Senior DevSecOps & Cloud Security Engineer

PT Medidata Indonesia

Kebayoran Baru

On-site

IDR 350,000,000 - 550,000,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

MIMS is seeking a Senior DevSecOps & Cloud Security Engineer to safeguard Azure environments, APIs and production services. You will integrate security into CI/CD, manage IAM and vulnerability workflows, and coordinate pen-tests with engineering teams.

The role focuses on security-by-design and rapid remediation across cloud platforms. You will work with Cloudflare, Azure Monitor and DevOps tools to ensure robust protection, monitoring, and incident response.

Qualifications

  • Degree or diploma in Cybersecurity, Computer Science, Information Technology or related field.
  • At least five years of experience in cybersecurity, cloud security, application security or DevSecOps.
  • At least three years hands-on experience with Microsoft Azure.
  • Strong knowledge of cloud security, IAM, vulnerability management and application security.
  • Experience with Cloudflare WAF, DNS, CDN, bot-management or equivalent technologies.
  • Experience integrating security scanning into Azure DevOps or GitHub Actions.
  • Familiarity with .NET applications, REST APIs and distributed architectures.
  • Experience with Azure Monitor, Application Insights, Log Analytics and KQL.
  • Knowledge of OWASP, API security and secure-development practices.
  • Experience supporting security incidents and technical root-cause analysis.

Responsibilities

  • Secure Azure environments and related services.
  • Assess and improve the security posture of Microsoft Azure environments.
  • Integrate security controls into Azure DevOps, GitHub Actions and CI/CD pipelines.
  • Configure and monitor vulnerability, secret and infrastructure scanning.
  • Coordinate penetration testing and remediation tracking.
  • Review application architecture, APIs, authentication and data-protection controls.
  • Collaborate with engineering to promote secure coding and security-by-design.

Skills

Cybersecurity
Cloud security
DevSecOps
IAM
Vulnerability management
Secure development practices
Documentation
Communication

Education

Degree or diploma in Cybersecurity, Computer Science, Information Technology or related field

Tools

Azure DevOps
GitHub Actions
Cloudflare WAF
DNS/CDN
Terraform
Bicep
Azure Front Door
Key Vault
App Service
Redis
Service Bus
Azure SQL
SonarCloud
GitHub Enterprise
Azure Monitor
Application Insights
Log Analytics
KQL

Job description

Senior DevSecOps & Cloud Security Engineer

Senior DevSecOps & Cloud Security Engineer is responsible for securing MPF's applications, Azure cloud environments, development platforms and production services.

This is a hands-on technical role covering cloud and application security, identity and access management, vulnerability management, security monitoring, incident response and selected cloud-platform operations.

Key Responsibilities

Cloud and Platform Security

Assess and improve the security posture of Microsoft Azure environments.

Secure Azure App Service, Front Door, Key Vault, Storage, Redis, Service Bus, Azure SQL and related services.

Review cloud networking, public exposure, access permissions and configuration risks.

Configure and maintain DNS, subdomains, custom domains, SSL/TLS certificates and certificate renewals.

Manage Azure Front Door routes, origins, health probes and related security configurations.

Support Azure App Service configuration, deployment slots, scaling, health checks and application settings.

Maintain security baselines, architecture diagrams and operational procedures.

Application and DevSecOps Security

Integrate security controls into Azure DevOps, GitHub Actions and CI/CD pipelines.

Implement code, dependency, vulnerability, secret and infrastructure scanning.

Establish security and release-approval gates.

Review application architecture, APIs, authentication, authorisation and data-protection controls.

Coordinate penetration testing and track remediation actions.

Work with engineering teams to promote secure coding and security-by-design practices.

Web and Edge Security

Administer Cloudflare DNS, CDN, WAF, bot-management and rate-limiting controls.

Monitor malicious traffic, automated attacks, credential abuse and suspicious activities.

Review firewall rules, exclusions, false positives and authentication-route protections.

Ensure security rules are tested, approved and supported by rollback procedures.

Troubleshoot DNS, SSL/TLS, routing, origin connectivity and certificate issues.

Identity, Access and Vulnerability Management

Manage privileged access across Azure, GitHub Enterprise, Azure DevOps, Cloudflare and production platforms.

Conduct access reviews and enforce least-privilege principles.

Coordinate user onboarding, role changes and timely leaver-access removal.

Manage service accounts, certificates, secrets, tokens and credential-rotation procedures.

Maintain a register of vulnerabilities and security findings.

Prioritise and track remediation, patching and accepted risks to closure.

Security Monitoring and Incident Response

Maintain security alerts, dashboards, detection rules and escalation procedures.

Use Cloudflare, Azure Monitor, Application Insights, Log Analytics and KQL for investigations.

Lead or support security-incident triage, containment, recovery and root-cause analysis.

Preserve relevant logs and technical evidence.

Coordinate response activities with engineering, infrastructure, Corporate IT and vendors.

Participate in critical after-hours incident support when required.

Security Tool and Licence Administration

Administer tools such as SonarCloud, GitHub Enterprise, Cloudflare, Azure security services and vulnerability-scanning platforms.

Manage administrators, user access, integrations, support contacts and licences.

Track subscription costs, usage, renewal dates and cancellation deadlines.

Coordinate software renewals and purchase requirements with Finance and Procurement.

Maintain primary and backup ownership for critical platforms.

Qualifications and Experience

Degree or diploma in Cybersecurity, Computer Science, Information Technology or a related field.

At least five years of experience in cybersecurity, cloud security, application security or DevSecOps.

At least three years of hands-on experience with Microsoft Azure.

Strong knowledge of cloud security, IAM, vulnerability management and application security.

Experience with Cloudflare WAF, DNS, CDN, bot-management or equivalent technologies.

Experience integrating security scanning into Azure DevOps or GitHub Actions.

Familiarity with .NET applications, REST APIs and distributed architectures.

Experience with Azure Monitor, Application Insights, Log Analytics and KQL.

Knowledge of OWASP, API security and secure-development practices.

Experience supporting security incidents and technical root-cause analysis.

Strong troubleshooting, documentation and communication skills.

Preferred Experience and Certifications

Experience with Azure Front Door, Key Vault, App Service, Redis, Service Bus and Azure SQL.

Experience administering GitHub Enterprise and SonarCloud.

Knowledge of Terraform, Bicep or equivalent infrastructure-as-code tools.

AZ-500, SC-200, SC-300, Security+, CISSP or CCSP certification is an advantage.

AZ-400 or AZ-104 certification is beneficial.

Retail & Consumer Products 51-100 employees

MIMS is a leading healthcare media company providing tailored solutions to a global healthcare market. We provide reference data, decision support solutions, news and education to communities of general practitioners, specialist doctors, pharmacists, nurses and patients across 13 countries.

We produce a range of professional media including data-rich directories, electronic and online products, journals and face-to-face meetings. The established and trusted reputation of our brands means that many of them are embedded in the daily workflow of the healthcare communities they serve.

Serving healthcare professionals in Asia for nearly 40 years, MIMS is focused on providing tools to meet physicians' needs in their daily practice, as well as committing to support life long learning needs of healthcare professionals and consumers.

MIMS Drug Information System is the most advanced, complete, and up-to-date information source on available products, delivering critical information needed at every point of care. MIMS Drug Information System is delivered across multiple platforms and channels, available in print, online and LAN, standalone or integrated.

In the area of Continuing Medical Education, MIMS has developed a diverse platform of educational products and services in the form of live events, enduring materials in print, e-media and web.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Cloud Security & DevSecOps Engineer
Senior Cloud Security & DevSecOps Engineer

PT Medidata Indonesia • Kebayoran Baru

On-site
IDR 350,000,000 - 550,000,000
IT Security Manager
IT Security Manager

PT Mitra Solusi Telematika • Daerah Khusus Ibukota Jakarta

On-site
IDR 1,009,081,000 - 1,345,443,000
Senior Engineer Infrastructure & Operations (Cloud)
Senior Engineer Infrastructure & Operations (Cloud)

KPMG Indonesia • Indonesia

On-site
IDR 360,000,000 - 480,000,000
Azure Cloud Engineer - English Speaker
Azure Cloud Engineer - English Speaker

PT. SIGMA GLOBAL TEKNOLOGI (SIGMATECH) • Kebayoran Baru

On-site
IDR 120,000,000 - 240,000,000
Medical
Miscellaneous allowance
Annual & Sick Leaves
+2
Cyber Security Specialist
Cyber Security Specialist

Indivara Group • Indonesia

On-site
IDR 180,000,000 - 280,000,000
Senior Manager – Application Security
Senior Manager – Application Security

Miro • Emea

On-site
IDR 1,575,630,000 - 2,275,911,000
Equity
Wellbeing benefit
WFH equipment allowance
+1
Cyber Security Lead
Cyber Security Lead

Evermos • Kota Bandung

On-site
IDR 180,000,000 - 360,000,000
Senior DevSecOps Engineer
Senior DevSecOps Engineer

Paper • Jakarta Barat

On-site
IDR 40,000,000 - 80,000,000
Security Analyst
Security Analyst

Evermos • Kota Bandung

On-site
IDR 223,200,000 - 446,400,000
Senior Security Analyst, Team Lead
Senior Security Analyst, Team Lead

Bitdefender • Indonesia

On-site
IDR 260,000,000 - 420,000,000