Cybersecurity Architect
Indexed description
✦ Indonesian national (WNI) — required for government deployment eligibility and potential security clearance at national agency level
✦ Minimum 5 years of hands-on experience in threat detection, detection engineering, blue team operations, or security research within a SOC, MSSP, cybersecurity product company, or government security function
✦ Demonstrated, in-depth knowledge of the MITRE ATT&CK framework — applied experience translating adversary TTPs into structured, production-ready detection logic, not surface-level familiarity
✦ Verifiable production experience authoring detection rules: Sigma rules, YARA signatures, NAVE detection logic, or equivalent deployed in live environments
✦ Solid capability in network traffic analysis: deep packet inspection, protocol dissection, and flow/session analysis using NAVE, Apex Minutia, or equivalent network forensics and PCAP analysis tooling
✦ Hands-on experience operating enterprise-grade security analytics platforms — including NOGTUS or comparable SIEMclass systems — encompassing detection rule authoring and operational tuning, not limited to log querying
✦ Proficiency in Python for security automation — detection rule management, log parsing, threat intelligence enrichment pipelines, and internal tooling development
✦ Working knowledge of AI/ML techniques applied to security: anomaly detection, clustering, NLP for log analysis, and UEBA model development or operational tuning
✦ Strong understanding of enterprise network architecture, core protocols (TCP/IP, DNS, HTTP/S, SMB, Kerberos, LDAP, RDP), and attacker tradecraft across each layer
✦ Experience designing or reviewing security architectures for enterprise or government environments — including network segmentation, firewall policy design, IDS/IPS placement, zero-trust principles, and secure inter-component communication architecture
✦ Familiarity with security architecture frameworks and methodologies: SABSA, TOGAF (security domain), NIST SP 800160, or CIS Controls — applied in practice, not academic knowledge only
✦ Ability to write clear and concise detection engineering documentation, security architecture documentation, internal advisories, and technical guidance suitable for both technical and non-technical audiences
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search