Back to search
Insura Media Solusi Linkedin · Posted 2d ago

Cybersecurity Architect

Jakarta

Linkedin
Continue to application Add your email once, then Caio opens the original posting.

Indexed description

✦ Indonesian national (WNI) — required for government deployment eligibility and potential security clearance at national agency level

✦ Minimum 5 years of hands-on experience in threat detection, detection engineering, blue team operations, or security research within a SOC, MSSP, cybersecurity product company, or government security function

✦ Demonstrated, in-depth knowledge of the MITRE ATT&CK framework — applied experience translating adversary TTPs into structured, production-ready detection logic, not surface-level familiarity

✦ Verifiable production experience authoring detection rules: Sigma rules, YARA signatures, NAVE detection logic, or equivalent deployed in live environments

✦ Solid capability in network traffic analysis: deep packet inspection, protocol dissection, and flow/session analysis using NAVE, Apex Minutia, or equivalent network forensics and PCAP analysis tooling

✦ Hands-on experience operating enterprise-grade security analytics platforms — including NOGTUS or comparable SIEMclass systems — encompassing detection rule authoring and operational tuning, not limited to log querying

✦ Proficiency in Python for security automation — detection rule management, log parsing, threat intelligence enrichment pipelines, and internal tooling development

✦ Working knowledge of AI/ML techniques applied to security: anomaly detection, clustering, NLP for log analysis, and UEBA model development or operational tuning

✦ Strong understanding of enterprise network architecture, core protocols (TCP/IP, DNS, HTTP/S, SMB, Kerberos, LDAP, RDP), and attacker tradecraft across each layer

✦ Experience designing or reviewing security architectures for enterprise or government environments — including network segmentation, firewall policy design, IDS/IPS placement, zero-trust principles, and secure inter-component communication architecture

✦ Familiarity with security architecture frameworks and methodologies: SABSA, TOGAF (security domain), NIST SP 800160, or CIS Controls — applied in practice, not academic knowledge only

✦ Ability to write clear and concise detection engineering documentation, security architecture documentation, internal advisories, and technical guidance suitable for both technical and non-technical audiences

Free. 20 seconds. No password. See every match in this search.

Create a free Caio profile to unlock more results and save your role and location preferences.

Unlock free search
Want help applying to roles like this? Search Caio for free. If repetitive applications get heavy, Managed Job Search adds supervised execution for $99/month.
View Managed Job Search