job description
Join Pixlr as our IT Security Manager and take the helm of our global cybersecurity strategy in the heart of Baliâs thriving tech hub. In this pivotal role, youâll own end-to-end securityâfrom Application Security (AppSec) and cloud infrastructure protection to governance, compliance, and incident responseâensuring our fast-paced, innovative environment remains secure, resilient, and ahead of emerging threats.
Pixlr empowers millions of creators worldwide with cutting-edge image editing tools, and as our IT Security Manager, youâll play a critical role in safeguarding our usersâ data, intellectual property, and digital assets. This is a high-impact opportunity for a strategic thinker who thrives in dynamic, global tech ecosystems and wants to shape the future of security at a leading SaaS company.
Based in Baliâs most vibrant locationsâCanggu, Ubud, Denpasar, or beyondâyouâll collaborate with cross-functional teams to embed security best practices into every layer of our operations, from development to deployment. If youâre passionate about proactive threat mitigation, scalable security architectures, and fostering a culture of security awareness, we want to hear from you.
Responsibility
- Security Strategy & Leadership: Develop, implement, and oversee a comprehensive cybersecurity framework aligned with industry standards (e.g., ISO 27001, NIST, SOC 2).
- Application & Cloud Security: Lead AppSec initiatives, including code reviews, penetration testing, and vulnerability assessments for Pixlrâs cloud-native platforms (AWS/Azure/GCP).
- Incident Response & Threat Management: Establish and refine incident response protocols, conduct forensic investigations, and coordinate with stakeholders during security breaches.
- Governance & Compliance: Ensure adherence to global data protection regulations (GDPR, CCPA) and maintain compliance certifications through audits and risk assessments.
- Security Awareness & Training: Design and deliver security training programs to educate employees on best practices, phishing prevention, and secure coding.
- Vendor & Third-Party Risk: Assess and mitigate risks associated with third-party vendors, tools, and integrations.
- Infrastructure Hardening: Oversee the deployment of firewalls, IDS/IPS, SIEM tools, and endpoint protection to fortify Pixlrâs digital perimeter.
- Cross-Functional Collaboration: Partner with DevOps, Engineering, and Product teams to embed security into CI/CD pipelines and agile workflows.
Qualifications
- Proven Experience: 5+ years in cybersecurity, with at least 2 years in a managerial or leadership role, preferably in SaaS or cloud-based environments.
- Technical Expertise: Hands-on experience with AppSec tools (e.g., Burp Suite, OWASP ZAP), cloud security (AWS/Azure/GCP), and SIEM solutions (Splunk, Datadog).
- Certifications: CISSP, CISM, CEH, or equivalent certifications are a strong plus.
- Compliance Knowledge: Deep understanding of GDPR, SOC 2, ISO 27001, and other regulatory frameworks.
- Scripting & Automation: Proficiency in Python, Bash, or PowerShell for security automation and tooling.
- Problem-Solving: Analytical mindset with a track record of resolving complex security incidents under pressure.
- Communication Skills: Ability to translate technical risks into business impact for non-technical stakeholders.
- Global Mindset: Experience working in distributed, international teams and adapting to diverse cultural contexts.