Overview

Information Security Officer Jobs in Jakarta, Indonesia at OSL Indonesia

Title: Information Security Officer

Company: OSL Indonesia

Location: Jakarta, Indonesia

Role Overview

The Information Security Officer (ISO) is responsible for establishing, maintaining, and continuously improving the information security posture of OSL's Indonesia operations. This role owns local security governance, risk management, compliance with Indonesian regulatory requirements (including OJK/Bappebti and PDP Law obligations), and day-to-day security operations. The ISO acts as the primary local point of contact for security matters and works closely with the group security team, regulators, and business stakeholders.

Key Responsibilities

  • Develop, implement, and maintain the local information security strategy, policies, standards, and procedures aligned with group frameworks and Indonesian regulatory requirements.
  • Lead information security risk assessments across systems, applications, and third-party vendors; track remediation to closure.
  • Oversee security operations including threat monitoring, vulnerability management, incident detection, and response for the Indonesia entity.
  • Manage security incidents end to end, including containment, investigation, regulatory notification, and post-incident review.
  • Ensure compliance with applicable regulations and standards (e.g., Indonesian PDP Law, OJK/Bappebti requirements, ISO 27001, SOC 2).
  • Coordinate internal and external security audits, penetration tests, and assessments; manage findings and evidence.
  • Drive security awareness training and a security-first culture across local staff.
  • Support onboarding of new products and services with security-by-design reviews.
  • Serve as the local liaison with regulators, auditors, and the group security and compliance teams.
  • Maintain and test business continuity and disaster recovery plans from a security perspective.

Required Qualifications

  • Bachelor's degree in Information Security, Computer Science, Information Technology, or a related field.
  • Minimum 3–5 years of experience in information security, with at least 2–3 years in a security role.
  • A recognized information security certification such as CISSP is mandatory (equivalent certifications such as CISM or CCSP will be considered).
  • Strong working knowledge of security frameworks and standards (ISO 27001, NIST CSF, SOC 2).
  • Demonstrated experience with Indonesian data protection and financial-sector regulatory requirements (PDP Law, OJK/Bappebti).
  • Hands-on experience with security operations: SIEM, vulnerability management, IAM, cloud security, and incident response.
  • Excellent communication skills in English and Bahasa Indonesia.

Preferred Qualifications

  • Experience in a regulated fintech, banking, exchange, or digital asset/crypto environment.
  • Additional certifications (CISM, CCSP, CEH, ISO 27001 Lead Auditor/Implementer).
  • Familiarity with blockchain, custody, and digital asset security concepts (e.g., key management, wallet security).
  • Experience working across cloud platforms (AWS, GCP, or Azure).

About US

OSL is the first SFC-licensed digital asset platform in Hong Kong, building next-generation payment infrastructure through stablecoin settlement, cross-border payments, and global licensing. We hold licences across Hong Kong, Japan, Australia, Bermuda, and Indonesia, with active expansion into Europe, Brazil, Southeast Asia, and Africa. Join us in shaping compliant, global payment infrastructure.

Upload your CV/resume or any other relevant file. Max. file size: 800 MB.