What You Will Do
- Drive the implementation, maintenance, and continuous improvement of the ISO 27001 Information Security Management System (ISMS), including control maturity tracking and audit readiness
- Support SOC 2 Type II compliance efforts, including control implementation, evidence collection, and audit coordination
- Conduct and document internal audits, manage findings, and follow up on remediation plans across teams
- Own and evolve the company-wide risk management program, including risk register, scoring methodology, risk acceptance, and exception processes
- Provide governance and security oversight for AWS environments, including cloud security posture, access controls, and configuration baselines
- Collaborate with Red Team and Blue Team to track, prioritize, and close technical security findings
- Maintain, update, and enforce security policies, standards, and procedures across the organization
- Design and execute security awareness and training programs tailored to different roles (engineering, ops, business)
- Lead third-party/vendor security assessments, including risk evaluation, tiering, and continuous monitoring
- Support and coordinate security incident handling, reporting, and post-incident review processes
- Contribute to data protection and privacy governance (KVKK, GDPR), including DPIA processes and data lifecycle management
- Drive AI / LLM governance practices, including secure usage policies, data exposure controls, and risk assessments for AI tools
- Act as a security consultant to business units and engineering teams, supporting secure architecture, design reviews, and risk-based decision making
- Contribute to security architecture and design review processes, including threat modeling and secure design guidance
- Coordinate and enhance business continuity and disaster recovery (BCP/DR) processes, including testing, documentation, and continuous improvement
What You Will Need
- Strong knowledge of ISO 27001, ISMS processes, internal audits, and control frameworks
- Hands-on experience with risk management practices, including risk identification, scoring, and mitigation tracking
- Experience in Business Continuity Management (BCM) and disaster recovery planning
- Solid understanding of AWS services and cloud security governance, including IAM, logging, and baseline hardening
- Familiarity with SOC 2 Type II framework and control domains
- Understanding of data security concepts, including data classification, data inventory, and data protection mechanisms
- Experience with vendor security and third-party risk management processes
- Knowledge of privacy regulations such as KVKK and GDPR, including practical implementation
- Familiarity with AI/LLM risks and governance concepts is a strong plus
- Strong documentation and reporting skills for audits, compliance, and executive visibility
- Experience in responding to customer security questionnaires and audits
- Strong analytical thinking and ability to assess both technical and business risks
- Ability to take ownership of security domains and drive initiatives end-to-end
- Excellent written and verbal communication skills in English
- Strong collaboration skills with both technical (engineering, DevOps) and non-technical teams
- Ability to understand and communicate the business impact of security decisions
- Capable of evaluating the security posture across cloud, application, endpoint, and data layers
- Comfortable acting as a trusted advisor and consultant to internal stakeholders
- Proactive mindset with a focus on continuous improvement
- Willingness to provide on-call support for security-related incidents when necessary
- Ownership of security projects from planning to execution and closure
- Ability to track, validate, and close findings from audits, pentests, and internal reviews
- Experience working with ticketing systems (Jira, etc.) to manage security tasks and follow-ups
- Actively contributes to team collaboration, knowledge sharing, and process improvement
- Ability to communicate clearly with internal teams, auditors, and external stakeholders
- Maintains a positive and solution-oriented mindset in a fast-paced environment
What We Offer
- Enjoy a monthly meal allowance designed to enhance your daily routine.
- Access comprehensive private health insurance.
- Feed your curiosity with access to Spotify, LinkedIn Learning, Blinkist, MasterClass, Neoskola, and CloudGuru.
- Level up with internal trainings covering AI fundamentals, coding, foreign languages, and a wide range of personal development skills.
- Be part of a diverse team that’s as global as it gets, where every voice is heard and 50+ nationalities build together.
- Become a Shareowner through our eligibility-based “ESOP” and own a piece of what you build.
- Help build the team you want to work with and enjoy rewarding referral bonuses.
- Opportunities to give back to your community through volunteering and purpose-driven social impact projects.
- From global retreats to team-building activities, expect year-round events that turn into lifelong memories.
- Get inspired by the greatest minds in the tech industry through events like our Tech & Dev Talks.
- Work from anywhere in Turkey through our fully remote setup.
Skills Required
- Strong knowledge of ISO 27001, ISMS processes, internal audits, and control frameworks
- Hands-on experience with risk identification, scoring, mitigation tracking, risk acceptance, and exceptions
- Experience in business continuity management and disaster recovery planning
- Understanding of AWS services and cloud security governance, including IAM, logging, and baseline hardening
- Familiarity with the SOC 2 Type II framework and control domains
- Understanding of data classification, data inventory, and data protection mechanisms
- Experience with vendor security and third-party risk management
- Knowledge of privacy regulations including KVKK and GDPR, with practical implementation experience
- Strong documentation and reporting skills for audits, compliance, and executive visibility
- Experience responding to customer security questionnaires and audits
- Familiarity with AI and LLM risks and governance concepts
- Excellent written and verbal communication skills in English
- Experience working with ticketing systems such as Jira
- Willingness to provide on-call support for security-related incidents when necessary
Insider One Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Insider One and has not been reviewed or approved by Insider One.
-
Fair & Transparent Compensation — Pay sentiment trends generally positive overall, with pay described as competitive in some roles and markets. Recent role-specific ranges and compensation benchmarks suggest market-aligned pay bands in several functions.
-
Strong & Reliable Incentives — Bonus structures and performance-linked earnings potential appear to meaningfully increase total compensation, particularly in commercial roles. Variable pay and commission mechanics are portrayed as providing upside when targets are achieved.
-
Leave & Time Off Breadth — Time-off policies are described as generous, including an unlimited PTO approach and in some cases additional holiday time. Flexible working hours also contribute to perceived time-off and flexibility value.
Insider One Insights
What We Do
Insider One is the #1 platform that brings everything marketing and customer engagement teams need in one place so they can reach their peak potential and become unstoppable. With AI at its core and an integrated Customer Data Platform (CDP), Insider One unites data, personalization, and journey orchestration across the most extensive set of natively supported channels, including WhatsApp, SMS, Email, Web, App, and Site Search. Insider One provides the ultimate vendor experience, proven in fifteen industries and more than 30 countries for more than a decade, to help teams be first, be focused, and be progressive, redefining what it means to lead in customer engagement. Trusted by 2,000+ customers, including some of the world’s most loved brands like Samsung, L’Oréal, Unilever, Allianz, ING Group, Toyota, Singapore Airlines, and GAP, to accelerate growth, build customer love, and become a market leader. Loved by customers, recognized by analysts, Insider One is the only vendor recognized as the #1 leader in all the capabilities marketing and customer engagement teams need, including AI, Customer Data Management, Cross-Channel Journey Orchestration, and Personalization, offering brands unrivaled product excellence within a single consolidated platform. Accolades include: - Leader in the IDC MarketScape: Worldwide AI-Enabled Marketing Platforms for Enterprise Companies 2025 - Leader in the Gartner Magic Quadrant for Personalization Engines, 2025 - #1 Customer Choice: 2025 Gartner Voice of the Customer for Personalization Engines - Leader in the Forrester Wave for Experience Optimization Platforms, Q4 2024 - The Gartner Customers’ Choice for Multichannel Marketing Hubs in 2025 - The #1 G2 Leader in 11 categories, including CDP, Personalization Engines, Mobile Marketing, Customer Journey Analytics, SMS Marketing, WhatsApp Marketing, eCommerce Search, and eCommerce Personalization, with a perfect 100/100 user satisfaction score.








