Lead, DevSecOps Engineer

Ajaibยท Engineering
Apply Now โ†—
๐Ÿ“ Jakarta, Jakarta, IndonesiaFull time

About this role

As a DevSecOps Engineer, you will bridge the gap between development, operations, and information security. Reporting to the Application Security Lead, you will architect, maintain, and scale security automation across our software development lifecycles (SDLC). Your primary mandate is to shift security left by embedding SAST, DAST, and SCA tools directly into modern CI/CD pipelines, eliminating security bottlenecks and ensuring continuous code compliance.

Key Responsibilities

  • Pipeline Security Automation: Integrate and manage static, dynamic, and software composition analysis tools into continuous integration and continuous deployment (CI/CD) pipelines.
  • Tooling Optimization: Own, configure, and fine-tune AppSec platforms including Checkmarx, Semgrep, Snyk, and SonarQube to minimize false positives and maximize actionable alerts.
  • Automated & Manual DAST: Configure automated dynamic scanners and leverage Burp Suite Professional for targeted security testing on APIs and web services.
  • Vulnerability Remediation & Triage: Act as the primary technical point of contact to triage code vulnerabilities, providing clear remediation guidance and proof-of-concept fixes directly to engineering teams.
  • Open Source Security (SCA): Utilize Snyk and similar tools to monitor open-source dependencies, license compliance, and third-party software supply chain vulnerabilities.
  • Policy Enforcement: Define automated gatekeeping thresholds (e.g., failing builds for critical/high vulnerabilities) within the deployment pipeline based on internal security policies.
  • Experience: 4+ years of experience in DevOps, software engineering, or application security, with at least 2+ years dedicated exclusively to DevSecOps practices.
  • Tooling Command: Proven, deep technical proficiency with the following tools:
    • SAST: Checkmarx, Semgrep, SonarQube
    • SCA & Container Security: Snyk
    • DAST / Pen-testing: Burp Suite Professional
  • CI/CD Ecosystems: Extensive experience building automation plugins and pipelines in GitHub Actions, GitLab CI, Jenkins, or Bitbucket Pipelines.
  • Infrastructure as Code (IaC): Solid understanding of cloud-native infrastructure, containerization (Docker, Kubernetes), and secure IaC deployment (Terraform).
  • Development Background: Ability to read and understand code snippets across multiple languages (e.g., Python, Java, Go, Node.js).
  • Certifications: Certifications such as Certified DevSecOps Professional (CDP), Practical DevSecOps (CDEP), or CSSLP are highly preferred
  • Performance Bonus - Get rewarded for the impact you make
  • Private Insurance - Comprehensive health coverage for youย 
  • Paid Time Off - Take the time you need to recharge and come back stronger
  • Learning & Development - Company-sponsored training, courses, and professional certifications
  • Hybrid Work Arrangement - Enjoy the flexibility of working both remotely and from the office
  • Career Growth - Work closely with experienced leaders and take on meaningful ownership as we scale
  • Employee Perks - Enjoy exclusive discounts, partnerships, and lifestyle perks
  • Collaborative & High-Ownership Culture - Work with smart, driven people in cross-functional teams, take ownership, and make a meaningful impact for our users.

Frequently Asked Questions

Is the salary disclosed for the Lead, DevSecOps Engineer position at Ajaib?
The salary for this Lead, DevSecOps Engineer role at Ajaib is not publicly listed. Click "Apply Now" to learn more about the compensation package on their official careers page.
Where is the Lead, DevSecOps Engineer position at Ajaib located?
This Lead, DevSecOps Engineer role at Ajaib is based in Jakarta, Jakarta, Indonesia. The position is listed as on-site or hybrid. Check the full job description or apply directly to confirm the work arrangement.
Is the Lead, DevSecOps Engineer role at Ajaib full-time or part-time?
This is listed as a Full time position. It is posted as a Lead, DevSecOps Engineer role in the Engineering department at Ajaib.
Which team or department does the Lead, DevSecOps Engineer at Ajaib belong to?
This Lead, DevSecOps Engineer position is part of the Engineering department at Ajaib. See the full job description for more information about the team structure and responsibilities.
How do I apply for the Lead, DevSecOps Engineer position at Ajaib?
Click the "Apply Now" button on this page. You will be redirected to Ajaib's official application portal hosted on workable where you can submit your application directly.
When was the Lead, DevSecOps Engineer job at Ajaib posted?
This Lead, DevSecOps Engineer position at Ajaib was posted on Jun 15, 2026. Apply as soon as possible โ€” early applications are often reviewed first.
Lead, DevSecOps Engineer
Ajaib
Apply for this role โ†—

You'll be redirected to Ajaib's official application page on workable.