job description
Join our dynamic team as an Information Security Officer (ISO) in the heart of Baliâs thriving tech and digital nomad hub! This is a unique opportunity to lead cybersecurity initiatives while enjoying the unparalleled lifestyle of Baliâs most vibrant locations, including Canggu, Ubud, Denpasar, Jimbaran, Nusa Dua, Kuta, and Badung.
As the Information Security Officer, you will play a pivotal dual role in safeguarding our organizationâs digital assets, ensuring compliance with global security standards, and fostering a culture of cybersecurity awareness. You will collaborate with cross-functional teams to design, implement, and monitor robust security frameworks that protect against evolving cyber threats. This role is ideal for a strategic thinker with a passion for innovation, risk management, and leadership in a fast-paced, tech-driven environment.
Bali offers more than just a stunning backdropâitâs a growing epicenter for remote work, startups, and digital transformation. Whether youâre based in the creative energy of Ubud, the surf-friendly vibes of Canggu, or the business hubs of Denpasar, youâll have the flexibility to work in a location that inspires you. This role combines professional growth with an exceptional work-life balance, making it perfect for a cybersecurity leader looking to make an impact while enjoying the best of island living.
If youâre a forward-thinking security professional with a knack for problem-solving and a desire to shape the future of cybersecurity in a tropical paradise, weâd love to hear from you!
Responsibility
- Develop, implement, and maintain a comprehensive information security program aligned with industry best practices and regulatory requirements (e.g., ISO 27001, NIST, GDPR).
- Lead risk assessments, vulnerability scans, and penetration testing to identify and mitigate security threats proactively.
- Oversee the design and enforcement of security policies, procedures, and controls to protect sensitive data and systems.
- Collaborate with IT, engineering, and business teams to integrate security best practices into all aspects of operations, from development to deployment.
- Monitor security incidents, conduct forensic investigations, and coordinate responses to breaches or vulnerabilities.
- Provide security awareness training and foster a culture of cybersecurity vigilance across the organization.
- Stay abreast of emerging threats, technologies, and trends in cybersecurity to ensure our defenses remain cutting-edge.
- Act as the primary point of contact for security audits, compliance reviews, and third-party assessments.
Qualifications
- Bachelorâs degree in Computer Science, Information Technology, Cybersecurity, or a related field (Masterâs degree or relevant certifications such as CISSP, CISM, or CEH are a plus).
- Minimum of 5 years of experience in information security, with at least 2 years in a leadership or managerial role.
- Proven expertise in security frameworks (e.g., ISO 27001, NIST, COBIT) and regulatory compliance (e.g., GDPR, PDPA).
- Hands-on experience with security tools such as SIEM, IDS/IPS, firewalls, endpoint protection, and vulnerability management systems.
- Strong understanding of cloud security (AWS, Azure, GCP) and secure software development lifecycle (SDLC) practices.
- Excellent analytical, problem-solving, and decision-making skills with a strategic mindset.
- Exceptional communication and stakeholder management abilities, with fluency in English (additional languages are a bonus).
- Experience working in a remote or hybrid environment, with the ability to thrive in a flexible, fast-paced setting.