Information Security Engineer

Job not on LinkedIn

🕒 April 1

🇹🇷 Turkey – Remote

⏰ Full Time

🟡 Mid-level

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

👻 Ghost score 49%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Insider One

Insider One

1001 - 5000 employees

Founded 2012

📣 Marketing

💼 Consulting

☁️ SaaS

💰 $500M Series E on 2024-12

Marketing • Consulting • SaaS

Insider One is an AI-native customer engagement and personalization platform delivered as SaaS. It provides a unified customer data platform (CDP), personalization, journey orchestration, reporting/analytics, and behavioral insights, and connects to 100+ integrations to support multichannel marketing across web, email, mobile apps, site search, SMS/RCS, WhatsApp, push, and conversational CX. The platform targets marketing and customer engagement teams at enterprise and e-commerce brands to improve engagement, conversions, and lifetime value.

📋 Description

• Drive implementation, maintenance, and continuous improvement of the ISO 27001 Information Security Management System, including control maturity tracking and audit readiness • Support SOC 2 Type II compliance through control implementation, evidence collection, and audit coordination • Conduct and document internal audits, manage findings, and follow up on remediation plans • Own and evolve the company-wide risk management program, including risk register, scoring, risk acceptance, and exception processes • Provide governance and security oversight for AWS environments, including cloud security posture, access controls, and configuration baselines • Collaborate with Red and Blue Teams to track, prioritize, and close technical security findings • Maintain, update, and enforce security policies, standards, and procedures • Design and execute role-specific security awareness and training programs • Lead third-party/vendor security assessments, risk evaluation, tiering, and continuous monitoring • Support and coordinate security incident handling, reporting, and post-incident reviews • Contribute to data protection and privacy governance, including KVKK, GDPR, DPIA processes, and data lifecycle management • Drive AI/LLM governance, including secure usage policies, data exposure controls, and risk assessments • Advise business units and engineering teams on secure architecture, design reviews, and risk-based decisions • Contribute to security architecture, threat modeling, and secure design guidance • Coordinate and improve business continuity and disaster recovery processes, including testing and documentation • Collaborate with engineering, DevOps, auditors, external stakeholders, and other departments in agile teams

🎯 Requirements

• Strong knowledge of ISO 27001, ISMS processes, internal audits, and control frameworks • Hands-on experience with risk identification, scoring, and mitigation tracking • Experience in Business Continuity Management and disaster recovery planning • Solid understanding of AWS services and cloud security governance, including IAM, logging, and baseline hardening • Familiarity with SOC 2 Type II framework and control domains • Understanding of data classification, data inventory, and data protection mechanisms • Experience with vendor security and third-party risk management • Knowledge of KVKK and GDPR, including practical implementation • Familiarity with AI/LLM risks and governance concepts is a strong plus • Strong documentation and reporting skills for audits, compliance, and executive visibility • Experience responding to customer security questionnaires and audits • Strong analytical thinking and ability to assess technical and business risks • Ability to own security domains and drive initiatives end-to-end • Excellent written and verbal communication skills in English • Strong collaboration with technical and non-technical teams • Ability to communicate business impact of security decisions • Ability to evaluate security posture across cloud, application, endpoint, and data layers • Ability to act as a trusted advisor and consultant to internal stakeholders • Proactive mindset focused on continuous improvement • Willingness to provide on-call support for security-related incidents when necessary • Ownership of security projects from planning through closure • Ability to track, validate, and close findings from audits, penetration tests, and internal reviews • Experience with ticketing systems such as Jira • Ability to communicate clearly with internal teams, auditors, and external stakeholders

🏖️ Benefits

• Monthly meal allowance • Comprehensive private health insurance • Access to Spotify, LinkedIn Learning, Blinkist, MasterClass, Neoskola, and CloudGuru • Internal training in AI fundamentals, coding, foreign languages, and personal development skills • Eligibility-based ESOP share ownership • Referral bonuses • Volunteering and purpose-driven social impact opportunities • Global retreats and team-building activities • Tech & Dev Talks • Fully remote setup, allowing work from anywhere in Turkey

Apply Now

Similar Jobs

🕒 January 26

Swapcard

201 - 500

💼 Consulting

📣 Marketing

📦 Logistics

Security Engineer improving AWS security configurations and managing security tools for Swapcard’s AI-powered event platform. Collaborating with IT and DevOps for vulnerability and incident management.

AWS

Cloud