About this role
Ensign is hiring ! Security Engineer — Cloud & App Location: Jakarta (onsite) | Reports to: Security Engineering Manager Role Summary Owns implementation and operation of the cloud and application security domain: cloud-native application protection and web application firewalling. The most explicitly cloud-first of the domain roles. Key Responsibilities
• operate CNAPP: CSPM, workload and container protection
• operate WAF: rule tuning, bot/DDoS mitigation, app onboarding
• Assess and remediate cloud misconfigurations and application-layer risk
• Integrate CNAPP/WAF findings into SIEM/SOAR workflows
• Partner with DevOps/cloud teams on secure-by-design practices
• Maintain cloud & app domain documentation and standards Requirements
• 3-5+ years in cloud security engineering (AWS/Azure/GCP)
• Hands-on experience with CNAPP/CSPM and WAF platforms
• Strong understanding of cloud-native application architectures
• Cloud security background required — not traditional infrastructure security
• Cloud security certification (CCSP, cloud provider security cert) preferred
• Jakarta-based; onsite