job description
Join the Financial Times and build a newsworthy career as a Senior Cyber Security Engineer specializing in Application Security and AWS. In this critical role, you will safeguard our digital infrastructure, ensuring the integrity, confidentiality, and availability of our systems in a fast-paced, global media environment.
As part of our elite cybersecurity team, you will lead the design, implementation, and maintenance of cutting-edge security solutions, with a focus on cloud security (AWS), application security, and threat mitigation. Your expertise will directly contribute to protecting the FTâs reputation as a trusted source of news and data worldwide.
Based in the vibrant and dynamic hub of Bali, Indonesia, this role offers the perfect blend of professional challenge and lifestyle flexibility. Whether you're in Canggu, Ubud, or Denpasar, youâll collaborate with a global team while enjoying the islandâs unique work-life balance.
Responsibility
- Design, implement, and maintain application security frameworks to protect FTâs digital assets and user data.
- Lead AWS cloud security initiatives, including IAM, network security, encryption, and compliance monitoring.
- Conduct penetration testing, vulnerability assessments, and code reviews to identify and remediate security risks.
- Develop and enforce security policies, standards, and best practices across development and operations teams.
- Monitor and respond to security incidents, performing root cause analysis and implementing preventive measures.
- Collaborate with DevOps and engineering teams to integrate security into CI/CD pipelines (DevSecOps).
- Stay ahead of emerging threats by researching cybersecurity trends and recommending proactive defenses.
- Provide security training and awareness to internal stakeholders to foster a security-first culture.
Qualifications
- Bachelorâs or Masterâs degree in Computer Science, Cybersecurity, or a related field.
- Minimum 5+ years of experience in cybersecurity, with a focus on application security and AWS cloud environments.
- Strong expertise in AWS security services (e.g., GuardDuty, WAF, KMS, IAM, Security Hub).
- Hands-on experience with SAST/DAST tools (e.g., Burp Suite, OWASP ZAP, Checkmarx) and container security.
- Proficiency in scripting languages (Python, Bash) and security automation tools.
- Certifications such as CISSP, CISM, AWS Certified Security â Specialty, or OSCP are highly desirable.
- Deep understanding of OAuth, SAML, Zero Trust, and encryption protocols.
- Excellent problem-solving, communication, and stakeholder management skills.