Epicareer Might not Working Properly
Learn More

DevOps Engineer

  • Full Time, onsite
  • PT. IDStar Cipta Teknologi (IDstar)
  • Jakarta Selatan, Indonesia
Salary undisclosed

Checking job availability...

Original
Simplified

Key Responsibilities:

  • Implement security best practices into the software development lifecycle.
  • Develop, integrate, and maintain security tools in CI/CD pipelines.
  • Conduct vulnerability assessments, security testing, and threat modeling.
  • Automate security scanning and compliance checks.
  • Ensure compliance with industry security standards such as NIST, ISO 27001, and OWASP.
  • Collaborate with development and operations teams to remediate security issues.
  • Monitor security threats and incidents, responding proactively to mitigate risks.
  • Advocate for security awareness and best practices across the organization.

Required Skills & Qualifications:

  • Education: Bachelor's degree in Computer Science, Cybersecurity, or related field (or equivalent experience).
  • Experience: 2+ years in DevSecOps, Security Engineering, or related roles.

Technical Skills:

  • Strong understanding of DevOps, CI/CD tools (Jenkins, GitLab CI/CD, CircleCI, etc.).
  • Hands-on experience with security tools such as SAST, DAST, SCA (e.g., SonarQube, OWASP ZAP, Snyk).
  • Proficiency in cloud security (AWS, Azure, GCP) and infrastructure as code (Terraform, CloudFormation).
  • Experience with container security (Docker, Kubernetes, Istio).
  • Familiarity with security frameworks like NIST, CIS, and OWASP.
  • Knowledge of scripting and automation (Python, Bash, PowerShell, etc.).
  • Strong understanding of networking and application security concepts.

Key Responsibilities:

  • Implement security best practices into the software development lifecycle.
  • Develop, integrate, and maintain security tools in CI/CD pipelines.
  • Conduct vulnerability assessments, security testing, and threat modeling.
  • Automate security scanning and compliance checks.
  • Ensure compliance with industry security standards such as NIST, ISO 27001, and OWASP.
  • Collaborate with development and operations teams to remediate security issues.
  • Monitor security threats and incidents, responding proactively to mitigate risks.
  • Advocate for security awareness and best practices across the organization.

Required Skills & Qualifications:

  • Education: Bachelor's degree in Computer Science, Cybersecurity, or related field (or equivalent experience).
  • Experience: 2+ years in DevSecOps, Security Engineering, or related roles.

Technical Skills:

  • Strong understanding of DevOps, CI/CD tools (Jenkins, GitLab CI/CD, CircleCI, etc.).
  • Hands-on experience with security tools such as SAST, DAST, SCA (e.g., SonarQube, OWASP ZAP, Snyk).
  • Proficiency in cloud security (AWS, Azure, GCP) and infrastructure as code (Terraform, CloudFormation).
  • Experience with container security (Docker, Kubernetes, Istio).
  • Familiarity with security frameworks like NIST, CIS, and OWASP.
  • Knowledge of scripting and automation (Python, Bash, PowerShell, etc.).
  • Strong understanding of networking and application security concepts.