An application made for this job — a tailored resume and cover letter that speak straight to the posting.
PT Media Indonusa is seeking a Head of SysOps to lead the infrastructure, CloudOps, DevOps, IT DBA, and monitoring functions. You will ensure reliability, scalability, and auditable changes across production systems.
You will work with IT Security and the CTO to strengthen the infrastructure, enforce strict procedures, and drive a culture of security and efficiency in Jakarta.
We are seeking a Head of SysOps who will lead the infrastructure and operational functions of the platform comprehensively. This position oversees 4 functions: CloudOps Engineer, DevOps Engineer, IT DBA, and Service Monitoring. The role is responsible for ensuring production systems run reliably, are scalable, and are under strict control — including ensuring every change to infrastructure, automation pipelines, and production databases goes through controlled, documented, and auditable procedures.
The company implements separation of duties between the functions that build and operate (SysOps) and the functions that set standards and verify independently (IT Security). Head of SysOps works closely with Head of IT Security and Chief Technology Officer in executing the ongoing infrastructure strengthening program.
Lead, mentor, and develop CloudOps, DevOps, IT DBA, and Service Monitoring teams as one integrated infrastructure function
Organize and manage organizational structure, roles, and responsibilities across sub-functions to ensure alignment and avoid overlap
Manage infrastructure and operational platform budget accountably, including cost analysis and resource optimization
Report performance, operational constraints, and infrastructure project status to Chief Technology Officer regularly
Design, build, and manage secure, scalable server, network, and cloud infrastructure with high availability
Implement network segmentation between production, non-production, and administrative environments, and close unnecessary exposure of production systems to public networks
Implement load balancing and failover mechanisms to maintain service continuity
Manage and resolve issues on Linux and Windows-based systems in production environments
Design, secure, and manage CI/CD pipelines as the sole official path for making changes to production environments
Secure automation and integration platforms (Jenkins or equivalent), including implementing multi-layer authentication, access restrictions, and regular version updates
Manage production container clusters/Kubernetes, including controlling access to cluster APIs and implementing minimum privilege access (RBAC)
Implement infrastructure as code so all infrastructure configurations are versioned, reviewable, and configuration drift can be detected
Manage production database access with unique identities for each administrator — without shared admin accounts for any purpose, including emergency configuration changes
Establish and enforce tiered approval for every change to tables or configurations impacting transaction paths and fund disbursement, including payment channel routing settings
Enable and maintain audit logging of all access and changes to sensitive database tables, with retention periods per industry standards and protected from deletion
Ensure storage of credentials and sensitive data in databases follows encryption standards set by IT Security function
Ensure database backup execution and recovery testing on a regular basis
Monitor database performance and optimize queries to maintain production system reliability
Build and maintain monitoring, logging, and alerting systems covering all infrastructure, database, and application layers
Ensure network flow logging and control plane activity logging are active, with retention per industry standard requirements
Build capability to detect and alert on unusual activity on production systems, including outbound transactions or disbursement API calls not originating from the application
Ensure and monitor service availability (uptime) per company service level commitments
Immediately report any suspicious activity potentially threatening information security to Chief Technology Officer and IT Security function
Execute change control procedures per established policy and provide evidence of implementation for verification by IT Security function
Develop and test disaster recovery plans for production infrastructure and databases
Support technical investigation and recovery execution during incidents, under IT Security function coordination
Minimum 5 years of experience in infrastructure, DevOps, or site reliability engineering, with at least 2 years leading cross-disciplinary teams (cloud, automation, database, and monitoring)
Deep mastery of Linux operating systems, with capability to manage Windows-based systems
Experience managing cloud infrastructure at production scale (Alibaba Cloud, AWS, or GCP), including networking, identity and access, and public exposure control
Experience managing Kubernetes clusters and CI/CD pipelines in production environments
Understanding of production database administration (PostgreSQL, MySQL, or equivalent), including access governance, audit, and schema/configuration change control
Experience building observability, logging, and monitoring systems in production environments
Understanding and experience executing change control procedures, separation of duties, and audit trails in production environments
Comfortable working under oversight of an independent information security function, including providing evidence and access for audit purposes
Professional certifications such as CKA (Certified Kubernetes Administrator), CKS (Certified Kubernetes Security Specialist), or professional-level cloud certifications preferred
Experience in financial services, banking, or payment service provider industries regulated by Bank Indonesia and/or Financial Services Authority preferred
Understanding of PCI-DSS requirements at infrastructure and database layers preferred
Experience with Alibaba Cloud preferred
Experience implementing GitOps preferred
Experience involved in infrastructure remediation programs post-incident preferred
Discipline on audit trails. Accustomed to conducting all changes through official recorded channels, and not taking shortcuts even under time pressure
Attention to control detail. Understanding that one overly loose access rule or one leftover credential can have major impact
Openness to review. Willing to have work reviewed, audited, and questioned by IT Security function, and to act on findings without defensiveness
Cross-disciplinary leadership. Able to integrate four functions with different work characteristics — cloud, automation, database, and monitoring — into one aligned team