Search by job, company or skills

Senior Security Engineer - Cyber Defense

  • Posted 5 hours ago
  • Be among the first 10 applicants

Job Description

We are looking for a Senior Security Engineer to join Kredivo Group's Cyber Defense team. This

role is designed for professionals who can bridge enterprise security engineering, threat hunting

and incident response.

You will play a critical role in protecting our infrastructure, endpoints and applications from

advanced threats, while also proactively hunting for malicious activity and leading IR efforts.

You'll collaborate with IT, engineering and other security teams based in Indonesia & India to

build, monitor and evolve security defenses, while staying ahead of adversaries through threat

intelligence and detection engineering.

Responsibilities

DFIR - Windows, macOS, Linux & Cloud

  • Lead DFIR investigations across Windows, macOS and Linux endpoints/servers,

identifying attack vectors, persistence mechanisms, lateral movement and root cause.

  • Perform disk, memory, file-system, registry and artifact analysis to reconstruct attacker

activity and establish timelines.

  • Analyze Windows artifacts including Event Logs, Registry, Prefetch, Amcache,

Shimcache, SRUM, PowerShell, scheduled tasks and browser artifacts.

  • Investigate macOS artifacts including Unified Logs, LaunchAgents/LaunchDaemons,

persistence mechanisms, shell history, browser data and file-system activity.

  • Perform timeline analysis and artifact correlation to reconstruct attacker behavior and

determine the scope and impact of incidents.

Threat Hunting & Detections

  • Continuous monitoring of both internal and external systems to detect threats, uncover

vulnerabilities and ensure policy compliance.

  • Correlate IOCs/TTPs with internal activity using SIEM, EDR and custom automation.
  • Deploy, configure and monitor security tools (EDR, DLP, VMDR).
  • Analyze dark web chatter, OSINT sources and intelligence platforms to identify emerging

threats.

  • Generate weekly/monthly hunting & intel reports with actionable recommendations.

Incident Response

  • Lead incident response, perform forensics and log analysis to identify root causes.
  • Support containment, eradication and remediation efforts with cross functional teams.
  • Develop security automations and workflows using scripting languages Python or Bash.
  • Collaborate with the Threat Detection team to fine tune alerts and improve detection

coverage.

  • Contribute to IR playbooks, runbooks and post incident reviews.

Qualifications

  • 4 to 7 years of experience in cybersecurity with exposure to enterprise security, threat

hunting and incident response.

  • Hands on with security platforms like EDR, DLP, Wazuh, Vulnerability Management, and

Cloudflare WAF.

  • Good understanding of adversary tactics like MITRE ATT&CK, TTPs, IOC handling.
  • Working knowledge of scripting/automation (Python, Bash, PowerShell).
  • Knowledge of forensic techniques, log analysis, and security monitoring platforms.
  • Strong grasp of enterprise IT & SaaS security (GSuite, VPNs, cloud security, IAM).
  • Preferred certifications: Security+, CCNA/P, GIAC (GCIA/GCTI/GCIH) or equivalent.
  • Experience in Fintech or financial services is a plus.

Behavioral & Soft Skills

  • Ownership mindset: can lead initiatives independently with minimal supervision.
  • Strong analytical and problem solving skills in high-pressure situations.
  • Excellent communicator and be able to explain technical security concepts to technical

and non-technical stakeholders.

  • Team player that collaborates effectively across IT, engineering and security.
  • Passionate about continuous learning, automation and staying current with the threat

landscape.

More Info

Job Type:
Industry:
Function:
Employment Type:

About Company

Job ID: 152374591

Beware of Scammers

We don’t charge money for job offers