobs bei Rakuten ansehen →

Ähnliche Jobs

Roblox
Senior Offensive Security Engineer
Roblox
⚡ Früh bewerben San Mateo, CA, United States Vor Ort $196,750–$243,290
● Neu 👁 Gesehen ✓ Beworben vor 4 Std.
Thoropass
Junior Pentester
Thoropass
⚡ Früh bewerben LATAM, India Vor Ort
● Neu 👁 Gesehen ✓ Beworben vor 20 Std.
GR
Senior Information Security Engineer, Offensive Security
GRVTY
⚡ Früh bewerben Maryland, United States Vor Ort $175,000–$250,000
● Neu 👁 Gesehen ✓ Beworben vor 21 Std.
GR
Senior Information Security Engineer, Offensive Security
GRVTY
⚡ Früh bewerben San Antonio, Texas, United Sta... Vor Ort
● Neu 👁 Gesehen ✓ Beworben vor 21 Std.
GR
Senior Information Security Engineer, Offensive Security
GRVTY
⚡ Früh bewerben Boulder, Colorado, United Stat... Vor Ort $175,000–$250,000
● Neu 👁 Gesehen ✓ Beworben vor 21 Std.
SixGen, Inc.
Senior Web Application Penetration Tester
SixGen, Inc.
⚡ Früh bewerben Remote · standortgebunden $125,000–$165,000
● Neu 👁 Gesehen ✓ Beworben vor 1 Tg.
Coupang
Staff Security Engineer (Penetration Tester)
Coupang
⚡ Früh bewerben Seoul, South Korea Vor Ort
● Neu 👁 Gesehen ✓ Beworben vor 1 Tg.
Datacom
Senior Cybersecurity Consultant - Penetration Tester
Datacom
⚡ Früh bewerben Wellington, Wellington, New Ze... Vor Ort
● Neu 👁 Gesehen ✓ Beworben vor 1 Tg.
U.S. Bank
Senior Penetration Tester (Mobile, API, Cloud)
U.S. Bank
⚡ Früh bewerben Irving, TX Vor Ort
● Neu 👁 Gesehen ✓ Beworben vor 1 Tg.

Registrieren für Vorschläge, die auf die von Ihnen geöffneten Jobs und gespeicherten Suchen zugeschnitten sind.

Mehr Jobs bei Rakuten

Alle Jobs bei Rakuten ansehen →

Jetzt bewerben
🤖

Moment — langsam

JobsRadar wurde für echte Menschen gebaut, die eine schwere Zeit bei der Jobsuche haben — nicht für automatisierte Anfragen. Sie klicken viel zu schnell und sind jetzt vorübergehend blockiert.

Kommen Sie später wieder. Wenn Sie wirklich auf Jobsuche sind, stehen wir hinter Ihnen — verhalten Sie sich einfach wie ein Mensch.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Verschaffe dir einen Vorsprung bei der Jobsuche.

Tritt unserem Telegram-Kanal bei für das, was dir hilft, die Stelle zu bekommen — Gehaltsbenchmarks, den wöchentlichen Marktpuls und neue Feature-Drops. Kein Spam, nur Signal.

Dem Kanal beitreten — kostenlos