Security Engineer

Yourpay

Jakarta Pusat

On-site

IDR 300,000,000 - 600,000,000

Full time

12 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

YOUR! (formerly Yourpay) is seeking a Security Engineer focused on Detection & Response to build and strengthen our security monitoring, detection, and response capabilities from the ground up.

You will join a growing SOC program and work with Infrastructure and Engineering teams to enhance visibility and response across our Indonesian and international environments. You will design and implement the SIEM, onboard telemetry from multiple security domains, and develop correlation rules and

Qualifications

  • Hands-on experience in Security Operations, Detection Engineering, Incident Response, or Security Engineering.

Responsibilities

  • Design and implement the SIEM and centralized security monitoring platform.
  • Identify, onboard, normalize, and maintain security telemetry from Cloudflare/WAF, API Gateway, applications, cloud, infrastructure, IAM, endpoints, and other critical systems.
  • Define and maintain logging and telemetry requirements to ensure visibility across critical systems.
  • Develop SIEM correlation rules, detection use cases, and alerting logic based on real-world attack scenarios and security risks.
  • Continuously tune logs, detection rules, and alerts to improve detection accuracy and reduce false positives.
  • Develop security monitoring dashboards and metrics covering telemetry coverage, detection coverage, MTTD, MTTR, and alert quality.
  • Investigate security alerts and conduct threat analysis, incident investigation, and root cause analysis.
  • Develop and maintain incident response playbooks and response procedures.
  • Perform threat hunting to proactively identify suspicious activities that may not trigger existing detections.

Skills

SIEM
Detection engineering
Incident response
MITRE ATT&CK
Log analysis
Python scripting
Threat hunting
Cloud security

Job description

YOUR! (formerly Yourpay) is a neobank focused on empowering and transforming the lives of underbanked mothers and families in rural areas of Indonesia. Our goal is to provide secure, affordable, and user-friendly financial services to Indonesian migrant workers around the world. We offer a comprehensive platform for payments, transfers, lending, and savings, allowing users to access five pillars of financial transactions: payment, lending, insurance, investment, and saving. To date, we have served over 2 million transactions for more than 60,000 active users in Indonesia, Taiwan, Hong Kong, Singapore, and soon Malaysia and Saudi Arabia. Join us in revolutionizing financial inclusion and making a positive impact on communities.

Role Summary

We are seeking a Security Engineer focused on Detection & Response to build and strengthen our security monitoring, detection, and response capabilities from the ground up.

You will be responsible for building the technical foundation of our SOC, from identifying and onboarding security logs, implementing and tuning SIEM, developing detection use cases, correlating security events, to investigating and responding to security incidents.

You will work closely with Infrastructure and Engineering teams to improve security visibility, detection coverage, and response capabilities across our environment.

Responsibilities
  • Design and implement the SIEM and centralized security monitoring platform from the ground up.
  • Identify, onboard, normalize, and maintain security telemetry from Cloudflare/WAF, API Gateway, applications, cloud, infrastructure, IAM, endpoints, and other critical systems.
  • Define and maintain logging and telemetry requirements to ensure sufficient visibility across critical systems.
  • Develop SIEM correlation rules, detection use cases, and alerting logic based on real-world attack scenarios and security risks.
  • Continuously tune logs, detection rules, and alerts to improve detection accuracy and reduce false positives.
  • Develop security monitoring dashboards and metrics covering telemetry coverage, detection coverage, MTTD, MTTR, and alert quality.
  • Investigate security alerts and conduct threat analysis, incident investigation, and root cause analysis.
  • Develop and maintain incident response playbooks and response procedures.
  • Perform threat hunting to proactively identify suspicious activities that may not trigger existing detections.
  • Work with Infrastructure and Engineering teams on containment, remediation, and preventive controls based on identified threats.
  • Identify and continuously improve security visibility and detection gaps across the environment.
  • Evaluate and implement security technologies that improve detection, investigation, and response capabilities.
Requirements
  • Hands-on experience in Security Operations, Detection Engineering, Incident Response, or Security Engineering.
  • Experience implementing or building SIEM/security monitoring capabilities from the ground up.
  • Strong understanding of log aggregation, parsing, normalization, correlation, and detection engineering.
  • Experience developing and tuning SIEM detection rules and security use cases.
  • Strong understanding of MITRE ATT&CK and the ability to translate attack techniques into detection logic.
  • Experience investigating security events across cloud, network, application, endpoint, and identity environments.
  • Hands-on experience with incident response, threat hunting, and root cause analysis.
  • Ability to analyze large volumes of logs and identify relevant security telemetry and detection opportunities.
  • Familiarity with security telemetry from WAF, API Gateway, EDR/XDR, IAM, Kubernetes/container platforms, cloud services, and applications.
  • Experience with SIEM platforms such as Splunk,Security Onion, Elastic, Wazuh, AlienVault, or equivalent.
  • Scripting/automation experience using Python, Bash, or similar is a plus.
  • Familiarity with security frameworks such as MITRE ATT&CK, NIST CSF, CIS Controls, ISO 27001, and OWASP.
  • Familiarity with Indonesian regulatory requirements such as OJK, Bank Indonesia, and PDP Law is a plus.
  • Strong analytical and problem-solving skills with the ability to investigate ambiguous security events.
  • Strong communication and collaboration skills to work with Infrastructure and Engineering teams.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Manager, Defensive Security Operation
Manager, Defensive Security Operation

Bank Saqu • Indonesia

On-site
IDR 2,500,000,000 - 4,500,000,000
Security Engineer
Security Engineer

Eterna, LLC • Indonesia

Remote
IDR 1,608,867,000 - 2,323,918,000
Security Detection & Response Engineer
Security Detection & Response Engineer

Yourpay • Jakarta Pusat

On-site
IDR 300,000,000 - 600,000,000
Head of IT Security
Head of IT Security

Pengiklan Anonim • Tangerang

On-site
IDR 400,000,000 - 800,000,000
Security Operations Lead: Threat Detection & Response
Security Operations Lead: Threat Detection & Response

Honest • Indonesia

On-site
IDR 200,880,000 - 334,800,000
ESOP
Training subsidies
Excellent healthcare
+1
Application Security Engineer/Lead
Application Security Engineer/Lead

Ajaib Group • Jakarta Pusat

On-site
IDR 750,000,000 - 1,350,000,000
Senior IT Security Engineer
Senior IT Security Engineer

Noraa & Co. • Daerah Khusus Ibukota Jakarta

On-site
IDR 904,322,662 - 1,446,916,260
SOC L2 Analyst - Cybersecurity Technology Consulting
SOC L2 Analyst - Cybersecurity Technology Consulting

Ernst & Young Advisory Services Sdn Bhd • Daerah Khusus Ibukota Jakarta

On-site
IDR 180,000,000 - 240,000,000
IT Security Engineer
IT Security Engineer

Pengiklan Anonim • Jakarta Utara

On-site
IDR 240,000,000 - 320,000,000
Security Platform Engineer
Security Platform Engineer

Ajaib Group • Jakarta Pusat

On-site
IDR 167,400,000 - 312,480,000