Rakuten
Staff Engineer, Security Operations Center
RSIN_Bangalore
Get past the screening software and onto a recruiter's desk
hirly rewrites your resume for this job — matching the keywords and skills in the posting, moving your most relevant experience to the top, and writing a cover letter to fit. About 30 seconds.
- Keywords matched to this posting
- Fit score before you apply
- Cover letter included
Matched against 2.3M live jobs from 200,000+ employers in 200+ countries.
Tailor my resume for this job →hirly's read of this role
- Role family
- Engineering
- Seniority
- Lead / management
- Country
- IN
- Work mode
- On-site / unstated
- First seen by hirly
- 29 Sept 2026
Derived automatically from the posting. Upload your resume above to see how the role scores against it.
the posting
Job Description:
- Job Title: SOC Analyst (L2)
- Department: Cyber Defense Operations
- Reports To: Senior Manager, Cyber Defense Operations Section
- Location: Bangalore, India
About the Team/Department:
You will be at the forefront of the most significant shift in cyber defense history. We offer a platform for you to innovate, experiment with AI, and build a world-class security capability that protects critical infrastructure. If you are a creative, hands-on leader who thrives on solving the impossible problems of the AI-attack era, we want to hear from you.
- Position Summary
- We are seeking a highly technical and innovative SOC Analyst (L2) to serve as a key architect
of our future-ready Security Operations Center. In this role, you will go beyond traditional
monitoring; you will actively participate in the transformation of our SOC to counter autonomous,
AI-driven cyber threats. You will leverage LLMs and AI-powered security tools to detect,
analyze, and neutralize advanced adversaries. Reporting to the SOC Lead, you will be a hands-
on contributor to our capacity development, refining our defenses to ensure we remain resilient
against the next generation of machine-speed attacks.
- Key Responsibilities
- AI-Driven Threat Defense: Utilize LLMs and AI-augmented security platforms to
accelerate threat hunting, incident triage, and forensic analysis. Develop workflows to
identify and respond to autonomous AI-based attacks.
SOC Transformation & Enhancement: Actively contribute to the SOC’s capability
roadmap. Recommend and implement structural improvements to our toolsets and
processes to ensure we are equipped to handle the evolving threat landscape.
Container & K8s Security Operations: Perform deep-dive analysis into containerized
environments and Kubernetes clusters. Implement security controls that defend against
container-specific exploits and automated lateral movement.
Capacity Development: Participate in the continuous training and upskilling of the SOC
team. Translate your technical findings into new playbooks and SOPs that elevate the
entire team's response maturity.
Advanced Incident Response: Lead the investigation of complex incidents. Use your
understanding of "Defense in Depth" to identify gaps in our environment and propose
architectural hardening.
Security Engineering: Collaborate with the L3 Manager to tune detection logic and
integrate AI-based feedback loops into our SIEM/SOAR infrastructure.
Offensive Security Research: Apply an "OffSec" mindset to simulate and test our
defenses against AI-powered attack tools, ensuring our response is faster and more
precise than the adversary.
Required Qualifications
Bachelor’s degree in Computer Science, Cyber Security, or equivalent.
5 - 8 years of experience in a SOC, incident response, or security engineering role.
Strong understanding of SIEM/SOAR ecosystems and how to optimize them for AI-
driven detection.
Relevant certifications (e.g., GCIH, GCSA, CKAD, CKS, or AI-Security specific
certifications)
Preferred Qualifications
Experience in the Telecommunications sector (e.g., understanding of 5G security, NFV,
and signaling protocols).
Experience in developing custom AI/ML models or fine-tuning LLMs for specific security
use cases.
Demonstrable experience in "Red Teaming" or participating in high-level CTF
competitions.
Experience with Infrastructure as Code (IaC) and DevSecOps pipelines.
Core Competencies
AI & LLM Proficiency: Practical experience in using LLMs for security tasks (e.g., code
analysis, log interpretation, playbook automation, or threat intelligence summarization).
Technical Depth: Expert-level knowledge of Linux, containerization (Docker), and
Kubernetes (K8s) security.
Analytical & Investigative Skills: Strong ability to perform root-cause analysis on
complex, non-signature-based attacks.
Security Architecture: A firm understanding of defense-in-depth principles and how to
apply them to modern, distributed network architectures.
Automation Mindset: Proven ability to automate manual tasks using Python, Go, or
Bash. You must be comfortable building "security-as-code" solutions.
Communication: Exceptional written and verbal communication skills, with the ability to
articulate technical security threats to both technical and non-technical stakeholders.
undefined
RAKUTEN SHUGI PRINCIPLES:
Our worldwide practices describe specific behaviours that make Rakuten unique and united across the world. We expect Rakuten employees to model these 5 Shugi Principles of Success.
Always improve, always advance. Only be satisfied with complete success - Kaizen.
Be passionately professional. Take an uncompromising approach to your work and be determined to be the best.
Hypothesize - Practice - Validate - Shikumika. Use the Rakuten Cycle to success in unknown territory.
Maximize Customer Satisfaction. The greatest satisfaction for workers in a service industry is to see their customers smile.
Speed!! Speed!! Speed!! Always be conscious of time. Take charge, set clear goals, and engage your team.
undefined
undefined
Similar jobs
- Staff Engineer - AICircana Careers · Immedihalli, Bangalore, Karnataka, IndiaFirst seen today
- Principal Cloud Engineer - AWSMiniMed · Hyderabad, Telangana, IndiaFirst seen today
- Principal Engineer - Data path - HPE Alletra Storage MP X10000 (Object Storage product development)Hewlett Packard Enterprise · Bangalore, Karnataka, IndiaFirst seen today
- Senior Staff Software EngineerPalo Alto Networks · Hyderabad, Telangana, IndiaFirst seen today
- Software Engineer I, ServiceNowNike · IndiaFirst seen today
Browse similar roles
Want this one?
Upload your resume and hirly rewrites it for this job and writes the cover letter — in about thirty seconds, before you sign up.
Tailor my resume for this job