Cybersecurity and Compliance Engineer developing security policies for banking compliance at Trendyol Tech. Protecting sensitive information while ensuring that security protocols align with regulations.
Responsibilities
Develop, implement, and maintain security policies, standards, guidelines, and procedures.
Identify and assess security risks, create action plans, and monitor their implementation.
Ensure compliance with BDDK, TCMB, KVKK, GDPR, PCI-DSS, ISO 27001, and other relevant regulations.
Participate in and support periodic audits, compliance assessments, and control activities.
Contribute to security awareness programs.
Monitor and manage third-party/vendor-related security risks.
Conduct security assessments and technical reviews for new features.
Apply strong expertise in data security, including DLP, DAM, data encryption, and data classification.
Provide guidance on secure architecture design across IT infrastructure layers.
Stay current with industry trends, security standards, and technology advancements.
Requirements
Proven experience in the banking/financial sector, with familiarity with BDDK regulatory requirements.
Strong knowledge of security risk management, security architecture, and data security solutions.
In-depth understanding of operating systems, network infrastructure, firewalls, and database security.
Familiarity with international compliance and security frameworks (ISO 27001, NIST, PCI-DSS, GDPR, KVKK).
Demonstrated ability to design security solutions to address business challenges in a regulated environment.
Excellent analytical thinking, communication, and presentation skills.
Strong problem-solving and consultative approach.
Benefits
Hybrid working model with flexibility: a schedule that helps you find the right balance between flexibility and team bonding, including work-from-abroad opportunities and a summer working model.
Customisable FlexBenefits budget: Adjust your daily meal allowance, choose your health insurance package (and extend it to your spouse or children), and pick from additional benefits like fuel support or Trendyol shopping credits.
Well-being support: Access to location-based in-house doctors, as well as psychologist and dietitian support, and HPV vaccination provision.
Personalised training allowance and learning opportunities: Use your annual budget for any training or conference of your choice, explore our Learning Management System (LMS) anytime, and join in-person learning sessions offered throughout the year.
Responsibility from day one: Take full ownership from the start in a culture where every voice is heard and valued.
A diverse, international team: Collaborate with global peers across our offices in Berlin, Amsterdam, Dubai, and beyond, in a startup-spirited and collaborative environment.
Opportunities to grow with the best: Tackle meaningful challenges, develop through hands-on experience, and grow with the support of expert guidance and global mentoring.
Meaningful connections beyond tasks: Be part of team rituals, events, and social activities that help us stay connected and inspired.
IT & Cybersecurity Intern assisting with help desk support and IT system maintenance at OBDeleven. Collaborating with teams and improving IT documentation in a fun workplace culture.
Werkstudent supporting information security management and business continuity projects for Syneco's energy operations. Engaging in the development and upkeep of management systems and reporting tools.
Security Consultant providing IT - Security Consulting by leveraging knowledge and skills to assist clients. Involved in diverse projects from analysis to execution and results presentation.
Lead functional safety for product development in PEM electrolyzers at Quest One. Collaborate with teams and support certification processes in the field of green hydrogen technology.
Consultant specializing in Cyber & Product Security for clients in a hybrid role. Focused on implementing security strategies and conducting assessments with a collaborative approach.
(Senior) Consultant in Automotive - & Product Security at Wavestone, focusing on cyber security solutions for clients in innovative projects. Collaborative work in a vibrant team environment across multiple German cities.
Information Security Manager focusing on risk management for Xecuro GmbH. Implementing and optimizing risk management processes within a technological environment in Bonn.
Teamlead position for Security Governance & Assurance at Xecuro GmbH in Bonn. Leading team and implementing information security management systems (ISMS).
Information Security Expert working on safe digital solutions, ensuring compliance and conducting risk assessments. Join Xecuro GmbH in shaping Germany's digital future with innovative security measures.
Lead ISSO ensuring security compliance for multi - tenant cloud and hybrid environments at Agile Defense. Responsible for vulnerability analyses and risk management decision - making expertise.