Deskripsi Pekerjaan
Are you a security-minded engineer who thrives at the intersection of development, operations, and cybersecurity? Abishar Technologies Indonesia is seeking a highly skilled DevSecOps Engineer to join our elite team in Jakarta. In this role, you will be the bridge between our infrastructure and our security posture, ensuring that we maintain bank-grade security standards across our entire CI/CD pipeline.
We operate in a fast-paced environment where reliability and security are non-negotiable. You will work closely with software developers and IT operations teams to implement automated security checks, vulnerability assessments, and robust configuration management. If you are passionate about "Security as Code" and building resilient, cloud-native infrastructures, we want to hear from you.
Tanggung Jawab
- Design and implement secure CI/CD pipelines to automate security testing and quality gates.
- Manage cloud infrastructure with a focus on high availability, scalability, and bank-grade security protocols.
- Perform regular security audits, vulnerability scanning, and penetration testing on internal and customer-facing platforms.
- Collaborate with development teams to integrate security best practices during the early stages of the SDLC (Shift-Left approach).
- Monitor production environments for security anomalies and implement rapid incident response protocols.
- Manage Infrastructure as Code (IaC) using tools like Terraform or CloudFormation to ensure consistent and secure deployments.
- Maintain compliance documentation and ensure infrastructure meets regulatory standards for financial technology.
Kualifikasi
- Bachelor’s degree in Computer Science, Information Technology, or a related field.
- Minimum 3+ years of experience in DevOps, Site Reliability Engineering (SRE), or Security Engineering.
- Strong proficiency in cloud platforms (AWS, Azure, or GCP) and container orchestration (Kubernetes/Docker).
- Deep understanding of CI/CD tools (Jenkins, GitLab CI, GitHub Actions) and security integration.
- Experience with Infrastructure as Code (Terraform, Ansible) and configuration management.
- Strong knowledge of security frameworks (OWASP, NIST, ISO 27001).
- Experience with scripting languages (Python, Go, or Bash) for automation.
- Relevant security certifications (e.g., CISSP, CISM, CompTIA Security+) are a major plus.