IT Security Engineer

Pengiklan Anonim

Jakarta Utara

On-site

IDR 240,000,000 - 320,000,000

Full time

3 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Pengiklan Anonim is seeking an IT Security Engineer with a blue-team focus to implement and maintain security controls across systems and cloud environments. You will design security policies, conduct vulnerability assessments, and respond to incidents while coordinating with IT, compliance, and business teams.

Ideal candidates have 3–5 years in IT security, professional certifications, and experience with payment gateway or financial services sectors.

Qualifications

  • Bachelor’s degree in IT, cybersecurity, CS, or related field.
  • Relevant professional certifications such as CISSP, CISA, CISM, CEH, ISO 27001 Lead Implementer.
  • Minimum 3–5 years of experience in IT Security Engineering (Blue Team).
  • Prior experience in Payment Gateway or Financial Services adds strong value.
  • Proven experience implementing and managing IT security architecture across hardware, OS, networks, databases, and applications in Cloud Environment.
  • Strong understanding of network, endpoint, and application security in Cloud Environment.
  • Hands-on experience with Vulnerability Management tools (Nessus, Qualys, Rapid7, OpenVAS).
  • Experience in security incident handling and forensic investigation.
  • Familiar with SIEM and real-time threat monitoring.
  • Capable of conducting risk assessments and preparing security documentation.
  • Deep knowledge of ISO 27001, NIST CSF, COBIT, or equivalent frameworks.
  • Strong communication skills; ability to present findings to non-technical stakeholders.
  • Collaborative mindset with IT, compliance, legal, and business teams.
  • Proactive problem-solver for security incidents.

Responsibilities

  • Implement and maintain security controls for systems and applications.
  • Design and implement security policies, including network security configurations and OS security settings.
  • Conduct vulnerability assessments and coordinate remediation activities.
  • Actively monitor systems and networks to detect and respond to threats using monitoring tools and IDS.
  • Respond to and resolve security incidents promptly and implement remediation measures.
  • Evaluate systems and applications to identify security gaps and provide recommendations.
  • Manage and maintain security systems, including software updates and patches.
  • Investigate security incidents and perform forensic analysis to identify root causes and impacts.
  • Respond to and recover from cybersecurity attacks, including data recovery and system restoration.
  • Stay up to date with latest security trends and threats to protect against new risks.
  • Continuously improve the security infrastructure and update policies and practices.
  • Ensure information security compliance and report suspicious activities.
  • Support audit and compliance with standards such as ISO 27001, PCI DSS, and OJK / Bank Indonesia requirements.

Skills

Blue Team
Security incident handling
Forensic investigation
Vulnerability management
Cloud security
Risk assessment
Security architecture
Security frameworks
Payment gateway security
Communication with stakeholders

Education

Bachelor’s degree in Information Technology, Cybersecurity, Computer Science, or a related field

Tools

Nessus
Qualys
Rapid7
OpenVAS
SIEM

Job description

Bachelor’s degree in Information Technology, Cybersecurity, Computer Science, or a related field.

Relevant professional certifications (at least one required), such as: CISSP, CISA, CISM, CEH, ISO 27001 Lead Implementer, or equivalent.

Minimum 3–5 years of experience in IT Security Engineer especially Blue Team

Prior experience in Payment Gateway, or Financial Services industry is a strong plus.

Proven experience in implementing and managing IT security architecture across hardware, operating systems, networks, databases, and applications in Cloud Environtment.

Strong understanding of network, endpoint, and application security principles in Cloud Environtment.

Hands-on experience with Vulnerability Management tools (e.g., Nessus, Qualys, Rapid7, OpenVAS).

Experience in security incident handling and forensic investigation.

Familiar with SIEM tools (Security Information and Event Management) and real-time threat monitoring.

Capable of conducting risk assessments and preparing comprehensive security documentation.

Deep knowledge of security frameworks such as ISO 27001, NIST CSF, COBIT, or equivalent.

Strong communication skills, especially in presenting security findings and recommendations to non-technical stakeholders.

Collaborative mindset with the ability to work cross-functionally with IT, compliance, legal, and business teams.

Proactive problem-solver with the ability to respond quickly and effectively in security incidents.

Job Description:

Implement and maintain security controls for systems and applications.

Design and implement appropriate security policies, including network security configurations and operating system security settings.

Conduct vulnerability assessments and coordinate remediation activities.

Actively monitor systems and networks to detect and respond to threats using security monitoring tools and intrusion detection systems.

Respond to and resolve security incidents promptly, and implement appropriate remediation measures.

Evaluate systems and applications to identify security gaps and provide recommendations for improvement.

Manage and maintain security systems, including software updates, security patches, and proper configurations.

Investigate security incidents and perform forensic analysis to identify root causes and impacts.

Respond to and recover from cybersecurity attacks, including data recovery, system restoration, and remediation of exploited vulnerabilities.

Stay up to date with the latest security trends, emerging threats, and technological developments to ensure effective protection against new risks.

Continuously improve the security infrastructure and implement necessary updates to security policies and practices.

Ensure information security is maintained by complying with security policies, safeguarding company data, and reporting any suspicious activities that may threaten information security.

Support audit and compliance activities, including adherence to standards and regulations such as ISO 27001, PCI DSS, and OJK / Bank Indonesia requirements.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Head of IT Security
Head of IT Security

Pengiklan Anonim • Tangerang

On-site
IDR 400,000,000 - 800,000,000
IT Security and Governance Executive
IT Security and Governance Executive

PT New Priok Container Terminal One • Jakarta Utara

On-site
IDR 300,000,000 - 600,000,000
Head of IT Security
Head of IT Security

PT Media Indonusa (Jakarta) • Jakarta Utara

On-site
IDR 900,000,000 - 1,300,000,000
Senior IT Security
Senior IT Security

PT Wibi Digital Technology • Jakarta Selatan

On-site
IDR 167,400,000 - 234,360,000
Cyber Security Engineer
Cyber Security Engineer

Diksha Technology • Jakarta Pusat

On-site
IDR 180,000,000 - 240,000,000
Cloud Security Engineer — Blue Team & Incident Response
Cloud Security Engineer — Blue Team & Incident Response

Pengiklan Anonim • Jakarta Utara

On-site
IDR 240,000,000 - 320,000,000
Security Engineer
Security Engineer

Yourpay • Jakarta Pusat

On-site
IDR 300,000,000 - 600,000,000
IT Security
IT Security

Home Credit Indonesia • Jakarta Pusat

On-site
IDR 36,000,000 - 60,000,000
Cloud Security Engineer
Cloud Security Engineer

PT Sentra Vidya Utama (SEVIMA) • Surabaya ꦱꦸꦫꦧꦪ

On-site
IDR 167,400,000 - 390,600,000
Security Architect & Blue Team Specialist
Security Architect & Blue Team Specialist

Home Credit Indonesia • Jakarta Pusat

On-site
IDR 36,000,000 - 60,000,000