Security Analyst

Evermos

Kota Bandung

On-site

IDR 223,200,000 - 446,400,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Evermos is seeking a Security Governance & Risk professional to oversee controls across business streams and integrations. The role requires identifying cyber, AI, and fraud risks; ensuring controls are designed and operated per policy; and advising product teams on risk-based security measures.

You will help drive security monitoring, forensic readiness, and governance reporting, collaborating across functions to strengthen the enterprise risk posture.

Qualifications

  • Bachelor’s degree in Technology, Information Systems, Computer Science, or related fields is required.
  • Minimum 3 years in Cyber Security / Security Analyst / SOC, IT Risk / Information Security Governance, Fraud Risk / Anti-Fraud, System Analyst / Data Analyst.
  • Strong understanding of Cyber Risk Management & Information Security Principles, AI Risk, and System Security Controls.
  • Experience translating technical risks into business impact; strong communication across teams.

Responsibilities

  • Govern security controls across business streams, ERP, and external integrations.
  • Assess cyber, AI, information security, and fraud risks; map to likelihood and impact.
  • Ensure security controls are designed, implemented, and operating per policies.
  • Review and validate system security controls including RBAC/ABAC, logging, data protection, API security.
  • Oversee security monitoring strategy (SIEM, detection rules) and forensic readiness.
  • Produce risk-based security assessment reports and remediation tracking.
  • Collaborate with stakeholders to embed security-by-design and risk-based controls.
  • Promote automation in governance processes and continuous improvement.

Skills

Cyber risk management
Information security principles
Risk assessment
Communication skills
Problem solving
Cross-functional collaboration
Low-code / workflow automation
SQL/data queries

Education

Bachelor’s degree in Technology, Information Systems, Computer Science, or related fields

Tools

SIEM
DLP
API Security
Threat Intelligence tools
Burp Suite
Kali Linux

Job description

General Description

This role is responsible for governing and ensuring the effectiveness of security controls across all business streams from a technical governance perspective. The position acts as a strategic bridge between business, technology, and security functions to ensure that cyber risks, AI risks, information security risks, and fraud risks are proactively identified, assessed, and maintained within acceptable risk levels.


The role emphasizes security control assurance, risk-based decision making, and governance alignment, while also providing technical oversight and advisory in implementing security controls across systems, integrations, and digital platforms.


In addition, this role supports cyber defense initiatives by contributing to security monitoring strategy, forensic readiness, and investigation capability, ensuring that detection and response mechanisms are aligned with enterprise risk posture.


Key Responsibilities

List key responsibilities of this position that are required daily.


1. Security Governance & Risk Oversight


  • Conduct risk-based security assessments across business streams, internal systems (ERP, low-code platforms), and external integrations (API, system-to-system).

  • Identify and evaluate cyber risks, AI-related risks (model risk, data leakage, bias, misuse), and fraud risks, including mapping to likelihood and impact.

  • Ensure security controls are properly designed, implemented, and operating effectively in alignment with enterprise policies and risk appetite.

  • Act as a technical advisor to business and product teams to embed security-by-design and risk-based control mechanisms.


2. Security Control Assurance & Architecture Alignment


  • Review and validate implementation of system security controls, including:


    • Access control (RBAC / ABAC)

    • Audit trail & logging mechanisms

    • Data protection controls (DLP, encryption, masking)

    • API and integration security


  • Ensure all systems have traceability, accountability, and monitoring capabilities to support governance and forensic requirements.

  • Drive standardization of minimum security requirements across business streams and satellite systems.


3. Monitoring, Detection & Forensic Readiness


  • Oversee development and optimization of security monitoring strategies (SIEM, alerting use cases, detection rules).

  • Ensure log management and alerting mechanisms are aligned with risk priorities and minimize false positives.

  • Develop and enhance forensic readiness capabilities, including:


    • Data trail design

    • Transaction monitoring

    • Investigation support framework


  • Support investigation of cyber incidents and fraud cases from a data-driven and control validation perspective.


4. Reporting, Governance & Stakeholder Engagement


  • Produce risk-based security assessment reports, including actionable remediation plans.

  • Communicate findings effectively to stakeholders, including management, auditors, and technical teams.

  • Ensure end-to-end remediation tracking and closure validation for identified vulnerabilities.

  • Maintain up-to-date documentation related to security controls, risk assessments, and governance artifacts.


5. Continuous Improvement & Awareness


  • Continuously evaluate and improve security control effectiveness based on emerging threats and risk trends.

  • Collaborate with Information Security Governance to support security awareness and risk culture initiatives.

  • Promote automation and efficiency in security governance processes (e.g., using low-code / workflow automation tools).


Required Qualifications


  • Bachelor’s degree in Technology, Information Systems, Computer Science, or related fields.

  • Minimum 3 years of experience in areas such as:


    • Cyber Security / Security Analyst / SOC

    • IT Risk / Information Security Governance

    • Fraud Risk / Anti-Fraud

    • System Analyst / Data Analyst


  • Strong understanding of:


    • Cyber Risk Management & Information Security Principles

    • AI Risk (model risk, data risk, misuse scenarios)

    • System Security Controls & Secure Architecture


  • Hands-on experience in SQL and data query technologies (mandatory).

  • Familiarity with:


    • SIEM, DLP, API Security, Threat Intelligence tools

    • Security testing tools (e.g., Burp Suite, Kali Linux)


  • Strong analytical, problem-solving, and risk assessment capabilities.

  • Ability to translate technical risks into business impact.

  • Good communication skills and ability to work across cross-functional teams.


Evermos is committed to providing an inclusive environment where equal opportunities are available to all applicants regardless of race, color, religion, gender, national origin, disability, age, genetic information, marital status, pregnancy, or related condition. We will not tolerate discrimination or harassment based on any of these characteristics.


We also emphasize the importance of diversity in all aspects of employment including recruitment, hiring, promotions, training, and organization operations.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Lead
Cyber Security Lead

Evermos • Kota Bandung

On-site
IDR 180,000,000 - 360,000,000
Security Risk & AI Assurance Analyst
Security Risk & AI Assurance Analyst

Evermos • Kota Bandung

On-site
IDR 223,200,000 - 446,400,000
Senior Information Security Incident Response Lead
Senior Information Security Incident Response Lead

NTT Limited • Daerah Khusus Ibukota Jakarta

On-site
IDR 1,068,185,000 - 1,602,279,000
Cyber Security Specialist
Cyber Security Specialist

Indivara Group • Indonesia

On-site
IDR 180,000,000 - 280,000,000
Security Analyst L2
Security Analyst L2

Ensign InfoSecurity • Jakarta Selatan

On-site
IDR 180,000,000 - 240,000,000
Security Platform Engineer
Security Platform Engineer

Ajaib Group • Jakarta Pusat

On-site
Associate Security Operations Analyst
Associate Security Operations Analyst

Durianpay • Jakarta Pusat

On-site
IDR 66,960,000 - 111,600,000
IT Security Manager
IT Security Manager

PT Mitra Solusi Telematika • Daerah Khusus Ibukota Jakarta

On-site
IDR 1,009,081,000 - 1,345,443,000
Cyber Security Specialist
Cyber Security Specialist

akulaku indonesia • Indonesia

On-site
IDR 200,880,000 - 334,800,000
Cybersecurity Consultant
Cybersecurity Consultant

ABeam Consulting • Indonesia

On-site
IDR 180,000,000 - 300,000,000