Conduct vulnerability assessments, threat validations and vulnerability repair recommendations. Conduct penetration testing to find weaknesses and vulnerabilities in the company's system. Conduct hardening on operating systems, networks, and applications according to best practices. Monitor, respond and validate threat intelligence platform information to detect vulnerabilities and threats to the company's digital assets. Conduct threat validation and provide Indicators of Compromise (loC), Indicators of Attack (loA), and Tactics, Techniques, Procedures (TTP) based on MITRE ATT&CK. Monitor, respond and evaluae Active Directory and Email security detection. Provide recommendations to related teams to fix security gaps and potential cyber attacks. Collaborate with Security Analysts in handling and responding to cybersecurity incidents. Work with stakeholders and other external teams in identifying and repairing system vulnerabilities Create cybersecurity reports based on threats and attack detections periodically.
Bachelor's degree in Informatics Engineering, Information Systems, Cyber Security, or related fields. Minimum 2 years of experience as a Security Analyst/Pentester/Cyber Threat Intelligence. Experienced in conducting vulnerability testing Vulnerability Assessment, Penetration Testing and Threat Intelligence analysis. Have good knowledge related to vulnerability gap & risk assessment based on the OWASP method. Experienced in using and analyzing findings from Security Tools assessment (Burpsuite, Nessus, Metasploit, Threat Intelligence). Experienced and understanding of implementing Best Practices for Information Security/Cybersecurity (ISO 27001, NIST-CSF, CIS control). Having a good understanding of Network Protocol, Secure-SDLC and Datacenter Infrastructure. Actively participating in the Red Team development program (Capture The Flag (CTF), Bug Bounty, or Open-Source Security Projects) is a plus. Has one certification of the following: CompTIA Cyber Security Analyst (CVSA+), CEH (Certified Ethical Hacker), PENT (Certified Penetration Testing Professional), (Priority) OSCP (Offensive Security Certified Professional), (Priority) CISSP (Certified Information Systems Security Professional), or other relevant certifications is a plus.
Keuangan/Bank
https://www.pnm.co.id/
0212511404
250-500
monday - saturday
Formal
Medical, Miscellaneous allowance, Dental, Vision
Indonesian
Jalan Kuningan Mulia, Kuningan Center Lot 1, Karet, Setiabudi, Jakarta Selatan 12920