Jobs › Companies › Rakuten › Staff Engineer, SOC Platform & Tools Group

Sobre este puesto de Staff Engineer, SOC Platform & Tools Group en Rakuten

Rakuten · Presencial · RSIN_Bangalore

Job Description:

Job Title: Staff Engineer, SOC Platform & Tools Group
Department: Cyber Defense Operations Section
Location: Bangalore, India

About the Team/Department:


Position Summary:

We are seeking a hands-on Senior SOC Platform Engineer to build, operate, and scale the platforms powering our detection and response capabilities. This is an engineering-focused role—not an analyst or shift-monitoring role. You will own the end-to-end telemetry lifecycle, from log ingestion and pipeline routing to SIEM/SOAR infrastructure management. You will bridge the gap between network operations, security analysts, and platform engineering to ensure high-fidelity data availability at scale.


Key Responsibilities:

  • SIEM & SOAR Engineering: Architect and manage clustered, multi-site deployments of Splunk/Elastic and SOAR platforms. Own the lifecycle, performance tuning, and automation playbook development to drive down MTTR.
  • Telemetry Pipeline (Cribl): Operate Cribl Stream/Edge to parse, filter, mask, and enrich data streams. Implement intelligent routing to optimize ingest costs and enable data replay for investigations.
  • Log Collection & Onboarding: Architect high-volume syslog tiers (rsyslog/syslog-ng). Own the end-to-end onboarding of diverse telecom, network, cloud, and enterprise sources, ensuring alignment with CIM/ECS and MITRE ATT&CK.
  • Platform & Infrastructure Ops: Manage the full stack across on-premises and GCP environments. Use IaC (Terraform) and configuration management (Ansible) to automate platform health, capacity planning, and disaster recovery.
  • Systems Engineering: Administer enterprise Linux (RHEL/Ubuntu) at scale. Develop custom operational tooling and health-check scripts using Python and Bash. Install, configure, and maintain Linux servers and operating systems across on-premises and cloud environments. Monitor system performance, disk space, memory usage, and network connectivity; troubleshoot and resolve issues. Perform regular backups, disaster recovery planning, and ensure business continuity.
  • Kubernetes: Deploy and manage containerized applications using Docker and Kubernetes, ensuring high availability and fault tolerance. Implement CI/CD pipelines with Kubernetes integration for automated testing, building, and deployment workflows. Configure service discovery, load balancing, ingress controllers, and persistent storage solutions.

 


Required Qualifications

 

  • Experience: 10+ years in security/SOC engineering, log management, or infrastructure engineering.
  • SIEM/SOAR Expertise: Hands-on production experience administering Splunk/Elastic/SOAR (clustering, upgrades) and SOAR platforms (playbook development/connectors).
  • Pipeline Proficiency: Expert-level experience with log pipeline tooling (Cribl Stream/Edge preferred; Logstash/Vector/Kafka considered).
  • Infrastructure Skills: Strong Linux administration, scripting (Python/Bash), and syslog fundamentals (TLS, load balancing, high-volume tuning).
  • Data Onboarding: Proven ability to write complex regex-based parsers, field extractions, and normalization logic.
  • Cloud & Networking: Working knowledge of GCP services (Logging, IAM, GKE, Networking) and solid grasp of networking fundamentals (TCP/UDP, DNS, routing, packet capture).
  • Communication: Excellent written communication and disciplined documentation habits.


Preferred Qualifications:

 

  • Domain Expertise: Experience in a telecom or service provider environment (Mobile Core, 5G, IMS/VoLTE, SS7/Diameter, OSS/BSS).
  • DevOps/Automation: Experience with Kubernetes/Helm, Terraform, and Ansible in hybrid environments.
  • Detection Engineering: Exposure to SPL, ES|QL, KQL, Sigma rules, and data lake/object storage tiering architectures.
  • Certifications: Splunk Architect, Elastic Certified Engineer, Cribl Certified Admin, RHCE/RHCSA, Google Professional Cloud Security Engineer, AWS Professional certificate.

 


RAKUTEN SHUGI PRINCIPLES:

Our worldwide practices describe specific behaviours that make Rakuten unique and united across the world. We expect Rakuten employees to model these 5 Shugi Principles of Success.

  • Always improve, always advance. Only be satisfied with complete success - Kaizen.
  • Be passionately professional. Take an uncompromising approach to your work and be determined to be the best.
  • Hypothesize - Practice - Validate - Shikumika. Use the Rakuten Cycle to success in unknown territory.
  • Maximize Customer Satisfaction. The greatest satisfaction for workers in a service industry is to see their customers smile.
  • Speed!! Speed!! Speed!! Always be conscious of time. Take charge, set clear goals, and engage your team.
  • undefined
  • undefined
¿Listo para postularte en Rakuten?
Postúlate en Rakuten

Sobre Rakuten

In Japanese, Rakuten stands for ‘optimism.’ It means we believe in the future. It’s an understanding that, with the right mind-set, we can make the future better by what we do today. So we challenge ourselves to evolve, innovate and experiment, to create a better, brighter future for everyone. Today, our 70+ businesses span e-commerce, digital content, communications and fintech, bringing the joy of discovery to almost 1.3 billion members across the world. If you have any trouble logging in, please contact us here Rakuten Group, Inc.: [email protected] *Please read the Application Requirements(EN) / 募集要項(JP) before applying. Our Diversity & Inclusion Policy and Applica

Ver todos los empleos en Rakuten →

Empleos similares

RA
Staff Engineer, Security Operations Center
Rakuten
⚡ Postúlate pronto RSIN_Bangalore Presencial
● Nuevo 👁 Visto ✓ Postulado hace 1d
RA
Staff Engineer, Offensive Security
Rakuten
⚡ Postúlate pronto RSIN_Bangalore Presencial
● Nuevo 👁 Visto ✓ Postulado hace 1sem
RA
Staff Engineer, AI/ML
Rakuten
⚡ Postúlate pronto RSIN_Bangalore Presencial
● Nuevo 👁 Visto ✓ Postulado hace 3sem
Wisdom
Staff Software Engineer, Platform
Wisdom
⚡ Postúlate pronto Remote · restringido por ubicación
● Nuevo 👁 Visto ✓ Postulado hace 2h
Vibe
Staff Backend Engineer, Integrations
Vibe
⚡ Postúlate pronto New York Híbrido $204,000–$276,000
● Nuevo 👁 Visto ✓ Postulado hace 2h
Vibe
Staff Backend Engineer, Integrations
Vibe
⚡ Postúlate pronto Paris Híbrido €99,000–€133,000
● Nuevo 👁 Visto ✓ Postulado hace 2h
tem
Senior Staff Machine Learning Engineer - Pricing
tem
⚡ Postúlate pronto United Kingdom · restringido por ubicación £127,000–£127,000
● Nuevo 👁 Visto ✓ Postulado hace 2h
Skydio
Staff Software Engineer - Security
Skydio
⚡ Postúlate pronto San Mateo, California, United... Híbrido $220,000–$270,000
● Nuevo 👁 Visto ✓ Postulado hace 2h
Mimica
Staff/Lead Python Engineer (FastAPI, Orchestration)
Mimica
⚡ Postúlate pronto Remote Anywhere · restringido por ubicación
● Nuevo 👁 Visto ✓ Postulado hace 2h

Regístrate para recibir sugerencias adaptadas a los empleos que abres y las búsquedas que guardas.

Más empleos en Rakuten

Ver todos los empleos en Rakuten →

Postúlate ahora
🤖

Un momento — para

JobsRadar se creó para personas reales que están pasando un mal momento en su búsqueda de empleo — no para solicitudes automatizadas. Estás haciendo clic demasiado rápido y ahora estás bloqueado temporalmente.

Vuelve más tarde. Si de verdad estás buscando empleo, cuentas con nosotros — solo compórtate como una persona.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Toma ventaja en tu búsqueda de empleo.

Únete a nuestro canal de Telegram para lo que te ayuda a conseguir el puesto — referencias salariales, el pulso semanal del mercado y avisos de nuevas funciones. Sin spam, solo señal.

Únete al canal — es gratis