Cybersecurity and Compliance Engineer developing security policies for banking compliance at Trendyol Tech. Protecting sensitive information while ensuring that security protocols align with regulations.
Responsibilities
Develop, implement, and maintain security policies, standards, guidelines, and procedures.
Identify and assess security risks, create action plans, and monitor their implementation.
Ensure compliance with BDDK, TCMB, KVKK, GDPR, PCI-DSS, ISO 27001, and other relevant regulations.
Participate in and support periodic audits, compliance assessments, and control activities.
Contribute to security awareness programs.
Monitor and manage third-party/vendor-related security risks.
Conduct security assessments and technical reviews for new features.
Apply strong expertise in data security, including DLP, DAM, data encryption, and data classification.
Provide guidance on secure architecture design across IT infrastructure layers.
Stay current with industry trends, security standards, and technology advancements.
Requirements
Proven experience in the banking/financial sector, with familiarity with BDDK regulatory requirements.
Strong knowledge of security risk management, security architecture, and data security solutions.
In-depth understanding of operating systems, network infrastructure, firewalls, and database security.
Familiarity with international compliance and security frameworks (ISO 27001, NIST, PCI-DSS, GDPR, KVKK).
Demonstrated ability to design security solutions to address business challenges in a regulated environment.
Excellent analytical thinking, communication, and presentation skills.
Strong problem-solving and consultative approach.
Benefits
Hybrid working model with flexibility: a schedule that helps you find the right balance between flexibility and team bonding, including work-from-abroad opportunities and a summer working model.
Customisable FlexBenefits budget: Adjust your daily meal allowance, choose your health insurance package (and extend it to your spouse or children), and pick from additional benefits like fuel support or Trendyol shopping credits.
Well-being support: Access to location-based in-house doctors, as well as psychologist and dietitian support, and HPV vaccination provision.
Personalised training allowance and learning opportunities: Use your annual budget for any training or conference of your choice, explore our Learning Management System (LMS) anytime, and join in-person learning sessions offered throughout the year.
Responsibility from day one: Take full ownership from the start in a culture where every voice is heard and valued.
A diverse, international team: Collaborate with global peers across our offices in Berlin, Amsterdam, Dubai, and beyond, in a startup-spirited and collaborative environment.
Opportunities to grow with the best: Tackle meaningful challenges, develop through hands-on experience, and grow with the support of expert guidance and global mentoring.
Meaningful connections beyond tasks: Be part of team rituals, events, and social activities that help us stay connected and inspired.
IT Consultant specializing in Security Engineering, working on national and international IT Security projects. Responsible for identifying security vulnerabilities and assisting customers' Security Management.
IT Info Security Specialist managing ERIE's information security program to protect digital assets. Collaborating with various teams to enforce security measures and resolve identity access issues.
CISA Auditor Cyber Security at an international bank, planning and conducting IT audit examinations, focusing on cyber threats. Requires IT auditing experience and a Master in Information Systems or Engineering.
Security Engineer responsible for managing cyber risk remediation measures at Tiime startup in Paris. Collaborating with product teams to ensure application security and risk evaluation.
Cybersecurity Engineer managing complex IT environments and providing support for clients. Involved in cloud, cybersecurity, and managed services within a dynamic startup environment.
Information Security Consultant at heyData supporting businesses in compliance with DORA and ISO 27001. Engaging with clients and enhancing security offerings in a dynamic startup environment.
Information Security Manager at NVISO, leading cybersecurity initiatives and managing a team of consultants. Focused on enhancing clients’ security posture through strategic program implementation.
Senior Cyber Security Consultant working to enhance software development security for diverse clients. Collaborating with major international firms while leading projects in secure application development.
Information Security Officer at Specialty Systems supporting cybersecurity for Navy systems. Role involves RMF implementation, vulnerability management, and collaboration with technical teams.