Skill diminta
Communication
Gaji pasar untuk posisi ini
Median Rp8,8 jt/bulan · rentang umum Rp8,3 jt – Rp9,9 jt
Berdasarkan 62 lowongan Security Engineering se-Indonesia (semua level).
Lihat data gaji selengkapnya →Deskripsi
Utilize a combination of leading security technologies and SIEM tools (Including Elastic SIEM) to detect, classify, and respond to security threats, in coordination with the L1 SOC team and L2 team.
Propose feasible mitigations and long-term solutions for identified threats, vulnerabilities, and recurring incidents.
As Detection engineer, to perform review, Assess and identify improvement plan for all detection rules over security platforms especially on SIEM.
Perform review and assessments over the logs of security platforms as well as the effectiveness of Cyber security Platforms
Leading the Cyber Security Project implementation, including XDR, DLP, HSM, SIEM improvement, BYOD, Cloud Security, Patch Management tool, Privilege Access management
- Monitor security alerts and incidents from SIEM and other tools.
- Analyze threat intelligence and suspicious activities across systems
- Enforce secure configurations for servers, endpoints, and cloud resources.
- Apply patches and security updates in coordination with IT teams.
- Implement and manage IAM, MFA, and privileged access systems
- Ensure least privilege access principles are followed Lead response efforts for security incidents and breaches.
- Perform root cause analysis and recommend remediation steps.
- Plan, implement, and upgrade cybersecurity controls and monitoring mechanisms to align with evolving threat landscapes.
- Provide technical support during incident investigations.
- Automate ad improve response capabilities using scripting/tools.
Continuously enhance threat detection capabilities by developing correlation rules, visual dashboards, and automated alerting in Elastic/Kibana.
Define and improve cybersecurity methodologies, processes, and tools used by analysts and engineers.
Review and endorse security-related documentation such as system architecture, test plans, and technical designs to ensure secure-by-design principles are followed.
- Bachelor's degree in Computer Science, Information Technology, Information Systems, or related discipline.
- Minimum 3-6 years of experience in cybersecurity, preferably in SOC or SIEM operations.
- Hands-on experience with Elastic SIEM / ELK Stack or equivalent SIEM platforms.
- Strong analytical skills in understanding network, application, and system-level threats and logs.
- Solid understanding of system/solution architecture and ability to recommend secure design alternatives.
- Detail-oriented with strong problem-solving abilities and root cause analysis skills.
- Excellent communication skills; able to collaborate across technical and nontechnical teams.
- Self-driven, quick learner, and able to work independently with minimal supervision.
- Certifications such as CEH, CompTIA Security+, GCIH, or Elastic Certified Analyst are a plus.