Detection Engineering Tech Lead, Detection Engineering Group -Cyber Defense Operations Section (RMI Telecommunication Security Supervisory Dep)
Rakuten Mobile, Inc. · JP
3 hours agoImpress employers and recruiters.
Choose from hundreds of resume examples.

Impress employers and recruiters.
Choose from hundreds of resume examples.
Tailor your resume to this Detection Engineering Tech Lead, Detection Engineering Group -Cyber Defense Operations Section (RMI Telecommunication Security Supervisory Dep) role.
Rezi rewrites your resume against Rakuten Mobile, Inc.'s job description. Free.

Tailor your resume to this Detection Engineering Tech Lead, Detection Engineering Group -Cyber Defense Operations Section (RMI Telecommunication Security Supervisory Dep) role.
Rezi rewrites your resume against Rakuten Mobile, Inc.'s job description. Free.
Don't guess if your resume is good enough.
See how it scores against the Detection Engineering Tech Lead, Detection Engineering Group -Cyber Defense Operations Section (RMI Telecommunication Security Supervisory Dep) posting at Rakuten Mobile, Inc. — free, in seconds.

Don't guess if your resume is good enough.
See how it scores against the Detection Engineering Tech Lead, Detection Engineering Group -Cyber Defense Operations Section (RMI Telecommunication Security Supervisory Dep) posting at Rakuten Mobile, Inc. — free, in seconds.
About the Role
The Detection Engineering Section is building next-generation detection pipelines using eBPF, behavioral analytics, and LLM-integrated pipelines to defend critical infrastructure against advanced threats. We are transitioning to a Detection-as-Code model, focusing on proactive, intelligence-led defense.
Responsibilities
- Build and manage an end-to-end detection pipeline with peer reviews, version control, and a reusable repository of detection rules.
- Architect and develop AI/LLM-based models to identify autonomous AI attacks and automate log onboarding, normalization, and filtering.
- Lead the implementation of kernel-level monitoring using eBPF-based tools for visibility into containerized and Linux-based workloads.
- Perform continuous attack simulations and lead proactive threat hunting initiatives.
- Deploy and manage deception technologies to create high-interaction traps.
- Ensure detection logic aligns with the defense-in-depth architecture.
- Collaborate with DFIR, CTI, and SOC teams to integrate CTI into detection logic via AI-driven automation.
- Oversee the security of AI/LLM models, implementing guardrails against manipulation.
- Partner with the SOC team to ensure detection logic seamlessly feeds into SOAR playbooks for rapid response.
Requirements
- 10+ years in Cyber Security, with at least 5+ years in Detection Engineering or Security Research.
- Deep expertise in building detection pipelines, tuning logic for high-fidelity alerts, and managing the security rule lifecycle.
- Practical experience building/tuning AI/ML/LLM models for anomaly detection and log analysis.
- Expert-level coding skills in Python, Go, or Rust.
- Mastery of Linux/Windows/Mac internals.
- Strong hands-on experience securing Kubernetes clusters, container runtimes, and microservices architectures.
- Understanding of Telco networks/protocols (e.g., 5G core, signaling) and Network Security.
- Experience in penetration testing, exploit development, or red teaming.
- Bachelor's or Master's degree in Computer Science, Cyber Security, or equivalent.
- Relevant certifications (e.g., OSCP, GREM, GCFA, CKS, BTL2, or AI-Security credentials).
Skills
- Python
- Go
- Rust
- Linux
- Kubernetes
- eBPF
- Git
- Sigma
- YARA
- LLM
- SOAR
- Terraform
- Ansible
- Detection Engineering
- Security Research
- AI/ML/LLM
- Anomaly Detection
- Log Analysis
- Container Security
- Microservices
- Telco Networks
- Network Security
- Penetration Testing
- Exploit Development
- Red Teaming
- Infrastructure as Code
- eBPF tools
- Open-source detection projects
Location
- Japan (Tokyo or Osaka)
Work Type
- Domestic/overseas business travel and relocation may be required.
Experience Level
- 10+ years in Cyber Security
- 5+ years in Detection Engineering or Security Research
Education Level
- Bachelor's or Master's degree in Computer Science, Cyber Security, or equivalent.
About the Company
- Cyber Defense Operations is the core department responsible for ensuring the safety and security of Rakuten Group's internet services.
- The Detection Engineering Section is tasked with architecting and building next-generation detection pipelines to defend critical infrastructure against autonomous, AI-driven attacks and sophisticated APTs.
- We lead the transition to a Detection-as-Code (DaC) model, utilizing eBPF-based runtime security, behavioral analytics, and LLM-integrated pipelines to deliver high-fidelity, actionable alerts.
- We are 'defenders with an attacker's brain,' committed to proactive, intelligence-led defense.