Executive recruitment company Monroe Consulting Group is partnering up with a growing digital bank. Our client is looking for a DevOps Security Manager. This job is based in Jakarta, Indonesia, with hybrid working condition
Job responsibilities:
Security DevOps Design & Execution
- Implement, maintain, monitor, and manage security practices within the organization, specifically the development team
- Review and interpret Systems Security Controls to interview project teams and understand their systems, identify gaps in system compliance against framework controls, and provide recommendations to achieve security compliance
- Develop security test plans from architectural designs; identify deficiencies and make enhancements to ensure production is not impacted
- Engage in information security projects that evaluate existing security infrastructure and propose changes as defined by security leadership
- Deliver projects on time, within budget and in accordance with service level agreements (SLAs)
- Research, validate and deploy solutions meeting security and business needs
Security DevOps Leadership & Expertise
- Lead creative, holistic security design thinking across various development and infrastructure projects
- Participate in sprint planning meetings and various decision-making sessions to ensure that security requirements and considerations are woven into the development practices
- Lead security team meetings that facilitate secure design
- Focus on driving security efficiencies, enabling team members to work on more advanced tasks
- Stay informed on security best practices within the industry; act as a subject matter expert for IT security
Job requirements:
- A minimum 7 years working with Security Development Operations and corporate security infrastructure
- Analyzing deficiencies in security practices deploying strategies for improvement
- A minimum 2 years working with cloud software and cloud security practices, preferably within the consumer/retail industry
Required Software/Technical Skills
- Knowledge of WAF (Web Application Firewall) and BOT management
- Working knowledge of DevOps configuration management tools (SAST/DAST tools, Azure DevOps, Branching, etc.)
- Knowledge of Secure code scanning tools and procedures
- Knowledge of scripting tools (PowerShell, SQL, .Net and ABAP4)
- Knowledge of AWS (Amazon Web Services) and Microsoft Azure
- Knowledge of CDN (Content Delivery Network) and types of different CDN platforms
