Jobs › Companies › Rakuten › Staff Engineer, SOC Platform & Tools Group

À propos de ce poste Staff Engineer, SOC Platform & Tools Group chez Rakuten

Rakuten · Sur site · RSIN_Bangalore

Job Description:

Job Title: Staff Engineer, SOC Platform & Tools Group
Department: Cyber Defense Operations Section
Location: Bangalore, India

About the Team/Department:


Position Summary:

We are seeking a hands-on Senior SOC Platform Engineer to build, operate, and scale the platforms powering our detection and response capabilities. This is an engineering-focused role—not an analyst or shift-monitoring role. You will own the end-to-end telemetry lifecycle, from log ingestion and pipeline routing to SIEM/SOAR infrastructure management. You will bridge the gap between network operations, security analysts, and platform engineering to ensure high-fidelity data availability at scale.


Key Responsibilities:

  • SIEM & SOAR Engineering: Architect and manage clustered, multi-site deployments of Splunk/Elastic and SOAR platforms. Own the lifecycle, performance tuning, and automation playbook development to drive down MTTR.
  • Telemetry Pipeline (Cribl): Operate Cribl Stream/Edge to parse, filter, mask, and enrich data streams. Implement intelligent routing to optimize ingest costs and enable data replay for investigations.
  • Log Collection & Onboarding: Architect high-volume syslog tiers (rsyslog/syslog-ng). Own the end-to-end onboarding of diverse telecom, network, cloud, and enterprise sources, ensuring alignment with CIM/ECS and MITRE ATT&CK.
  • Platform & Infrastructure Ops: Manage the full stack across on-premises and GCP environments. Use IaC (Terraform) and configuration management (Ansible) to automate platform health, capacity planning, and disaster recovery.
  • Systems Engineering: Administer enterprise Linux (RHEL/Ubuntu) at scale. Develop custom operational tooling and health-check scripts using Python and Bash. Install, configure, and maintain Linux servers and operating systems across on-premises and cloud environments. Monitor system performance, disk space, memory usage, and network connectivity; troubleshoot and resolve issues. Perform regular backups, disaster recovery planning, and ensure business continuity.
  • Kubernetes: Deploy and manage containerized applications using Docker and Kubernetes, ensuring high availability and fault tolerance. Implement CI/CD pipelines with Kubernetes integration for automated testing, building, and deployment workflows. Configure service discovery, load balancing, ingress controllers, and persistent storage solutions.

 


Required Qualifications

 

  • Experience: 10+ years in security/SOC engineering, log management, or infrastructure engineering.
  • SIEM/SOAR Expertise: Hands-on production experience administering Splunk/Elastic/SOAR (clustering, upgrades) and SOAR platforms (playbook development/connectors).
  • Pipeline Proficiency: Expert-level experience with log pipeline tooling (Cribl Stream/Edge preferred; Logstash/Vector/Kafka considered).
  • Infrastructure Skills: Strong Linux administration, scripting (Python/Bash), and syslog fundamentals (TLS, load balancing, high-volume tuning).
  • Data Onboarding: Proven ability to write complex regex-based parsers, field extractions, and normalization logic.
  • Cloud & Networking: Working knowledge of GCP services (Logging, IAM, GKE, Networking) and solid grasp of networking fundamentals (TCP/UDP, DNS, routing, packet capture).
  • Communication: Excellent written communication and disciplined documentation habits.


Preferred Qualifications:

 

  • Domain Expertise: Experience in a telecom or service provider environment (Mobile Core, 5G, IMS/VoLTE, SS7/Diameter, OSS/BSS).
  • DevOps/Automation: Experience with Kubernetes/Helm, Terraform, and Ansible in hybrid environments.
  • Detection Engineering: Exposure to SPL, ES|QL, KQL, Sigma rules, and data lake/object storage tiering architectures.
  • Certifications: Splunk Architect, Elastic Certified Engineer, Cribl Certified Admin, RHCE/RHCSA, Google Professional Cloud Security Engineer, AWS Professional certificate.

 


RAKUTEN SHUGI PRINCIPLES:

Our worldwide practices describe specific behaviours that make Rakuten unique and united across the world. We expect Rakuten employees to model these 5 Shugi Principles of Success.

  • Always improve, always advance. Only be satisfied with complete success - Kaizen.
  • Be passionately professional. Take an uncompromising approach to your work and be determined to be the best.
  • Hypothesize - Practice - Validate - Shikumika. Use the Rakuten Cycle to success in unknown territory.
  • Maximize Customer Satisfaction. The greatest satisfaction for workers in a service industry is to see their customers smile.
  • Speed!! Speed!! Speed!! Always be conscious of time. Take charge, set clear goals, and engage your team.
  • undefined
  • undefined
Prêt à postuler chez Rakuten ?
Postuler chez Rakuten

À propos de Rakuten

In Japanese, Rakuten stands for ‘optimism.’ It means we believe in the future. It’s an understanding that, with the right mind-set, we can make the future better by what we do today. So we challenge ourselves to evolve, innovate and experiment, to create a better, brighter future for everyone. Today, our 70+ businesses span e-commerce, digital content, communications and fintech, bringing the joy of discovery to almost 1.3 billion members across the world. If you have any trouble logging in, please contact us here Rakuten Group, Inc.: [email protected] *Please read the Application Requirements(EN) / 募集要項(JP) before applying. Our Diversity & Inclusion Policy and Applica

Voir tous les emplois chez Rakuten →

Emplois similaires

RA
Staff Engineer, Security Operations Center
Rakuten
⚡ Postuler tôt RSIN_Bangalore Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 1 j
RA
Staff Engineer, Offensive Security
Rakuten
⚡ Postuler tôt RSIN_Bangalore Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 1 sem.
RA
Staff Engineer, AI/ML
Rakuten
⚡ Postuler tôt RSIN_Bangalore Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 3 sem.
Wisdom
Staff Software Engineer, Platform
Wisdom
⚡ Postuler tôt Remote · lieu restreint
● Nouveau 👁 Vu ✓ Postulé il y a 2 h
Vibe
Staff Backend Engineer, Integrations
Vibe
⚡ Postuler tôt New York Hybride $204,000–$276,000
● Nouveau 👁 Vu ✓ Postulé il y a 2 h
Vibe
Staff Backend Engineer, Integrations
Vibe
⚡ Postuler tôt Paris Hybride €99,000–€133,000
● Nouveau 👁 Vu ✓ Postulé il y a 2 h
tem
Senior Staff Machine Learning Engineer - Pricing
tem
⚡ Postuler tôt United Kingdom · lieu restreint £127,000–£127,000
● Nouveau 👁 Vu ✓ Postulé il y a 2 h
Skydio
Staff Software Engineer - Security
Skydio
⚡ Postuler tôt San Mateo, California, United... Hybride $220,000–$270,000
● Nouveau 👁 Vu ✓ Postulé il y a 2 h
Mimica
Staff/Lead Python Engineer (FastAPI, Orchestration)
Mimica
⚡ Postuler tôt Remote Anywhere · lieu restreint
● Nouveau 👁 Vu ✓ Postulé il y a 2 h

Inscrivez-vous pour des suggestions adaptées aux emplois que vous ouvrez et aux recherches que vous enregistrez.

Plus d’emplois chez Rakuten

Voir tous les emplois chez Rakuten →

Postuler maintenant
🤖

Doucement — un instant

JobsRadar a été conçu pour de vraies personnes qui traversent une période difficile dans leur recherche d’emploi — pas pour des requêtes automatisées. Vous cliquez beaucoup trop vite et vous êtes maintenant temporairement bloqué.

Revenez plus tard. Si vous cherchez réellement un emploi, nous sommes de votre côté — agissez simplement comme un être humain.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Prenez une longueur d’avance dans votre recherche d’emploi.

Rejoignez notre canal Telegram pour ce qui vous aide à décrocher le poste — références salariales, le pouls hebdomadaire du marché et les annonces de nouveautés. Pas de spam, que du signal.

Rejoindre le canal — c’est gratuit