

Search by job, company or skills

Calling out all Indonesian Principle/Analyst Security Operations!
Role: Principal Analyst – Security Operations
Department: Infrastructure Information Security & Governance – Security Governance
Reporting to: Security Governance Associate Director
Working Location: Batam
Position Objective:
Manage security posture for on-prem and cloud platforms, including security patching operations, vulnerability remediation, and EOL software risk management. Drive continuous improvement of patch management processes, lead security initiatives, and implement security automation across key domains including IAM and secure AI adoption.
Responsibilities:
- Manage end-to-end security patching lifecycle for systems and platforms.
- Collaborate with vulnerability management and infrastructure teams to assess, prioritize, and deploy patches.
- Maintain and enhance patch management processes and documentation.
- Design, develop, and maintain security automation scripts and workflows.
- Manage and enhance reporting dashboards using JIRA, Power BI, and other platforms.
- Ensure automation solutions are scalable, maintainable, and policy-aligned.
- Track and automate security operations metrics gathering, analysis, and presentation.
- Prepare various security reports and executive decks.
- Support and contribute to security operations projects and automation initiatives.
- Review and assess security deviation and exception requests from application and infrastructure teams.
- Evaluate deviations against attack path analysis, regulatory requirements, and security standards.
Must-have requirements:
- Minimum 12 years of tech experience with at least 8 years in cybersecurity in a regulated environment (banking, insurance, fintech)
- Strong knowledge of cybersecurity vulnerability management, EOL remediation, patching processes and tooling
- Hands-on scripting experience: Python, Shell Script, or other scripting languages
- Experience with dashboard visualization and API integration (Power BI & Power Automate)
- Knowledge of cloud environments: Azure, AWS, GCP including containers/Kubernetes and microservices architecture
- Knowledge of various source code management systems
- Ability to drive resolution of complex security issues with a data-driven analytical mindset
- Experience implementing security tools and documenting processes
- Familiarity with MAS TRM guidelines or similar regulatory requirements
- Excellent interpersonal and communication skills – able to articulate why, what, and how for security remediation with clear explanation of risks, severity, and impact
- University degree in Computer Science, Computer Engineering, Information Security, or Information Systems
Job ID: 152344641