Security Manager responsible for overseeing risk-based security program and compliance. Leading team and collaborating with stakeholders for cybersecurity in Indonesia.
Responsibilities
Develop and manage risk-based security program and strategy, drive its successful implementation through security, policies, procedures and standards.
Work closely with technical, non-technical stakeholders and cross-functional teams to ensure compliance with security standards and policies and integration of security requirements into business processes and projects.
Define risk appetite, develop risk acceptance, management and reporting protocols to make sure company leadership is aware of the risk profile and can make informed decisions. Conduct regular security assessments, audits and inspections to identify gaps and areas for improvement, and report the results.
Support the CTO in security budgeting, vendor selection, and control assurance activities.
Lead and manage a team of security professionals, including hiring, training and performance management.
Oversee the implementation and maintenance of security technologies such as SIEM, intrusion detection and prevention systems, WAF, vulnerability management, etc.
Implement security incident response protocols and plans, lead incident response and security breaches investigations. Conduct root cause analysis, develop and implement mitigation and corrective actions.
Act as a subject matter expert in cloud security, directly supporting DevOps and Software Engineering teams in secure infrastructure architecture, deployment, configuration and operations. Participate hands-on in security reviews of infrastructure changes.
Design and implement secure software development lifecycle (S-SDLC) and engage with Software Engineering and DevOps teams to implement secure development practices, including code reviews, static and dynamic security scanning, dependency checks, etc. Ensure software vulnerabilities are fixed in time and work closely with relevant teams to develop, manage and track SLOs on security fixes.
Stay current with emerging security threats and technologies, and implement appropriate measures to mitigate risks.
Provide training and awareness programs to technical and non-technical employees on information security best practices and procedures.
Requirements
7+ years of professional experience in cybersecurity with at least 3 years in a leadership or team-lead role.
In-depth understanding of cybersecurity principles and best practices.
Excellent understanding of risk-management principles and demonstrated experience implementing them in the real-life security program.
Hands-on experience implementing and reviewing cloud infrastructure configurations and assessing its security. Experience implementing secure infrastructure management pipelines.
Experience building and running security incident response programs and being hands-on coordinating and participating in security incident response.
Availability to respond to security alerts and respond to security incidents outside of business hours.
Certification in information security is preferable
Strong knowledge of SIEM tools, intrusion detection systems (IDS/IPS), and security monitoring tools
Benefits
Join us as we make magic happen to increase Indonesia’s financial inclusion!
Campus Security Officer ensuring safety at Bright Horizons early childcare centers in Seattle. Responsible for access control, surveillance, and emergency response.
Sounding and Security Watch responsible for Navy asset security at NSF Diego Garcia. Conducting checks and ensuring safety during designated watch hours with strong situational awareness.
Sales Enablement Manager creating technical content for Upwind Security. Collaborating across teams to translate cloud security concepts into clear narratives for engineers and security leaders.
Security Engineer designing and implementing security measures to protect Snap Inc.'s infrastructure. Collaborating across teams while focusing on threat detection and response strategies.
IT Security & Compliance Head at Lonza leading security strategy and managing global risk. Collaboration with senior leadership to enhance information security across Capsules & Health Ingredients business.
Senior Security Manager leading security for Sanofi meetings and events across North America. Ensuring compliance with global meeting policies and managing event security operations in high - stake environments.
Security Officer maintaining safety protocols at Aloft New Orleans. Responsible for patrolling, monitoring security systems, and assisting guests with safety - related concerns.
Security Detection Specialist responsible for detecting cybersecurity incidents using advanced security technologies. Analyzing data feeds and leveraging security tools for incident detection and reporting.
Senior Incident Response Engineer at Walmart focusing on security threat campaigns to enhance detection and response capabilities. Collaborating with SOC and engineering teams to improve security posture.
Head of Infrastructure & Security at Kinatico, a RegTech leader, focused on cloud infrastructure and security governance. Leading a technically deep team of cloud engineers and security specialists in a hybrid environment.