台灣樂天市場股份有限公司

企業紹介

250 社員
台北市中山區民生東路三段49號11樓
連絡先
HR
電話番号
暫不提供
日本樂天集團是提供網際網路服務的全球領先者之一,全球佈局涵蓋10大產業:電商﹑信用卡及支付﹑銀行﹑證券﹑保險﹑運動與文化﹑通訊﹑數位生活﹑生活休閒及廣告媒體等。樂天集團在全球30個國家及地區推出超過70種以上的服務,總員工數已超過28,000名。我們深信能利用科技幫助人們對社會做出正向的影響。 台灣樂天市場是日本樂天集團於海外成立的第一家子公司,自2008年成立以來已成功地為台灣電子商務市場注入新的活力,也為廣大的消費者提供種類繁多的優質商品、周到滿意的服務及創造歡樂的購物經驗。「Walk Together」是我們對至今扶植過數以萬計店家所許下的承諾,樂天期待能持續提供高品質的服務來滿足消費者、店家以及事業夥伴,持續地為台灣社會作出貢獻。 如果您渴望獲得創新的喜悅、開展可能性無限大的職業生涯,加入樂天絕對是最佳的選擇! ===== Rakuten is one of the world’s leading internet service companies, with a transformative presence in e-commerce, digital content and Fintech. With more than 21,000 employees across 30 countries providing 70+ businesses, Rakuten is built on a philosophy of empowerment where everyone has the chance to make an impact. Taiwan Rakuten Ichiba, established in 2008, is Rakuten’s first overseas business. We introduced the unique B2B2C e-commerce business model to Taiwan, and have coached more than 10 thousand local merchants to start and grow their business online. "Walk Together" expresses our dedication to building a better, more optimistic future by empowering Taiwan’s local businesses to realize their dreams. By providing high-quality services that help our users, merchants and partners, we aim to advance and enrich Taiwan’s society.

産業分野
網際網路相關業

主要製品

台灣樂天市場為電子商務平台,提供「商家」及「消費者」 Online的Shopping Mall。

福利厚生

• 2022幸福企業-金獎 • 2021幸福企業-金獎 • 2020HR Asia Awards • 壽星最大,生日當月爽放生日假一天 • 到職第一年就享有8天特休假 (依到職比例計算,第2年起11天,當年度休不完還可以延到隔年底) • 自選式福利補助金每年一萬元,讓你彈性選擇使用樂天的服務 • 員工認股計畫,陪著樂天一起成長 • 完善的公司內、外教育訓練課程及海外受訓機會 • 參與跨國專案或國外研討會,培養國際化歷練 • 全球樂天賞機制,獲獎送你免費遊日本 • 年度員工健康檢查,您的健康是樂天最大的幸福 • 飲料/零食販賣機,再忙也會陪你喝杯咖啡 • 辦公室樂活舒壓按摩服務 • 全額補助團保,讓您無後顧之憂

会社環境

求人情報

【日商樂天】Penetration Tester (DU) 台灣樂天市場股份有限公司
待遇面談
台北市中山區
4年以上
In Rakuten Group, the security and safety of the Internet services are guaranteed by the Cyber Security Defense Department (CSDD). CSDD covers all aspects of the System Development Life Cycle (SDLC) and operation security for all the services developed inside Rakuten Group. As a member of CSDD Security Audit Group, you will execute offensive security activities and penetration tests against the wide variety of systems and will be challenged to various projects in different aspect of security while working with other peer engineers. Expected tasks ranging from but not limited to finding security vulnerabilities, writing scripts to automate security tasks, enhance the network security of Rakuten infrastructure, and provide remediation suggestions. You will develop novel attack techniques against new and existing products & deliver high-quality risk reporting outputs for stakeholders across Rakuten group companies. 【Key responsibilities】 •Planning, execution, and quality control of security testing and adversary emulation engagements •Develop attack vectors, conduct reconnaissance, collect open-source intelligence, enumerate target networks and services, develop and execute exploits, and deliver payloads to demonstrate mission impact •Demonstrate the risk, document findings, and provide remediation recommendations and mitigation strategies •Develop and present accurate and comprehensive reports for both non-technical and technical audiences including leadership •Contribute to the development of automated tools and procedures to maximize efficiency in Red Team services •Stay informed of new and emerging adversary TTPs, and evaluate their impact on Rakuten Group. •Support Vulnerability Assessment of Rakuten products (by both manual test & DAST) •Evaluate and integrate security software solutions •Perform technical analysis, testing, or demonstrate the security threats in simple POCs •Support development teams as a technical consultant •Working alongside other engineers and stakeholders to deliver global projects and initiatives 【Mandatory qualifications】 •Minimum 4 years of experience in IT/Information Security related fields •2+ years of experience in Web/Mobile/Network Penetration Testing and/or Vulnerability Assessment •Understanding of the core concepts of web/mobile application and security issues •Proficient in one or more scripting languages, ex: Python, Ruby •Proven knowledge of network and web application protocols •Familiarity and knowledge of Active Directory concepts •Strong teamwork capability in a diverse team environment •Ability to work in a highly diverse environment 【Desired qualifications】 •Experience in Web/Mobile application development •Experience in using major web frameworks •Experience with red teaming and common TTPs (Tactics, Techniques and Procedures) •Experience with at least one major commercial cloud environment •Experience in a diverse workplace, and work well in a team environment •Holder of any security-related certifications, ex: OSCP/OSCE, CISSP •Strong verbal and written communications skill •Strong ownership and sense of responsibility
フルタイム
上級
英語 条件要件
9/19 更新