Jobs › Companies › Rakuten › Staff Engineer, SOC Platform & Tools Group

Sobre esta vaga de Staff Engineer, SOC Platform & Tools Group na Rakuten

Rakuten · Presencial · RSIN_Bangalore

Job Description:

Job Title: Staff Engineer, SOC Platform & Tools Group
Department: Cyber Defense Operations Section
Location: Bangalore, India

About the Team/Department:


Position Summary:

We are seeking a hands-on Senior SOC Platform Engineer to build, operate, and scale the platforms powering our detection and response capabilities. This is an engineering-focused role—not an analyst or shift-monitoring role. You will own the end-to-end telemetry lifecycle, from log ingestion and pipeline routing to SIEM/SOAR infrastructure management. You will bridge the gap between network operations, security analysts, and platform engineering to ensure high-fidelity data availability at scale.


Key Responsibilities:

  • SIEM & SOAR Engineering: Architect and manage clustered, multi-site deployments of Splunk/Elastic and SOAR platforms. Own the lifecycle, performance tuning, and automation playbook development to drive down MTTR.
  • Telemetry Pipeline (Cribl): Operate Cribl Stream/Edge to parse, filter, mask, and enrich data streams. Implement intelligent routing to optimize ingest costs and enable data replay for investigations.
  • Log Collection & Onboarding: Architect high-volume syslog tiers (rsyslog/syslog-ng). Own the end-to-end onboarding of diverse telecom, network, cloud, and enterprise sources, ensuring alignment with CIM/ECS and MITRE ATT&CK.
  • Platform & Infrastructure Ops: Manage the full stack across on-premises and GCP environments. Use IaC (Terraform) and configuration management (Ansible) to automate platform health, capacity planning, and disaster recovery.
  • Systems Engineering: Administer enterprise Linux (RHEL/Ubuntu) at scale. Develop custom operational tooling and health-check scripts using Python and Bash. Install, configure, and maintain Linux servers and operating systems across on-premises and cloud environments. Monitor system performance, disk space, memory usage, and network connectivity; troubleshoot and resolve issues. Perform regular backups, disaster recovery planning, and ensure business continuity.
  • Kubernetes: Deploy and manage containerized applications using Docker and Kubernetes, ensuring high availability and fault tolerance. Implement CI/CD pipelines with Kubernetes integration for automated testing, building, and deployment workflows. Configure service discovery, load balancing, ingress controllers, and persistent storage solutions.

 


Required Qualifications

 

  • Experience: 10+ years in security/SOC engineering, log management, or infrastructure engineering.
  • SIEM/SOAR Expertise: Hands-on production experience administering Splunk/Elastic/SOAR (clustering, upgrades) and SOAR platforms (playbook development/connectors).
  • Pipeline Proficiency: Expert-level experience with log pipeline tooling (Cribl Stream/Edge preferred; Logstash/Vector/Kafka considered).
  • Infrastructure Skills: Strong Linux administration, scripting (Python/Bash), and syslog fundamentals (TLS, load balancing, high-volume tuning).
  • Data Onboarding: Proven ability to write complex regex-based parsers, field extractions, and normalization logic.
  • Cloud & Networking: Working knowledge of GCP services (Logging, IAM, GKE, Networking) and solid grasp of networking fundamentals (TCP/UDP, DNS, routing, packet capture).
  • Communication: Excellent written communication and disciplined documentation habits.


Preferred Qualifications:

 

  • Domain Expertise: Experience in a telecom or service provider environment (Mobile Core, 5G, IMS/VoLTE, SS7/Diameter, OSS/BSS).
  • DevOps/Automation: Experience with Kubernetes/Helm, Terraform, and Ansible in hybrid environments.
  • Detection Engineering: Exposure to SPL, ES|QL, KQL, Sigma rules, and data lake/object storage tiering architectures.
  • Certifications: Splunk Architect, Elastic Certified Engineer, Cribl Certified Admin, RHCE/RHCSA, Google Professional Cloud Security Engineer, AWS Professional certificate.

 


RAKUTEN SHUGI PRINCIPLES:

Our worldwide practices describe specific behaviours that make Rakuten unique and united across the world. We expect Rakuten employees to model these 5 Shugi Principles of Success.

  • Always improve, always advance. Only be satisfied with complete success - Kaizen.
  • Be passionately professional. Take an uncompromising approach to your work and be determined to be the best.
  • Hypothesize - Practice - Validate - Shikumika. Use the Rakuten Cycle to success in unknown territory.
  • Maximize Customer Satisfaction. The greatest satisfaction for workers in a service industry is to see their customers smile.
  • Speed!! Speed!! Speed!! Always be conscious of time. Take charge, set clear goals, and engage your team.
  • undefined
  • undefined
Pronto para se candidatar à Rakuten?
Candidatar-se à Rakuten

Sobre a Rakuten

In Japanese, Rakuten stands for ‘optimism.’ It means we believe in the future. It’s an understanding that, with the right mind-set, we can make the future better by what we do today. So we challenge ourselves to evolve, innovate and experiment, to create a better, brighter future for everyone. Today, our 70+ businesses span e-commerce, digital content, communications and fintech, bringing the joy of discovery to almost 1.3 billion members across the world. If you have any trouble logging in, please contact us here Rakuten Group, Inc.: [email protected] *Please read the Application Requirements(EN) / 募集要項(JP) before applying. Our Diversity & Inclusion Policy and Applica

Ver todas as vagas na Rakuten →

Vagas semelhantes

RA
Staff Engineer, Security Operations Center
Rakuten
⚡ Candidate-se cedo RSIN_Bangalore Presencial
● Nova 👁 Vista ✓ Candidatada há 1d
RA
Staff Engineer, Offensive Security
Rakuten
⚡ Candidate-se cedo RSIN_Bangalore Presencial
● Nova 👁 Vista ✓ Candidatada há 1sem
RA
Staff Engineer, AI/ML
Rakuten
⚡ Candidate-se cedo RSIN_Bangalore Presencial
● Nova 👁 Vista ✓ Candidatada há 3sem
Wisdom
Staff Software Engineer, Platform
Wisdom
⚡ Candidate-se cedo Remote · local restrito
● Nova 👁 Vista ✓ Candidatada há 3h
Vibe
Staff Backend Engineer, Integrations
Vibe
⚡ Candidate-se cedo Paris Híbrido €99,000–€133,000
● Nova 👁 Vista ✓ Candidatada há 3h
Vibe
Staff Backend Engineer, Integrations
Vibe
⚡ Candidate-se cedo New York Híbrido $204,000–$276,000
● Nova 👁 Vista ✓ Candidatada há 3h
tem
Senior Staff Machine Learning Engineer - Pricing
tem
⚡ Candidate-se cedo United Kingdom · local restrito £127,000–£127,000
● Nova 👁 Vista ✓ Candidatada há 3h
Skydio
Staff Software Engineer - Security
Skydio
⚡ Candidate-se cedo San Mateo, California, United... Híbrido $220,000–$270,000
● Nova 👁 Vista ✓ Candidatada há 3h
Mimica
Staff/Lead Python Engineer (FastAPI, Orchestration)
Mimica
⚡ Candidate-se cedo Remote Anywhere · local restrito
● Nova 👁 Vista ✓ Candidatada há 3h

Cadastre-se para receber sugestões sob medida com base nas vagas que você abre e nas buscas que você salva.

Mais vagas na Rakuten

Ver todas as vagas na Rakuten →

Candidatar-se agora
🤖

Opa — calma aí

A JobsRadar foi feita para pessoas de verdade passando por um momento difícil na busca por emprego — não para requisições automatizadas. Você está clicando rápido demais e agora está temporariamente bloqueado.

Volte mais tarde. Se você está mesmo procurando emprego, estamos com você — apenas aja como um ser humano.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Ganhe vantagem na sua busca por emprego.

Entre no nosso canal do Telegram para o que ajuda você a conseguir a vaga — referências salariais, o pulso semanal do mercado e avisos de novos recursos. Sem spam, só sinal.

Entre no canal — é grátis