Senior Penetration Tester - Security Assurance Section (RMI Telecommunication Security Supervisory Dep) at Rakuten Mobile, Inc. | JP | Rezi

Senior Penetration Tester - Security Assurance Section (RMI Telecommunication Security Supervisory Dep) at Rakuten Mobile, Inc.

Senior Penetration Tester - Security Assurance Section (RMI Telecommunication Security Supervisory Dep)

Rakuten Mobile, Inc. · JP

1 weeks ago

Senior Penetration Tester - Security Assurance Section (RMI Telecommunication Security Supervisory Dep)

Rakuten Mobile, Inc. · JP

9 days ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now

About the Role

At Rakuten Mobile Security Assurance, you will help secure one of the world's most advanced cloud-native telecom networks, protecting millions of customers across digital, mobile, cloud, and AI-driven services. We work on cutting-edge offensive security challenges spanning 4G/5G telecom platforms, cloud-native infrastructure, APIs, AI/ML systems, and emerging technologies. We offer an environment where innovation is encouraged, continuous learning is supported, and security experts are empowered to make a direct business impact. You will work alongside industry-leading engineers, build next-generation security capabilities, leverage AI to transform security testing, and contribute to protecting critical telecommunications infrastructure at scale.

Responsibilities

  • Conduct manual and automated testing of web/mobile applications, APIs, cloud platforms, and network infrastructure.
  • Evaluate LLM-based systems, AI agents, RAG implementations, and MLOps pipelines.
  • Identify vulnerabilities such as prompt injection, insecure model integrations, data leakage, and AI supply chain risks.
  • Execute security assessments on telecom-specific systems, including BSS/OSS applications, eSIM platforms, subscriber management, and mobile network services.
  • Support red team exercises, conduct attack path analysis, and perform exploit validation using realistic attacker techniques.
  • Perform source code reviews, secure design reviews, and architecture-level security assessments.
  • Develop proof-of-concepts, create detailed technical reports, and provide actionable remediation recommendations.
  • Validate fixes through re-testing.
  • Research emerging attack techniques, exploit methodologies, and AI-assisted offensive security methods.

Requirements

  • 10+ years of hands-on penetration testing and application security experience.
  • Deep expertise in web, mobile, API, cloud, infrastructure, and AI security testing.
  • Proficiency with Burp Suite, Kali Linux, Metasploit, BloodHound, Nmap, Nessus, and modern offensive security frameworks.
  • Strong knowledge of Python, JavaScript, Bash, or PowerShell for testing and automation.
  • Proficiency with cloud platforms (AWS, Azure, or GCP) and containerized environments (Kubernetes, Docker).
  • Experience with telecom technologies, mobile core networks, BSS/OSS systems, and cloud-native telecom applications.
  • OSCP, CRTP, CRTO, OSEP, OSWE, GPEN, GXPN, or equivalent certifications.
  • AI/LLM security testing and adversarial machine learning.
  • Red team operations and advanced exploit development.
  • Bug bounty, vulnerability research, and AI-assisted penetration testing.
  • English (Overall - 3 - Advanced)
  • Japanese (Overall - 2 - Intermediate)

Skills

  • Penetration Testing
  • Application Security
  • Web Security
  • Mobile Security
  • API Security
  • Cloud Security
  • Infrastructure Security
  • AI Security
  • LLM Security
  • Prompt Injection
  • Data Leakage
  • AI Supply Chain Risks
  • Telecom Security
  • BSS/OSS Systems
  • eSIM Platforms
  • Subscriber Management
  • Mobile Network Services
  • Red Teaming
  • Adversary Emulation
  • Attack Path Analysis
  • Exploit Development
  • Source Code Review
  • Secure Design Review
  • Architecture Security Assessment
  • Vulnerability Reporting
  • Remediation
  • Attack Techniques Research
  • Offensive Security
  • Python
  • JavaScript
  • Bash
  • PowerShell
  • AWS
  • Azure
  • GCP
  • Kubernetes
  • Docker
  • Adversarial Machine Learning
  • Bug Bounty
  • Vulnerability Research
  • AI-Assisted Penetration Testing

Experience Level

  • 10+ years

About the Company

  • Rakuten Mobile Security Assurance helps secure one of the world's most advanced cloud-native telecom networks.
  • We protect millions of customers across digital, mobile, cloud, and AI-driven services.
  • We work on cutting-edge offensive security challenges spanning 4G/5G telecom platforms, cloud-native infrastructure, APIs, AI/ML systems, and emerging technologies.
  • We offer an environment where innovation is encouraged, continuous learning is supported, and security experts are empowered to make a direct business impact.
  • You will work alongside industry-leading engineers, build next-generation security capabilities, leverage AI to transform security testing, and contribute to protecting critical telecommunications infrastructure at scale.