DevSecOps Engineer/Lead

Posted 3 Days Ago
Be an Early Applicant
Hiring Remotely in Jakarta, DKI Jakarta, IDN
Remote
Mid level
Fintech • Software • Financial Services
The Role
Design, integrate, and maintain AppSec automation across CI/CD pipelines. Embed SAST, DAST, and SCA tools, tune platforms to reduce false positives, perform targeted DAST with Burp Suite, triage and remediate vulnerabilities, enforce security gates, and advise engineering teams on fixes and secure IaC/container deployments.
Summary Generated by Built In

As a DevSecOps Engineer, you will bridge the gap between development, operations, and information security. Reporting to the Application Security Lead, you will architect, maintain, and scale security automation across our software development lifecycles (SDLC). Your primary mandate is to shift security left by embedding SAST, DAST, and SCA tools directly into modern CI/CD pipelines, eliminating security bottlenecks and ensuring continuous code compliance.

Key Responsibilities
  • Pipeline Security Automation: Integrate and manage static, dynamic, and software composition analysis tools into continuous integration and continuous deployment (CI/CD) pipelines.
  • Tooling Optimization: Own, configure, and fine-tune AppSec platforms including Checkmarx, Semgrep, Snyk, and SonarQube to minimize false positives and maximize actionable alerts.
  • Automated & Manual DAST: Configure automated dynamic scanners and leverage Burp Suite Professional for targeted security testing on APIs and web services.
  • Vulnerability Remediation & Triage: Act as the primary technical point of contact to triage code vulnerabilities, providing clear remediation guidance and proof-of-concept fixes directly to engineering teams.
  • Open Source Security (SCA): Utilize Snyk and similar tools to monitor open-source dependencies, license compliance, and third-party software supply chain vulnerabilities.
  • Policy Enforcement: Define automated gatekeeping thresholds (e.g., failing builds for critical/high vulnerabilities) within the deployment pipeline based on internal security policies.

Requirements
  • Experience: 4+ years of experience in DevOps, software engineering, or application security, with at least 2+ years dedicated exclusively to DevSecOps practices.
  • Tooling Command: Proven, deep technical proficiency with the following tools:
    • SAST: Checkmarx, Semgrep, SonarQube
    • SCA & Container Security: Snyk
    • DAST / Pen-testing: Burp Suite Professional
  • CI/CD Ecosystems: Extensive experience building automation plugins and pipelines in GitHub Actions, GitLab CI, Jenkins, or Bitbucket Pipelines.
  • Infrastructure as Code (IaC): Solid understanding of cloud-native infrastructure, containerization (Docker, Kubernetes), and secure IaC deployment (Terraform).
  • Development Background: Ability to read and understand code snippets across multiple languages (e.g., Python, Java, Go, Node.js).
  • Certifications: Certifications such as Certified DevSecOps Professional (CDP), Practical DevSecOps (CDEP), or CSSLP are highly preferred

Benefits

Join us as we make magic happen to increase Indonesia’s financial inclusion!

Skills Required

  • 4+ years experience in DevOps, software engineering, or application security, with at least 2+ years dedicated to DevSecOps practices
  • Deep technical proficiency with SAST tools: Checkmarx, Semgrep, SonarQube
  • Deep technical proficiency with SCA and container security tools: Snyk
  • Deep technical proficiency with DAST and pen-testing tooling: Burp Suite Professional
  • Experience building automation plugins and pipelines in GitHub Actions, GitLab CI, Jenkins, or Bitbucket Pipelines
  • Strong understanding of cloud-native infrastructure, containerization (Docker, Kubernetes), and secure Infrastructure as Code deployments (Terraform)
  • Ability to read and understand code across multiple languages (e.g., Python, Java, Go, Node.js)
  • Certifications such as Certified DevSecOps Professional (CDP), Practical DevSecOps (CDEP), or CSSLP
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Jakarta, Jakarta Selatan
584 Employees
Year Founded: 2019

What We Do

Founded in 2019, Ajaib is a rapidly growing investment platform in Indonesia. It offers financial technology services such as stock trading, mutual funds, and coins. The simplicity of investing through Ajaib inspired our name, which means "magic," as we aim to disrupt the financial industry magically. Our goal is to make stock trading accessible to millennials with our mobile-first approach, low fees, and user-friendly interface. Ajaib has become Indonesia's first fully online stock brokerage, with no offline brokers or branches. Trusted by over 3 million customers, we are the fastest-growing investment startup in Southeast Asia. Backed by top investors like DST Global, Horizons Ventures, and Alpha JWC Ventures, we proudly became Indonesia's first investment fintech unicorn.

Similar Jobs

Circle (circle.so) Logo Circle (circle.so)

Lead Product Designer

Artificial Intelligence • Consumer Web • Digital Media • Information Technology • Social Impact • Software
Easy Apply
Remote
31 Locations
250 Employees
140K-170K Annually

CrowdStrike Logo CrowdStrike

Sales Engineer

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
Indonesia
10000 Employees

Mondelēz International Logo Mondelēz International

Analytics Manager

Big Data • Food • Hardware • Machine Learning • Retail • Automation • Manufacturing
Remote or Hybrid
4 Locations
90000 Employees

CrowdStrike Logo CrowdStrike

Regional Alliances Manager (Remote, IDN)

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
Indonesia
10000 Employees

Similar Companies Hiring

Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account