freehire launches on Product Hunt on 26 August.

Follow →

IT Cyber Security Manager

Summary

Leads end-to-end cybersecurity strategy for a hybrid-cloud/IT-OT environment, designing Zero Trust, SASE, and AI-driven SOC frameworks while aligning risk with executive priorities and governing compliance (ISO 27001, NIST, etc.).

We are seeking a seasoned Head of IT Security to own the end-to-end cybersecurity posture of the organization. This is a senior leadership role responsible for protecting a complex hybrid-cloud environment and converged IT/OT landscape (including manufacturing, IoT, and SCADA/ICS systems), while building and leading a high-performing security function across people, process, and technology. The role carries direct accountability for translating technical risk into business language for the C-Suite and Board of Directors.

• Define and lead the enterprise cybersecurity strategy and roadmap, aligning security investment with business risk and budget priorities.

• Build and mature a Zero Trust and SASE architecture, including ZTNA, micro-segmentation, and cloud-native secure access (CASB, FWaaS, SWG).

• Own security for converged IT/OT environments, applying the Purdue Model to segment industrial networks and manage ICS/SCADA security posture.

• Establish and scale an AI-driven Security Operations Center (SOC), integrating UEBA, AI-powered SOAR playbook automation, and proactive threat detection mapped to MITRE ATT&CK.

• Lead identity and endpoint security strategy: self-healing Unified Endpoint Management (UEM), passwordless authentication (FIDO2), and dynamic Privileged Access Management (PAM).

• Drive secure software delivery by embedding Cloud Security Posture Management (CSPM), Kubernetes security, and automated DAST/SAST scanning into CI/CD pipelines.

• Govern enterprise risk and compliance across ISO 27001:2022, NIST CSF 2.0, CIS Controls v8, PCI-DSS, TISAX, DORA, and applicable privacy regulations (e.g., GDPR, Indonesia's PDP Law).

• Report cybersecurity risk, incidents, and program maturity to the C-Suite and Board in clear, quantifiable financial and business terms.

• Recruit, mentor, and lead the security team; manage security budget, vendor relationships, and third-party risk.

• Own incident response planning, crisis management, and post-incident review for security events across IT and OT domains.

Requirements

• 12–15+ years of progressive enterprise cybersecurity experience, including significant time in a senior leadership capacity.

• Proven track record leading holistic security transformations spanning budget, people, and technology.

• Deep, hands-on expertise in Zero Trust architecture, SASE, and modern network security controls.

• Practical experience securing IT/OT convergence, manufacturing facilities, IoT, and industrial control systems.

• Strong background in AI-driven SecOps, SOAR automation, and threat intelligence operations.

• Working mastery of global governance frameworks: ISO 27001:2022, NIST CSF 2.0, CIS Controls v8, PCI-DSS, TISAX, DORA, and GDPR.

• Demonstrated ability to communicate technical cyber risk to non-technical executive and Board audiences.

• Bachelor's degree in Information Security, Computer Science, Engineering, or a related field; advanced degree a plus.

Preferred Certification

  • CISSP — Certified Information Systems Security Professional
  • CISM — Certified Information Security Manager
  • CISA — Certified Information Systems Auditor
  • GICSP — Global Industrial Cyber Security Professional
  • CCSP — Certified Cloud Security Professional
  • CRISC — Certified in Risk and Information Systems Control
  • GIAC GDSA — Defensible Security Architecture
  • CEH / OSCP

What this application asks

workable

First name, Last name, Email, Phone, Birth Place, Birth Date, Gender, University, Education Degree, Major of Study, Resume, Notice Period, Work Eligibility, Current monthly salary in IDR? (Take Home Pay), Expected monthly salary In IDR? (Take Home Pay) - Optional, State the names of employees in our company who have family ties with your relatives! (If yes, please mention the name, position, and your relationship.), By submitting this form, you affirm that all personal data and information provided (“Personal Data”) is true, accurate, and complete. You hereby consent to TechConnect's collection, use, and processing of your Personal Data for purposes related to the administration of your job application. These purposes include, but are not limited to: - assessing your suitability for the position you applied for or other relevant opportunities within the TechConnect Group and subsidiaries, - communicating with you throughout the recruitment process, - conducting background checks and verifying the information you have provided, - arranging interviews, making hiring decisions, and where appropriate, issuing an employment offer. Your Personal Data will not be shared with or disclosed to external parties without your prior consent, except where required by law. All Personal Data will be retained only for as long as necessary to fulfill the purposes for which it was collected or as otherwise permitted under applicable laws.

See also