Logo
Cybersecurity

Indonesia’s Cybersecurity Talent Problem Is Becoming a Skills Problem

cybersecurity indonesia
cyber security indonesia
cybersecurity di indonesia
cyber security di indonesia
cybersecurity in indonesia
cyber security in indonesia

Hiring more people helps. But if they freeze when the alert turns real, the headcount doesn’t mean much.

ITSEC AsiaITSEC Asia
|
Sep 01, 2026
Indonesia’s Cybersecurity Talent Problem Is Becoming a Skills Problem

Indonesia needs more cybersecurity professionals. That part is obvious. What is becoming less obvious is whether the real problem is still about numbers.

The 2026 SANS | GIAC Cybersecurity Workforce Research Report found that 60% of surveyed organizations said their teams lacked the right skills to defend against current threats. More concerning, 27% reported breaches directly linked to capability gaps.

That changes the conversation. A company can have a security team, a dashboard full of alerts and a stack of expensive tools. The harder question is whether the people behind them know what to do when something unusual happens.

Cybersecurity Work Is Moving Fast

Artificial intelligence is making that question harder.

AI can already help with alert analysis, vulnerability prioritization and repetitive investigation tasks. Attackers can use the same technology to make attacks faster and easier to scale.

In August 2026, Vice Minister of Communication and Digital Affairs Nezar Patria warned that agentic AI could allow cyberattacks to operate with less direct human involvement. He also highlighted threats such as harvest now, decrypt later, where encrypted information stolen today could potentially be decrypted using more advanced computing in the future.

That means knowing how to operate a security tool is becoming the baseline, not the finish line.

Security teams increasingly need people who can:

  • Investigate unusual activity and decide what actually matters
  • Understand attacker behavior instead of trusting every automated alert
  • Work across cloud, endpoint, identity and network environments
  • Use AI-assisted tools without blindly accepting their output
  • Make decisions when an incident doesn’t follow the textbook

The uncomfortable part is that these skills are difficult to build from slides and theory alone.

AI Is Also Changing How Juniors Learn

Junior cybersecurity professionals have traditionally learned by doing repetitive operational work: reviewing alerts, investigating simpler cases and documenting incidents.

That work may not be glamorous, but it builds judgment.

SANS notes that AI is beginning to automate some of the same entry-level tasks that have historically helped train new cybersecurity professionals. If that trend continues, junior talent may get fewer chances to learn through routine work before they are expected to handle harder problems.

So training has to compensate.

Cyber ranges, simulations and scenario-based exercises can give people something a slide deck cannot: the experience of making a decision when the situation is messy and the answer is not immediately obvious.

Indonesia Needs More Talent. It Also Needs More Ready Talent.

Komdigi estimates that Indonesia will need around nine million digital talents by 2030, while the current supply stands at roughly three million.

Closing that gap matters. But counting course graduates or certifications alone will not tell us whether the workforce is ready.

A stronger measure is capability.

Can someone investigate an alert? Can they recognize suspicious behavior? Can they explain what happened? Can they respond without waiting for someone else to tell them what to do?

This is the gap that ITSEC Cyber & AI Academy is designed to address, combining cybersecurity learning with practical exercises, realistic scenarios and experience drawn from ITSEC Asia’s security operations.

As AI takes over more routine work, human judgment becomes more valuable, not less.

Indonesia needs more cybersecurity talent.

The next challenge is making sure that talent can actually do the job.

Explore practical cybersecurity and AI training at ITSEC Cyber & AI Academy: www.itsec.academy

Share this post

You may also like

Calculating the Cost of Securing Your Business
Cybersecurity

Calculating the Cost of Securing Your Business

Tips

As the strategic importance of information security continues to grow for organizations of all sizes, and the complexity of information security increases across industries, business decisions are increasingly driven by the need to protect their intellectual assets and safeguard their IT infrastructure from evolving cybersecurity threats. Securing customer records, protecting sensitive financial information, and complying with regulatory requirements can create significant pressures on IT decision-makers and their resources. While many organizations have traditionally outsourced critical elements of their IT operations to managed service providers, more and more businesses are proactively outsourcing their security functions to specialized information security service providers. This has led to a need for evaluating the benefits of outsourcing security elements and comparing them to managing these processes internally. I wrote this article to help business leaders understand the best way to approach Managed Security Service Providers (MSSPs) in the context of Total Cost Ownership (TCO), a subject that is frequently discussed and of interest to both technical and non-technical leaders. INTERNAL SOLUTIONS OR OUTSOURCING? The key to evaluating

ITSEC AsiaITSEC Asia
|
Jul 10, 2023 8 minutes read
A Guide to CSOC
Cybersecurity

A Guide to CSOC

Hacks

CSOC stands for Cyber Security Operation Center, but it can be a bit confusing because CSOC teams can also be referred to as Computer Security Incident Response Teams (CSIRT), Computer Incident Response Centers (CIRC), Security Operations Centers (SOC), or Computer Emergency Response Teams (CERT). For the purpose of this article, we will stick to the term CSOC. CSOC works in defense to combat unauthorized activities occurring in strategic networks. Its activities include monitoring, detection, analysis, response, and restoration. CSOC is a team of network security analysts organized to detect, analyze, respond to, report, and prevent network security incidents 24/7, 365 days a year. There are various types of CSOCs categorized based on their organizational and operational models, so let's delve deeper and take a closer look at the different types of CSOCs. Virtual CSOC: As the name suggests, this type of operation often lacks dedicated facilities, and team members work periodically using a reactive approach to cyber threats. I believe that the reactive capabilities of virtual CSOCs cannot be sustained

ITSEC AsiaITSEC Asia
|
Jul 10, 2023 7 minutes read
Why Threat Hunting Is the Only Way to Stop Attackers Who Are Already Inside
Cybersecurity

Why Threat Hunting Is the Only Way to Stop Attackers Who Are Already Inside

INTRODUCTION Here is a question every security leader should sit with: if an attacker entered your network six months ago, would you know? According to IBM's Cost of a Data Breach Report 2024, the average time to identify a breach now stands at 194 days, nearly half a year of undetected attacker activity operating freely within enterprise infrastructure. Prevention tools, no matter how sophisticated, have already demonstrated they cannot close that window on their own. Firewalls, antivirus software, and multi-factor authentication are necessary. They are not sufficient. The organizations that understand this distinction are the ones investing in threat hunting: the proactive, intelligence-driven practice of searching for adversaries who have already bypassed the perimeter and are operating in silence. ITSEC Asia, the cybersecurity leader in Indonesia with operations across Singapore, Australia, and the UAE, works with organizations across these regions to build this exact capability before the next breach makes it urgent. Sources: IBM Cost of a Data Breach Report 2024 [https://www.ibm.com/reports/data-breach] THE GAP THAT REACTIVE SECURITY CANNOT CLOSE The fundamental flaw in

|
Mei 12, 2026 5 minutes read

Receive weekly
updates on new posts

Subscribe