Job description for Cyber Security at PT Avows Technologies
Qualification:
- Minimum Bachelor’s Degree (S1) in Information Technology, Computer Science, Information Systems, Electrical Engineering, or a related IT field.
- Minimum 4 years of relevant experience.
- Familiarity with Windows and Linux operating systems; knowledge of cloud-based environments such as AWS, Azure, or GCP is an advantage.
- Good understanding of TCP/IP, DNS, VPN, firewall, and IDS/IPS.
- Good coordination skills with IT, security, and management teams.
- Experience in security product analysis or assessment.
- Ability to create and maintain technical documentation and procedures.
- Familiarity with Jira Service for ticketing processes.
- Strong analytical and communication skills, with the ability to work independently and as part of a team, and willingness to comply with BDI policies.
- Background in infrastructure or cybersecurity.
- Good understanding of Web Application Security, API Security, and Network Security.
- Proficiency in vulnerability assessment and penetration testing tools such as Burp Suite, OWASP ZAP, Nuclei, Nessus, Acunetix, or similar tools.
- Experience in automation scripting using Python, Bash, or PowerShell.
- Understanding of CI/CD concepts and security testing integration within DevSecOps pipelines.
- Experience in developing and maintaining automated security testing frameworks.
- Good understanding of security standards such as OWASP Top 10, OWASP ASVS, CWE, and application security best practices.
- Ability to analyze scanning results, validate vulnerabilities, and prepare findings reports and remediation recommendations.
- Strong coordination and communication skills when working with development, infrastructure, and security teams.
Responsibility:
- Coordinate with IT, security, and management teams.
- Monitor the performance and availability of security tools and respond to security incidents.
- Handle alerts and incidents detected by security tools.
- Investigate and resolve technical or functional issues.
- Provide temporary workarounds and permanent fixes.
- Document incidents and resolution steps.
- Manage software updates and security patches.
- Test and implement tool upgrades without disrupting operations.
- Prepare and maintain tool usage and troubleshooting documentation.
- Integrate security tools with other systems.
- Provide data and reports for internal and external audit purposes.
- Develop Disaster Recovery Plans in coordination with internal and external teams.
- Prepare and maintain technical documentation, SOPs, and security tool performance reports.



