Apply Edge Start your job search

Manager, Defensive Security Operation

Bank Saqu · Jakarta, Indonesia

Apply & track with Apply Edge

About YouYou're a go-getter with mad juggling skills (or multiple hats) who can thrive in a fast-paced, agile environmentYou enjoy doing purpose-led and meaningful workYou have a strong thirst for knowledge and are driven to find solutions that don't exist yetYou are comfortable with ambiguity and extremely resourceful (in your past life, you could've been a detective)You always find a way to get things done without sacrificing the quality of your work, integrity, and valuesNo task is off limits for youYou are humble and prioritize the success of the team over your own with an eagerness to help those around youYou don't shy away from challenges and can bounce back from setbacksWe strongly encourage individuals with disabilities to apply. We believe in equal opportunity and strive to create an inclusive workplace where everyone can thrive.What you’ll do and what success looks like in this role:Lead the Defensive Operations team, including SOC Analysts, Incident Responders, Threat Hunters, and Security Engineers.Manage 24/7 security monitoring across networks, endpoints, applications, cloud environments, and critical infrastructure.Develop and optimize detection use cases within SIEM, EDR, IDS/IPS, WAF, DLP, and other security solutions.Oversee incident response activities from detection and analysis through containment, eradication, and recovery.Conduct proactive threat hunting to identify suspicious activities before they develop into security incidents.Manage the integration of threat intelligence into detection and response processes.Design, develop, and implement security architectures and engineering solutions, including network security, endpoint security, cloud security, application security, IAM, PAM, encryption, and related technologies to support defensive operations.Manage log source integration, use case development, and automation through SOAR to improve SOC efficiency.Prepare incident reports, threat trend analyses, threat hunting findings, and defensive control effectiveness reports for management and regulatory authorities (such as OJK and BI).Develop playbooks, SOPs, and automation initiatives to accelerate and standardize SOC and incident response processes.Build and enhance team capabilities through technical training programs and tabletop exercises.What Is Required and What We’re Looking ForBachelor’s degree in Computer Science, Information Systems, or a related field.Minimum 7 years of experience in cybersecurity, including at least 3 years in a managerial role within a SOC or defensive operations environment.Strong knowledge of security technologies, including SIEM, SOAR, EDR, IDS/IPS, NDR, firewalls, and DLP.In-depth understanding of the incident response lifecycle and threat hunting methodologies.Familiarity with frameworks such as MITRE ATT&CK, Cyber Kill Chain, and NIST Incident Response.Relevant certifications such as CISSP, GCIA, GCIH, GMON, CCISO, or equivalent are highly preferred.Strong analytical capabilities and effective communication skills for incident escalation and stakeholder engagement.Knowledge of security regulations issued by OJK, BI, and international standards such as ISO 27001 and PCI DSS.Ability to develop and implement a balanced defensive security strategy across technology, processes, and people.