Jobs › Companies › Rakuten › Staff Engineer, SOC Platform & Tools Group

Über diese Staff Engineer, SOC Platform & Tools Group Stelle bei Rakuten

Rakuten · Vor Ort · RSIN_Bangalore

Job Description:

Job Title: Staff Engineer, SOC Platform & Tools Group
Department: Cyber Defense Operations Section
Location: Bangalore, India

About the Team/Department:


Position Summary:

We are seeking a hands-on Senior SOC Platform Engineer to build, operate, and scale the platforms powering our detection and response capabilities. This is an engineering-focused role—not an analyst or shift-monitoring role. You will own the end-to-end telemetry lifecycle, from log ingestion and pipeline routing to SIEM/SOAR infrastructure management. You will bridge the gap between network operations, security analysts, and platform engineering to ensure high-fidelity data availability at scale.


Key Responsibilities:

  • SIEM & SOAR Engineering: Architect and manage clustered, multi-site deployments of Splunk/Elastic and SOAR platforms. Own the lifecycle, performance tuning, and automation playbook development to drive down MTTR.
  • Telemetry Pipeline (Cribl): Operate Cribl Stream/Edge to parse, filter, mask, and enrich data streams. Implement intelligent routing to optimize ingest costs and enable data replay for investigations.
  • Log Collection & Onboarding: Architect high-volume syslog tiers (rsyslog/syslog-ng). Own the end-to-end onboarding of diverse telecom, network, cloud, and enterprise sources, ensuring alignment with CIM/ECS and MITRE ATT&CK.
  • Platform & Infrastructure Ops: Manage the full stack across on-premises and GCP environments. Use IaC (Terraform) and configuration management (Ansible) to automate platform health, capacity planning, and disaster recovery.
  • Systems Engineering: Administer enterprise Linux (RHEL/Ubuntu) at scale. Develop custom operational tooling and health-check scripts using Python and Bash. Install, configure, and maintain Linux servers and operating systems across on-premises and cloud environments. Monitor system performance, disk space, memory usage, and network connectivity; troubleshoot and resolve issues. Perform regular backups, disaster recovery planning, and ensure business continuity.
  • Kubernetes: Deploy and manage containerized applications using Docker and Kubernetes, ensuring high availability and fault tolerance. Implement CI/CD pipelines with Kubernetes integration for automated testing, building, and deployment workflows. Configure service discovery, load balancing, ingress controllers, and persistent storage solutions.

 


Required Qualifications

 

  • Experience: 10+ years in security/SOC engineering, log management, or infrastructure engineering.
  • SIEM/SOAR Expertise: Hands-on production experience administering Splunk/Elastic/SOAR (clustering, upgrades) and SOAR platforms (playbook development/connectors).
  • Pipeline Proficiency: Expert-level experience with log pipeline tooling (Cribl Stream/Edge preferred; Logstash/Vector/Kafka considered).
  • Infrastructure Skills: Strong Linux administration, scripting (Python/Bash), and syslog fundamentals (TLS, load balancing, high-volume tuning).
  • Data Onboarding: Proven ability to write complex regex-based parsers, field extractions, and normalization logic.
  • Cloud & Networking: Working knowledge of GCP services (Logging, IAM, GKE, Networking) and solid grasp of networking fundamentals (TCP/UDP, DNS, routing, packet capture).
  • Communication: Excellent written communication and disciplined documentation habits.


Preferred Qualifications:

 

  • Domain Expertise: Experience in a telecom or service provider environment (Mobile Core, 5G, IMS/VoLTE, SS7/Diameter, OSS/BSS).
  • DevOps/Automation: Experience with Kubernetes/Helm, Terraform, and Ansible in hybrid environments.
  • Detection Engineering: Exposure to SPL, ES|QL, KQL, Sigma rules, and data lake/object storage tiering architectures.
  • Certifications: Splunk Architect, Elastic Certified Engineer, Cribl Certified Admin, RHCE/RHCSA, Google Professional Cloud Security Engineer, AWS Professional certificate.

 


RAKUTEN SHUGI PRINCIPLES:

Our worldwide practices describe specific behaviours that make Rakuten unique and united across the world. We expect Rakuten employees to model these 5 Shugi Principles of Success.

  • Always improve, always advance. Only be satisfied with complete success - Kaizen.
  • Be passionately professional. Take an uncompromising approach to your work and be determined to be the best.
  • Hypothesize - Practice - Validate - Shikumika. Use the Rakuten Cycle to success in unknown territory.
  • Maximize Customer Satisfaction. The greatest satisfaction for workers in a service industry is to see their customers smile.
  • Speed!! Speed!! Speed!! Always be conscious of time. Take charge, set clear goals, and engage your team.
  • undefined
  • undefined
Bereit, sich bei Rakuten zu bewerben?
Bei Rakuten bewerben

Über Rakuten

In Japanese, Rakuten stands for ‘optimism.’ It means we believe in the future. It’s an understanding that, with the right mind-set, we can make the future better by what we do today. So we challenge ourselves to evolve, innovate and experiment, to create a better, brighter future for everyone. Today, our 70+ businesses span e-commerce, digital content, communications and fintech, bringing the joy of discovery to almost 1.3 billion members across the world. If you have any trouble logging in, please contact us here Rakuten Group, Inc.: [email protected] *Please read the Application Requirements(EN) / 募集要項(JP) before applying. Our Diversity & Inclusion Policy and Applica

Alle Jobs bei Rakuten ansehen →

Ähnliche Jobs

RA
Staff Engineer, Security Operations Center
Rakuten
⚡ Früh bewerben RSIN_Bangalore Vor Ort
● Neu 👁 Gesehen ✓ Beworben vor 1 Tg.
RA
Staff Engineer, Offensive Security
Rakuten
⚡ Früh bewerben RSIN_Bangalore Vor Ort
● Neu 👁 Gesehen ✓ Beworben vor 1 Wo.
RA
Staff Engineer, AI/ML
Rakuten
⚡ Früh bewerben RSIN_Bangalore Vor Ort
● Neu 👁 Gesehen ✓ Beworben vor 3 Wo.
Wisdom
Staff Software Engineer, Platform
Wisdom
⚡ Früh bewerben Remote · standortgebunden
● Neu 👁 Gesehen ✓ Beworben vor 2 Std.
Vibe
Staff Backend Engineer, Integrations
Vibe
⚡ Früh bewerben New York Hybrid $204,000–$276,000
● Neu 👁 Gesehen ✓ Beworben vor 2 Std.
Vibe
Staff Backend Engineer, Integrations
Vibe
⚡ Früh bewerben Paris Hybrid €99,000–€133,000
● Neu 👁 Gesehen ✓ Beworben vor 2 Std.
tem
Senior Staff Machine Learning Engineer - Pricing
tem
⚡ Früh bewerben United Kingdom · standortgebunden £127,000–£127,000
● Neu 👁 Gesehen ✓ Beworben vor 2 Std.
Skydio
Staff Software Engineer - Security
Skydio
⚡ Früh bewerben San Mateo, California, United... Hybrid $220,000–$270,000
● Neu 👁 Gesehen ✓ Beworben vor 2 Std.
Mimica
Staff/Lead Python Engineer (FastAPI, Orchestration)
Mimica
⚡ Früh bewerben Remote Anywhere · standortgebunden
● Neu 👁 Gesehen ✓ Beworben vor 2 Std.

Registrieren für Vorschläge, die auf die von Ihnen geöffneten Jobs und gespeicherten Suchen zugeschnitten sind.

Mehr Jobs bei Rakuten

Alle Jobs bei Rakuten ansehen →

Jetzt bewerben
🤖

Moment — langsam

JobsRadar wurde für echte Menschen gebaut, die eine schwere Zeit bei der Jobsuche haben — nicht für automatisierte Anfragen. Sie klicken viel zu schnell und sind jetzt vorübergehend blockiert.

Kommen Sie später wieder. Wenn Sie wirklich auf Jobsuche sind, stehen wir hinter Ihnen — verhalten Sie sich einfach wie ein Mensch.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Verschaffe dir einen Vorsprung bei der Jobsuche.

Tritt unserem Telegram-Kanal bei für das, was dir hilft, die Stelle zu bekommen — Gehaltsbenchmarks, den wöchentlichen Marktpuls und neue Feature-Drops. Kein Spam, nur Signal.

Dem Kanal beitreten — kostenlos