hirly

Rakuten

Cyber Security Senior Analyst - Rakuten-CERT Section, Cyber Security Defense Department (CSDD)

Tokyo, Japan

See how you match this job — and similar ones. Free.

Upload your resume and hirly scores it against this role at Rakuten first, then against similar open jobs, and shows where you fit and why.

PDF or DOCX, up to 12MB. No sign-up to see your matches.

Get past the screening software and onto a recruiter's desk

hirly rewrites your resume for this job — matching the keywords and skills in the posting, moving your most relevant experience to the top, and writing a cover letter to fit. About 30 seconds.

  • Keywords matched to this posting
  • Fit score before you apply
  • Cover letter included

Matched against 2.3M live jobs from 200,000+ employers in 200+ countries.

Tailor my resume for this job →

hirly's read of this role

Role family
Supply chain
Seniority
Senior
Country
JP
Work mode
On-site / unstated
First seen by hirly
1 Oct 2026

Derived automatically from the posting. Upload your resume above to see how the role scores against it.

the posting

Job Description:

Business Overview

The Technology Management Division (TMD) provides Corporate IT, and Cyber Security & Privacy Governance to Rakuten Group companies and essential business management for technology organizations, thereby enabling innovation and strengthening the technology foundation. Within TMD, the Technology Management Services Supervisory Department (TMSSD) plays a vital role in CIO Governance, IT financial management, IT procurement, Quality Management System (QMS), technology-related public relations, and human resources strategy. By promoting efficiency, quality, risk management, and organizational strength, we ensure that Tech Divisions remain agile and at the forefront of technological advancement.

Department Overview

The Cyber Security Defense Department (CSDD) is responsible for safeguarding all Rakuten companies and users from cyber threats, ensuring the security and integrity of Rakuten Group's global internet services. We oversee all aspects of both Secure Development and Security Operations for services developed within the group, with dedicated security teams and operation centers strategically located in key regions worldwide.

Position:

Position Details

・ Lead and coordinate the response to cybersecurity incidents, including detection, containment, eradication, and recovery, while ensuring clear communication and collaboration across teams

・ Analyze logs from various sources (e.g., firewalls, SIEM, IDS/IPS, endpoint detection tools) to identify threats, investigate anomalies, and determine the scope and impact of incidents

・ Perform digital forensic investigations on compromised systems, including memory dumps, disk images, and network traffic, while preserving evidence in accordance with legal and organizational requirements

・ Use tools to quickly analyze malicious files, scripts, and executables to identify indicators of compromise (IOCs) and take necessary actions for containment, blocking, and mitigation

・ Prepare detailed incident reports, including root cause analysis, impact assessments, and recommendations for improvement, and communicate findings to stakeholders, including technical teams and management

・ Proactively identify and recommend improvements to security controls, processes, and tools to reduce the likelihood of future incidents, and conduct threat hunting activities to mitigate risks

・ Provide guidance and training to internal teams on incident response best practices and stay up-to-date with the latest cybersecurity trends, tools, and techniques

Mandatory Qualifications:

・ Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field (or equivalent experience)

・ More than 8 years of experience in cybersecurity, with a focus on incident response, digital forensics, or threat detection

・ Strong knowledge of security tools and technologies, such as SIEM, EDR, IDS/IPS, firewalls, and vulnerability scanners

・ Proficiency in log analysis and familiarity with log formats (e.g., syslog, Windows Event Logs)

・ Hands-on experience with Incident Response (IR) processes and methodologies

・ Familiarity with scripting and automation (e.g., Python, PowerShell, Bash) to streamline incident response processes

・ Strong sense of ownership and responsibility

・ Excellent problem-solving, analytical, and communication skills

・ Ability to work under pressure and handle multiple incidents simultaneously

Desired Qualifications:

・ Relevant certifications such as GIAC Certified Incident Handler (GCIH), Certified Information Systems Security Professional (CISSP), Offensive Security Certified Professional (OSCP), or Certified Ethical Hacker (CEH)

・ Experience handling escalated cases from a Security Operations Center (SOC)

・ Hands-on experience with forensic tools (e.g., EnCase, FTK, Volatility) and malware analysis tools (e.g., Cuckoo Sandbox, VirusTotal)

・ Experience with cloud security and incident response in cloud environments (e.g., AWS, Azure, Google Cloud)

・ Knowledge of MITRE ATT&CK framework and its application in threat detection and response

・ Ability to communicate in Japanese

#engineer #securityengineer #technologymanagementdiv

Languages:

English (Overall - 3 - Advanced)

Original posting on Rakuten's site ↗

Browse similar roles

Want this one?

Upload your resume and hirly rewrites it for this job and writes the cover letter — in about thirty seconds, before you sign up.

Tailor my resume for this job