job description
Join USER Experience Researchers as a Senior Technical Consultant specializing in Threat and Vulnerability Management (VM) to drive cutting-edge cybersecurity solutions in Bali’s dynamic tech landscape. In this pivotal role, you will design, implement, and optimize security frameworks to safeguard critical information systems against evolving threats.
Leverage your expertise to assess risks, develop mitigation strategies, and collaborate with cross-functional teams to enhance organizational security posture. This is a unique opportunity to contribute to high-impact projects while enjoying the vibrant work-life balance of Bali—whether in Canggu, Ubud, or Denpasar.
Ideal for seasoned professionals passionate about cybersecurity innovation, this role offers competitive compensation, career growth, and the chance to shape the future of digital security in Southeast Asia.
Responsibility
- Lead the design and execution of Threat and Vulnerability Management (VM) programs to identify, assess, and mitigate security risks.
- Conduct comprehensive security audits and penetration testing to uncover vulnerabilities in systems, networks, and applications.
- Develop and enforce security policies, standards, and procedures aligned with industry best practices (e.g., ISO 27001, NIST).
- Collaborate with IT and development teams to integrate secure coding practices and DevSecOps principles into workflows.
- Monitor emerging cybersecurity threats and proactively recommend preventive measures to stakeholders.
- Provide technical guidance and training to internal teams on security awareness and compliance.
- Oversee incident response plans and lead investigations into security breaches or anomalies.
- Evaluate and deploy security tools (e.g., SIEM, IDS/IPS, EDR) to enhance detection and response capabilities.
Qualifications
- Bachelor’s or Master’s degree in Computer Science, Cybersecurity, or a related field; certifications such as CISSP, CISM, CEH, or OSCP are a plus.
- Minimum 5+ years of experience in cybersecurity, with a focus on threat management, vulnerability assessment, or penetration testing.
- Proven expertise in security frameworks (e.g., MITRE ATT&CK, OWASP) and compliance standards (e.g., GDPR, PCI-DSS).
- Hands-on experience with security tools like Nessus, Burp Suite, Metasploit, or Splunk.
- Strong analytical and problem-solving skills with the ability to translate complex technical issues into actionable insights.
- Excellent communication and stakeholder management skills to articulate risks and solutions to non-technical audiences.
- Experience working in agile or DevOps environments is highly desirable.
- Fluency in English; knowledge of Indonesian (Bahasa) is a bonus.