Jobs Companies Rakuten Senior Cyber Threat Hunter (RMI Security Eng. & Ops Dep)

À propos de ce poste Senior Cyber Threat Hunter (RMI Security Eng. & Ops Dep) chez Rakuten

Rakuten · Sur site · Tokyo, Japan

Job Description:

About Organization

Rakuten Mobile, Inc. is an entity established for the launch of its mobile carrier business as an MNO (Mobile Network Operator). We aim to provide the most competitive and convenient service to meet our customer needs and demands via the innovative use of technology. Defining future world-standard innovations in the MNO industry, we continually challenge ourselves and capabilities.

The Security Engineering & Operations Department at Rakuten Mobile is at the forefront of protecting our innovative mobile network infrastructure and services. We are building a robust cyber defense organization to safeguard our customers and operations from evolving cyber threats. We are looking for talented individuals who are interested in working with us to create and deliver world-class security solutions.

We are seeking a senior Threat Hunter to join our growing cyber defense organization. This role is crucial for proactively identifying and mitigating advanced threats, ensuring the resilience and security of our cutting-edge mobile network.

Job Duties

The Senior Cyber Threat Hunter will play a critical role in strengthening Rakuten Mobile's cyber defense posture. This position requires a highly proactive, detail-oriented, and process-driven individual who can translate hunting outcomes into clear, actionable recommendations for improving security and mitigating future risks.

Key Responsibilities:

  • Proactive Threat Hunting: Develop and execute hypothesis-driven campaigns, meticulously analyzing large volumes of log, endpoint, and network data to uncover anomalous or malicious activity, and thoroughly documenting findings.

  • Adversary Research: Research and track adversary Tactics, Techniques, and Procedures (TTPs), leveraging frameworks like MITRE ATT&CK to build and test threat hypotheses beyond simple Indicator of Compromise (IOC) searches.

  • Actionable Security Improvements: Translate hunting outcomes into actionable security enhancements, creating detection logic, data requirements, false positive guidance, and validation steps for new and refined detections.

  • Collaboration & Improvement: Collaborate closely with the Detection Engineering team to enhance detection rules and playbooks, and contribute to the continuous improvement of hunting methodologies.

  • Incident Support: Partner with Cyber Threat Intelligence, Incident Response, and SOC teams to operationalize threat insights, provide support during incidents, and assist in investigation and containment efforts.

  • Technical Analysis: Perform in-depth technical analysis of attacker tradecraft, including lateral movement, persistence, and exfiltration techniques, to understand attack vectors and establish intrusion chains.

  • Tool Utilization: Utilize advanced security tools such as SIEM, UEBA, and forensic analysis platforms to conduct hunts and confirm threats.

  • Automation: Automate analysis and detection processes using scripting languages (e.g., Python, PowerShell) to improve efficiency and scale.

  • Continuous Learning: Stay current with the evolving threat landscape and emerging adversary techniques to maintain effective threat hunting capabilities.

Minimum Qualifications

  • Experience:

    • Minimum of 10-12 years of experience in cybersecurity, with strong expertise in Cyber Threat Hunting.

    • Demonstrable experience in Incident Response and Forensics.

    • Exposure to Security Operations, Threat Intelligence, and Malware Analysis.

  • Education: Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or a related field, or equivalent practical experience.

  • Technical Skills & Knowledge:

    • In-depth knowledge of the MITRE ATT&CK framework, including the ability to map adversary behaviors to understand attack vectors and predict potential threats.

    • Strong understanding of enterprise network architecture, including advanced networking concepts (e.g., TCP/IP, routing, firewalls, VPNs), networking protocols, deep packet inspection, and network traffic analysis.

    • Expertise in telecommunication protocols and infrastructure, particularly those relevant to mobile environments (e.g., 4G/5G, SS7, Diameter, GTP), and the ability to identify threats within these specialized networks.

    • Deep understanding of cloud-native environments, including Kubernetes and container orchestration, with proven experience in hunting for threats and anomalies within these complex infrastructures.

    • Demonstrated experience with major cloud platforms (e.g., AWS, Azure, GCP) and their native security services, with the ability to perform threat hunting across diverse cloud environments.

    • Experience and strong interest in leveraging advanced AI capabilities, including Machine Learning (ML) models and Large Language Models (LLMs), to enhance threat hunting, automate analysis, and improve operational efficiency.

  • Soft Skills:

    • Exceptional analytical expertise, critical thinking, and problem-solving skills, with a keen attention to detail.

    • Knowledge of secure architecture and design principles, with the ability to identify potential weaknesses and propose proactive hunting strategies based on system design.

    • Excellent written and verbal communication skills, with the ability to present complex technical information and metrics clearly to both technical and non-technical audiences.

    • Demonstrated strong documentation discipline, capable of producing repeatable work and facilitating clean handoffs.

    • Ability to work effectively in a fast-paced, operational environment, including flexibility for non-standard work hours in response to cybersecurity incidents.

    • A strong aptitude for continuous learning and adapting quickly to new technologies and threat landscapes.

    • Understanding of regulatory compliance and data privacy requirements relevant to cybersecurity operations.

Preferred Qualifications

  • Industry certifications such as SANS FOR508, CISSP.

Languages:

English (Overall - 3 - Advanced)
Prêt à postuler chez Rakuten ?
Postuler chez Rakuten

À propos de Rakuten

In Japanese, Rakuten stands for ‘optimism.’ It means we believe in the future. It’s an understanding that, with the right mind-set, we can make the future better by what we do today. So we challenge ourselves to evolve, innovate and experiment, to create a better, brighter future for everyone. Today, our 70+ businesses span e-commerce, digital content, communications and fintech, bringing the joy of discovery to almost 1.3 billion members across the world. If you have any trouble logging in, please contact us here Rakuten Group, Inc.: [email protected] *Please read the Application Requirements(EN) / 募集要項(JP) before applying. Our Diversity & Inclusion Policy and Applica

Voir tous les emplois chez Rakuten →

Emplois similaires

RA
UX Director (Product / Contents) - Customer Strategy Department, Platform Strategy Supervisory Department (PFSD)
Rakuten
⚡ Postuler tôt Tokyo, Japan Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 17 h
RA
プロセス管理部 予算管理課:プロジェクトマネージャー (コスト関連) (RTS基地局設置統括部)
Rakuten
⚡ Postuler tôt Shinjuku Eastside Square Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 2 j
RA
Senior Product Manager - Data Knowledge Department (DKD)
Rakuten
⚡ Postuler tôt Tokyo, Japan Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 3 j
RA
Accounting Staff and Leader Candidate - Group Accounting Department
Rakuten
⚡ Postuler tôt Tokyo, Japan Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 3 j
RA
Technical Lead, Quality Assurance
Rakuten
⚡ Postuler tôt RSIN_Bangalore Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 3 j
RA
1034540_Content & Publisher Relations Manager Candidate - Kobo Japan Department (KJD)
Rakuten
⚡ Postuler tôt Tokyo, Japan Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 3 j
RA
Business Planning - Life & Booking Business Promotion Department (C&M)
Rakuten
⚡ Postuler tôt Tokyo, Japan Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 3 j
RA
Oracle Database Administrator, Relational DB Platform Group - Cloud Services Department (CLSD)
Rakuten
⚡ Postuler tôt Tokyo, Japan Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 3 j
RA
Solution Architect - IMS CORE
Rakuten
⚡ Postuler tôt RSIN_Bangalore Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 3 j

Inscrivez-vous pour des suggestions adaptées aux emplois que vous ouvrez et aux recherches que vous enregistrez.

Plus d’emplois chez Rakuten

Voir tous les emplois chez Rakuten →

Postuler maintenant
🤖

Doucement — un instant

JobsRadar a été conçu pour de vraies personnes qui traversent une période difficile dans leur recherche d’emploi — pas pour des requêtes automatisées. Vous cliquez beaucoup trop vite et vous êtes maintenant temporairement bloqué.

Revenez plus tard. Si vous cherchez réellement un emploi, nous sommes de votre côté — agissez simplement comme un être humain.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Prenez une longueur d’avance dans votre recherche d’emploi.

Rejoignez notre canal Telegram pour ce qui vous aide à décrocher le poste — références salariales, le pouls hebdomadaire du marché et les annonces de nouveautés. Pas de spam, que du signal.

Rejoindre le canal — c’est gratuit