Rakuten

Product Security Engineer, Cloud & DevSecOps

Tokyo, Japan
DevSecOps Java PHP Python JavaScript Kubernetes Terraform Docker CI/CD
Description

Product Security Engineer, Cloud & DevSecOps - Cyber Security Defense Department (CSDD)

Location: Tokyo, Japan

Time Type: Full time

Job Description

Job Description:

Business Overview

The Technology Management Division (TMD) provides corporate IT, cyber security, and privacy governance to Rakuten Group companies and essential business management for technology organizations, thereby enabling innovation and strengthening its technology foundation. Within TMD, the Information Security Supervisory Department (ISSD) combines proactive cyber defense with strategic information security, privacy, and data governance to protect the company’s global assets and data.

Department Overview

The Cyber Security Defense Department (CSDD) is responsible for safeguarding all Rakuten companies and users from cyber threats, ensuring the security and integrity of Rakuten Group's global internet services. We oversee all aspects of both Secure Development and Security Operations for services developed within the group, with dedicated security teams and operation centers strategically located in key regions worldwide.

Position:

Why We Hire

Team expansion due to the increased demand for the work and the scope expansion. 

Position Details

As a member of the Cyber Security Defense Department (CSDD), you will be responsible for leading and executing security operations for Rakuten products that support the Rakuten Ecosystem. In this role, you will work closely with product development teams as well as internal and external stakeholders to ensure the implementation and operation of necessary security controls based on best practices. By providing comprehensive security support across all phases of the software development lifecycle (SDLC), from initial design through ongoing operations, you will play a critical role in strengthening the security posture of our products and enabling business success. 

 

Responsibilities

- Lead and execute product security operations for Rakuten products, including secure development consultation, DevSecOps integration, and vulnerability management

- Lead the optimization and operation of security posture management across Rakuten’s cloud infrastructure

- Work closely with product development teams to integrate security controls throughout the product lifecycle

- Collaborate with internal and external stakeholders to ensure security requirements are met and maintained

- Provide end-to-end security support across all phases of the SDLC, from initial design through ongoing operations

- Support product teams by providing expert security guidance and practical solutions

- Continuously gather and apply threat intelligence to help products address emerging threats and vulnerabilities

Mandatory Qualifications:

- Bachelor's degree in computer science, information security, or a related field

- 3+ years of hands-on experience in application vulnerability assessment and network penetration testing, or equivalent practical knowledge

- Experience in using, administering, and automating cloud security and vulnerability management infrastructure

- Experience in programming with one or more languages, such as Java, PHP, Python, and JavaScript

- Familiarity with vulnerability management and incident response processes

- Familiarity with DevSecOps best practices and SDLC

- Strong teamwork skills and the ability to communicate with stakeholders in a diverse environment

- Strong sense of ownership and problem-solving skills

Desired Qualifications:

- Master's degree in computer science, information security, or a related field

- Experience in using and administering enterprise security testing solutions such as SAST, DAST, and SCA

- Experience in using and administering cloud infrastructure security solution such as CSPM, CWPP and CIEM

- Experience in team development with DevOps and CI/CD tools such as GitHub Actions, Jenkins, and Terraform

- Familiarity with cloud-native technologies, such as containers, Kubernetes, and microservices

- Relevant certifications such as OSCP, OSWE, GPEN, and GCSA

- Proficiency in business-level Japanese and English

#engineer #securityengineer #technologymanagementdiv

Languages:

English (Overall - 3 - Advanced)
Rakuten
Rakuten

0 applies

0 views

There are more than 50,000 engineering jobs:

Subscribe to membership and unlock all jobs

Engineering Jobs

60,000+ jobs from 4,500+ well-funded companies

Updated Daily

New jobs are added every day as companies post them

Refined Search

Use filters like skill, location, etc to narrow results

Become a member

🥳🥳🥳 452 happy customers and counting...

Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.

To try it out

For active job seekers

For those who are passive looking

Cancel anytime

Frequently Asked Questions

  • We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
  • We've got over 200,000 jobs from 15,000+ vetted companies. No fake or sleazy jobs here!
  • We aggregate jobs from 15,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
  • We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
  • Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
  • Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
  • Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅

What Fellow Engineers Say