Information Security Specialist İş İlanı

İşveren Hakkında
  • İstanbul(Avr.)(Sarıyer)
  • Bilgi Teknolojileri

GENEL NİTELİKLER

The foundation of YILDIRIM Group dates back to 1963, when Garip YILDIRIM established GARIP YILDIRIM & SONS in Samsun, Turkey. Since its founding, the company has continuously broadened its focus through new subsidiaries by entrepreneurism and constant innovation, evolving into an industrially diversified group of companies as well as one of the fastest-growing Turkish industrial groups.

Since 2008, when YILDIRIM Group made its first international acquisition in Sweden, the company has grown to become a global force based in Istanbul, Turkey, with operations in 9 sectors in 51 countries on 5 continents. YILDIRIM Group of Companies employ more than 13,000 people around the globe.

For our growing organization, we are looking for a “Information Security Specialist” to be based in YILDIRIM Group of Companies.

General Description:

  • University degree preferably in Industrial Engineering, MIS Computer Engineering, Electronics Engineering or similar disciplines,
  • Min. 3 years of work experience in cyber security
  • Experience of ISO 27001, ISO 27019, ISO 20000, ISO 22301, ISO 27701, COBIT, ITIL and PCI-DSS will be an asset
  • CISSP, CISA, CISM, ISO 27001 LA, ISO 20000 LA, ISO 22301 LA, ISO 27701 LA, COBIT, ITIL certificates will be an asset,
  • Knowledge of Risk Assessment and Risk Treatment methodology, DLP systems,
  • Knowledge of regulations such as KVKK and GDPR
  • Knowledge on core IT processes, security of operating systems, network infrastructure, database and software development,
  • SAP Security Baseline experience will be an asset,
  • Excellent command of both written and spoken English,
  • Excellent communication and coordination skills,
  • No restrictions to travel.


Job Description:

  • Responsible for managing DLP rules / threshold values, monitoring incidents, tracking KPI’s, preparing reports to the relevant teams,
  • Responsible for the implementation and continous improvement of KVKK technical measures within the Company,
  • Information Security Management, IT Risk Management, IT Control Management, IT Audit, Information Security Incident Management, Business Continuity Management, privacy and compliance,
  • Design the internal controls (DLP, URL Filtering, Data Classification etc.) to ensure compliance to security policies and procedures,
  • Conducting and reporting supplier audits with an information security perspective,
  • Analyze and response information security incidents, plan the required actions,
  • Responsible for information security awareness campaigns and trainings.