Manage and improve network security, server security, endpoint security, and data protection processes.
Operate and enhance security technologies such as Firewall, IDS/IPS, WAF, DDoS protection, Web Proxy, EDR/XDR, Email Security, Sandbox, SIEM, DLP, and PAM.
Monitor security events, investigate incidents, coordinate remediation actions, and contribute to root cause analysis.
Perform risk assessments, business impact analysis, vulnerability follow-ups, and security control reviews.
Ensure compliance with relevant security standards and regulations such as KVKK, PCI DSS, ISO 27001, ITIL, COBIT, Law No. 5651, Law No. 6493, and payment systems information security requirements.
Take ownership of security policy implementation, configuration hardening, access control, logging, monitoring, and audit readiness across cloud, on-premise, and hybrid environments.
Support penetration testing, vulnerability management, audit, and third-party security review processes.
Follow emerging cybersecurity threats, translate them into practical security improvements, and prepare documentation/reports for stakeholders.
Requirements
Bachelor’s degree in Computer Engineering, Electrical/Electronics Engineering, Telecommunications Engineering, Information Systems, or related fields.
Minimum 5 years of experience in Network Security, Information Security, Cybersecurity Operations, IT Risk, or IT Audit.
Hands-on experience with Firewall, IDS/IPS, WAF, DDoS, VPN, Web Proxy, NAC, EDR/XDR, SIEM, DLP, or PAM technologies.
Strong knowledge of LAN/WAN, Routing & Switching, TCP/IP, IPSec/SSL VPN, VLAN, MPLS, NAT, BGP, and network segmentation.
Good understanding of regulatory frameworks (KVKK, PCI DSS, ISO 27001, ITIL, COBIT).
Good command of English.
Strong analytical thinking, ownership, communication, and cross-functional collaboration skills.
Holding certifications such as CCNP, CCSA, PCNSA, CEH, CISSP, CISM, CISA, ISO 27001 LA, or equivalent.