A complete application in a minute — tailored resume and cover letter, ready to send.
PT. Mitramuda Kreasi Group is seeking a security-focused System Administrator/DevOps engineer to protect on-premise infrastructure and data centers. The role emphasizes hardened servers, secure networks, and compliance with financial industry standards.
You will design multi-tenant architectures, implement container security, and manage monitoring, logging, and incident response to keep 24/7 operations resilient in a fintech environment.
This role involves securing and managing bare-metal and virtualized server infrastructure operating in data center environments, designing secure multi-tenant network architectures, and ensuring compliance with financial industry security standards. You will be responsible for container orchestration security, database security implementation, and building monitoring and incident response systems.
Key responsibilities
Perform security hardening on physical servers, VMs, and hypervisor platforms (such as Proxmox VE) operating in colocation data centers
Design secure multi-tenant network architectures, configure routing, and maintain firewalls (such as OPNsense or other enterprise hardware) with network segmentation (VLAN/DMZ)
Ensure all infrastructure meets financial industry security standards (PCI-DSS, ISO 27001, Bank Indonesia and OJK regulations), including Hardware Security Module (HSM) implementation if required
Audit and secure container-based environments running on company bare-metal infrastructure
Implement RBAC, encryption, and threat monitoring on production database clusters (such as PostgreSQL)
Build and manage IDS/IPS systems, SIEM, centralized logging systems, secure data backup paths, and execute technical incident response for potential security incidents in the data center
About you
Minimum 3-5 years of experience in System Administration, DevOps, or Security Engineering with primary focus on on-premise/bare-metal infrastructure
Experience in installation, network configuration, and hardware server placement in data centers
Deep understanding of network technology stack (TCP/IP, BGP, VPN, IDS/IPS) and firewall management
Proficiency in using and securing Linux operating systems (Ubuntu/Debian/RHEL) and container management platforms
Security-first mindset in maintaining system availability (High Availability) for 24/7 transactions
Experience managing physical network devices (switches/routers) and understanding server power resilience or other hardware resilience is a plus
Background in Fintech, Payment Gateway, or banking industry is highly desirable