CareerPlanSign in

Information Security Engineer (Remote)

Istanbul, Turkiye🌐 Remote💼 Full-time🗓 2026-03-31 → 2026-09-26

Core

Drive ISO 27001 ISMS implementation, SOC 2 Type II compliance, and enterprise-wide risk management for a global B2B SaaS platform.

Role type

Senior Information Security Engineer (Governance & Compliance)

Builds

ISO 27001 compliant security management systems and SOC 2 Type II certified controls

Domain

B2B SaaS / Marketing Technology / Cloud Security

Deliverable

production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work

Required skills

ISO 27001 ISMS, SOC 2 Type II, Risk Management, AWS Cloud Security, Business Continuity Management (BCM), Vendor Security Assessments, GDPR/KVKK Compliance, AI/LLM Governance, Threat Modeling, Security Architecture Review

Preferred skills

AI/LLM risk governance, Data Protection mechanisms, Incident Response coordination

Technologies

AWS, ISO 27001, SOC 2, KVKK, GDPR

Responsibilities

Drive ISO 27001 ISMS implementation and maintenance; Support SOC 2 Type II compliance efforts; Conduct internal audits and manage remediation; Own the company-wide risk management program; Provide governance and security oversight for AWS environments; Collaborate with Red/Blue teams to close technical findings; Design and execute security awareness training programs; Lead third-party/vendor security assessments; Support security incident handling and post-incident reviews; Contribute to data protection and privacy governance (GDPR, KVKK); Drive AI/LLM governance practices; Act as a security consultant for secure architecture and design reviews; Coordinate business continuity and disaster recovery (BCP/DR) processes.

Seniority

Senior, hands-on IC

Sourced via lever · Listed on CareerPlan, which tracks 70,000+ jobs from 20+ sources.