Appealing Points
- Act as a key architect of a future-ready SOC, contributing to its capability roadmap as it evolves from reactive monitoring into a proactive, intelligence-led and automated defense organization.
- Use LLMs and AI-powered security platforms for threat hunting, incident triage and forensic analysis, and test defenses against AI-powered attack tools with an "OffSec" mindset.
- Lead complex incident investigations and mentor a 24/7 SOC team, working across a broad tech stack that includes Kubernetes, 5G Core, SOAR platforms and multi-cloud security.
Annual Salary: ¥7 million and above
Job Description
The Cyber Defense Operations Section runs a 24/7 Security Operations Center (SOC) that protects critical infrastructure. It is in a critical transformation phase to address the era of autonomous, AI-driven cyber threats. The mission is to evolve from a reactive monitoring unit into a proactive, intelligence-led and automated defense organization. The team is looking for a highly technical and innovative SOC Analyst (L2) to act as a key architect of the future-ready SOC, using LLMs and AI-powered tools to neutralize advanced adversaries.
Job Responsibilities
- AI-Driven Threat Defense: Use LLMs and AI-augmented security platforms to accelerate threat hunting, incident triage and forensic analysis. Develop workflows to identify and respond to autonomous AI-based attacks.
- SOC Transformation: Actively contribute to the SOC's capability roadmap. Recommend and implement structural improvements to toolsets and processes to handle the evolving threat landscape.
- Container & K8s Security: Perform deep-dive analysis into containerized environments and Kubernetes clusters. Implement security controls against container-specific exploits and automated lateral movement.
- Capacity Development: Participate in the continuous training and upskilling of the SOC team. Translate technical findings into new playbooks and SOPs to raise the team's response maturity.
- Advanced Incident Response: Lead the investigation of complex incidents. Apply "Defense in Depth" principles to identify environmental gaps and propose architectural hardening.
- Security Engineering: Collaborate with the L3 Manager to tune detection logic and integrate AI-based feedback loops into the SIEM/SOAR infrastructure.
- Offensive Security Research: Apply an "OffSec" mindset to simulate and test defenses against AI-powered attack tools, ensuring faster and more precise responses.
Required Qualifications
- Bachelor's degree in Computer Science, Cyber Security or equivalent.
- 5–8 years of experience in a SOC, incident response or security engineering role.
- Strong understanding of SIEM/SOAR ecosystems and their optimization for AI-driven detection.
- Relevant certifications (e.g., GCIH, GCSA, CKAD, CKS, or AI-Security specific certifications).
Preferred Qualifications
- Experience in the Telecommunications sector (e.g., 5G security, NFV, signaling protocols).
- Experience developing custom AI/ML models or fine-tuning LLMs for security use cases.
- Demonstrable experience in "Red Teaming" or participating in high-level CTF competitions.
- Experience with Infrastructure as Code (IaC) and DevSecOps pipelines.
Language Requirements: Advanced Business level English
About Company:
The largest eCommerce company in Japan, and the third-largest eCommerce marketplace company worldwide. The organization provides a variety of consumer and business-focused services including e-commerce, e-reading, travel, banking, securities, credit card, e-money, portal and media, online marketing, and professional sports. The company is expanding globally and currently has operations throughout Asia, Western Europe, and the Americas.
[Measures against passive smoking]
No smoking indoors allowed
Designated smoking area