15 days ago
Jakarta, IndonesiaMid Level / Senior
Responsibilities
- Design, implement, and maintain cloud security architectures across AWS, GCP, and Azure.
- Develop secure infrastructure patterns covering least-privilege IAM, network segmentation, encryption, audit logging, and cloud security posture.
- Assess and remediate infrastructure misconfigurations, conduct STRIDE threat modeling, and maintain CIS Benchmark hardening standards.
- Secure Linux servers, Kubernetes clusters, databases, containers, cloud environments, identity systems, and infrastructure-as-code workflows.
- Build security automation using Python, Go, Bash, or similar technologies.
- Implement Kubernetes security controls including RBAC, admission controls, network policies, image security, and workload protection.
- Support SSO, SAML, OIDC, privileged access management, service accounts, secrets management, and key rotation initiatives.
- Produce compliance evidence and support PCI DSS, ISO/IEC 27001:2022, internal audits, and external audits.
- Perform third-party and vendor security assessments and maintain infrastructure monitoring, logging, audit trails, and security observability.
- Respond to infrastructure security incidents, vulnerabilities, and escalations as part of an on-call rotation.
- Partner with development teams to embed security controls earlier in the software development lifecycle and continuously evaluate emerging threats and best practices.
Requirements
- Bachelor's degree (S1) in Computer Science, Information Systems, Informatics Engineering, Computer Engineering, Electrical Engineering, Telecommunications, or a related technical discipline.
- 3–5 years of experience in Infrastructure Security, Cloud Security, Security Engineering, Security Architecture, Platform Security, DevSecOps, or related fields.
- Hands-on experience managing and securing production infrastructure environments.
- Experience supporting engineering teams through shared platform and security services.
- Fluency in Bahasa Indonesia and working proficiency in English for technical documentation, cloud advisories, audit frameworks, and vendor communications.
- Required technical skills include AWS, GCP, Microsoft Azure, Linux OS, Python, and Golang.
- Preferred technical skills include Kubernetes, infrastructure as code, and Identity & Access Management.
Benefits
- Work directly with engineering teams to protect revenue, customer trust, payment operations, and platform availability.
- Participate in an on-call rotation.
- Help scale an e-commerce platform through cloud security, automation, infrastructure engineering, and secure-by-design practices.
