Manage IT risk and security operations, including risk assessment, incident management, and policy development.
About this role
Within Rakuten’s Cyber Defense Operations, this Tech Lead works in the Detection Engineering Section on security detection for critical infrastructure and internet services. The team is moving to a Detection-as-Code model.
The role builds detection pipelines with peer review, Git and reusable rules; develops AI/LLM models for anomaly detection, log onboarding, normalization and noise reduction; and implements eBPF-based monitoring for Kubernetes, containers and Linux workloads. It also covers red teaming, CTI- and MITRE ATT&CK/FIGHT-based threat hunting, deception controls, AI guardrails and SOAR integrations. Required experience includes 10+ years in cybersecurity, with 5+ in detection engineering or security research, expert coding in Python, Go or Rust, Kubernetes and container security, OS internals, telco and network security, and penetration testing, exploit development or red teaming. A relevant bachelor’s or master’s degree is required; advanced English is listed.
This is an AI-generated summary of the employer's original posting — details can be incomplete, out of date or simply wrong. Always confirm everything on the official posting before applying.