Manage IT risk and security operations, including risk assessment, incident management, and policy development.
About this role
This senior penetration tester works in Rakuten Mobile’s Security Assurance function, assessing telecom services and cloud-native infrastructure. The scope covers web and mobile applications, APIs, AI/ML, and telecom services including BSS/OSS, eSIM, subscriber management, and mobile networks.
Work includes manual and automated testing, red-team exercises, exploit validation, source-code and secure-design reviews, and architecture assessment. The tester evaluates LLM-based systems, AI agents, RAG, and MLOps for prompt injection, insecure integrations, data leakage, and AI supply-chain risks; creates proof-of-concepts and reports, recommends remediation, and re-tests fixes. Named tools include Burp Suite, Kali Linux, Metasploit, Nmap, and Nessus.
Applicants need 10+ years of hands-on penetration testing and application security experience, deep expertise in the listed testing areas, proficiency with the named tools, scripting knowledge in Python, JavaScript, Bash, or PowerShell, and cloud and container experience with AWS, Azure, or GCP and Kubernetes or Docker.
This is an AI-generated summary of the employer's original posting — details can be incomplete, out of date or simply wrong. Always confirm everything on the official posting before applying.