PT Korelasi Persada Indonesia is an information security solutions and services company based in Tangerang Selatan. Co‑founded by experienced information technology professionals, the company was established to support corporate partners in planning, building, and operating effective information security solutions that enhance business efficiency.
We help organizations reduce risk, ensure compliance, strengthen agility, and achieve their strategic goals with greater confidence.
Our mission is to become Indonesia's premier information security services provider by delivering high-quality solutions that consistently exceed customer expectations.
Role and Responsibilities- Day‑to‑day operational support for security devices.
- Provide technical support for each IT security technology.
- Provide technical documentation (SOP, MOP, User Guide, Incident Report, etc.).
- Collaborate with junior‑level staff to prepare and provide periodic daily, weekly, monthly, and quarterly reports.
- Manage and maintain security devices (keeping the technology up‑to‑date).
- Responsible for incident response and handling.
- Follow‑up on requests related to IT security technologies in the change management process.
- Analyze incidents from data and logs collected by junior staff for incident identification.
- Follow up resolution of incidents from junior staff, escalated to next level if not resolved.
- Knowledge of operating systems (Windows/UNIX).
- Knowledge of networking protocols and implementations (TCP/IP, OSI layers, routing).
- Knowledge of information security.
- Passionate learner, hardworking, good team player.
- Good interpersonal and communication skills.
Join our dynamic team in Jakarta as a Security Engineer (Cyber Defense), where you'll play a pivotal role in shaping and implementing robust cyber defenses for the Kredivo Group. Our cyber defense team runs programs related to endpoint security, WAF, network security & monitoring, data leakage prevention (DLP), threat intelligence, threat detection, and vulnerability & patch management.
You will report to the Cyber Defense Lead & work closely with the Kredivo IT team.
Responsibilities- Proactively monitor & respond to Endpoint Detection and Response (EDR) alerts.
- Assist in implementing vulnerability and patch management processes to ensure a secure endpoint environment.
- Implement and enforce CIS hardening standards for laptops, desktops, and network appliances.
- Contribute to implementing and maintaining security controls in network firewalls, IDS, and IPS.
- Participate in security incident response activities and conduct thorough investigations.
- Configure and manage Cloudflare security features including WAF, DDoS protection, bot management, and SSL/TLS settings.
- Monitor Cloudflare dashboards for security events and performance issues, and respond to incidents effectively.
- Implement and maintain Cloudflare rulesets to protect web applications against emerging threats.
- Collaborate with the Threat Detection team to fine‑tune existing security detections and develop new detection rules.
- Use threat intelligence database and analysis to identify emerging threats and integrate findings into incident response processes to enhance detection, containment, and remediation efforts.
- A bachelor's degree (preferably in IT but not mandatory).
- At least 4‑6 years of experience in information security across two or more areas (endpoint security, DLP, vulnerability & patch management, network security, SOC, or Cloudflare security administration).
- Experience configuring and managing Cloudflare features, including WAF, CDN, SSL/TLS, and security rulesets.
- Experience with a scripting language (e.g., Python, Bash, or similar) is good to have.
- Good knowledge of modern adversary tactics, techniques, and procedures.
- Certifications such as CompTIA Security+, CCNA/P, ISC², or ISACA related.
- Good understanding of security principles and best practices and background in managing EDR, DLP, WAF, vulnerability, patch management, and CDN security tools.
- Experience working with IT and security teams; prior experience in FinTech or financial services is a plus.
- Self‑starter with proactive attitude and proven ability to work independently with minimal supervision.
- Ownership mindset, high self‑motivation in leading security initiatives and projects.
- Continuous learner with interest in automating security processes.
- Excellent analytical skills for assessing and solving complex security issues.
- Clear and concise communicator adept at conveying security concepts to technical and non‑technical stakeholders.
- Proficient in creating comprehensive security reports and documentation for various audiences.
- Collaborative team player with cross‑functional teamwork skills, sharing knowledge to enhance team capabilities.
- Good organizational skills, capable of maintaining detailed documentation for security processes and incidents.
#LI‑RR1
Cloud Infrastructure Security Engineer – KredivoKredivo stands out as one of Indonesia's fastest‑growing consumer finance products. It offers instant financing, allowing buyers to quickly purchase their favorite e‑commerce products. Shoppers enjoy the simplicity of a 2‑click checkout across many online and offline merchants. Kredivo is powered by an advanced system that performs instant credit risk decisioning, leveraging extensive digital footprint data to ensure accurate credit assessment.
We are looking for a highly skilled and experienced Cloud Infrastructure Security Engineer (SDE4) to join our team as an individual contributor. In this critical role, you'll be responsible for leading projects, designing, implementing, and maintaining robust security posture for our cloud infrastructure across both Google Cloud Platform (GCP) and Amazon Web Services (AWS). Your direct contribution will be vital in enhancing our security controls, automating security processes, and ensuring continuous compliance with industry standards.
Responsibilities- Develop and implement cloud infrastructure security best practices for GCP and AWS.
- Configure and manage native cloud security services like GCP Security Command Center and AWS Security Hub.
- Implement and gatekeep continuous security monitoring, threat detection, and comprehensive compliance auditing.
- Define baselines, implement, and enforce security policies across the organization's cloud infrastructure.
- Design and deploy secure cloud infrastructure resources using Infrastructure as Code (IaC).
- Develop robust CI/CD pipelines for IaC deployments and integrate Policy as Code solutions to automate security policy enforcement.
- Conduct periodic security assessments and lead vulnerability remediation efforts for cloud infrastructure.
- Collaborate closely with our Information Security and Infrastructure Operations teams to embed security seamlessly throughout the software development lifecycle.
- Stay up‑to‑date with the latest cloud security threats, technologies, and best practices.
- Drive infrastructure security initiatives, contributing to the overall security strategy and roadmap.
- Minimum 5 years of experience in cloud security, focusing on infrastructure security.
- Proven hands‑on experience with GCP Security Command Center.
- Extensive experience with AWS security services, including Security Hub, GuardDuty, Inspector, Config, SCPs, and Control Tower.
- Expertise and hands‑on experience with IaC, preferably Terraform.
- Solid understanding of Policy as Code principles and implementation.
- Experience with Atlantis for Terraform collaboration and automation.
- Interest and exposure to security compliance frameworks (ISO 27001, CIS Framework, NIST SP 800‑53, PCI‑DSS).
- Strong grasp of networking concepts, least privilege access control, data encryption in cloud environments.
- Excellent problem‑solving skills and ability to troubleshoot complex security issues.
- Strong communication and collaboration skills, able to work effectively in cross‑functional teams.
- Relevant cloud security certifications (GCP Professional Cloud Security Engineer, AWS Certified Security – Specialty) are a plus.
#LI‑RB1
#J-18808-Ljbffr