Bachelor’s degree in Information Technology, Information Systems, Computer Science, or a related field.
7+ years of experience in cybersecurity, IT risk, or consulting, with at least 2 years of experience leading teams or projects.
Hands-on experience in at least two of the following areas: cybersecurity maturity assessment/roadmap development, risk management, pentest oversight, or security governance.
Assigment/Project Location
Willing to be assigned to projects across Indonesia
Important Information
Responsibilities:
Lead and manage multiple cybersecurity projects in parallel (scope, timeline, budget, and quality).
Develop project plans, including risk/assumption/issue/dependency tracking, and ensure deliverables meet the required standards.
Manage penetration testing projects (web, mobile, API, and infrastructure), including methodology selection, scoping, and team coordination.
Support the preparation of proposals, effort estimation, and the development of SOW/SoW (Scope of Work).
General Qualification:
Bachelor’s degree in Information Technology, Information Systems, Computer Science, or a related field.
7+ years of experience in cybersecurity, IT risk, or consulting, with at least 2 years of experience leading teams or projects.
Hands-on experience in at least two areas: cybersecurity maturity/roadmap development, risk management, pentest oversight, or security governance.
Required Skills:
Project management (planning, tracking, QA, and stakeholder reporting).
Strong communication skills (able to translate technical issues into business impact).
Workshop facilitation, interviewing, documentation, and professional report writing.
Leadership and coaching (mentoring junior consultants, reviewing deliverables, and knowledge sharing).
Governance, Risk, and Compliance (GRC).
Basic understanding of network, system, cloud architecture, IAM, and logging/monitoring.
Knowledge of application security concepts: OWASP Top 10, API security, SDLC/SSDLC, and threat modeling (a plus).
Ability to assess pentest results and validate findings (severity, exploitability, and impact).