Senior Cyber Security Engineer

2 Hours ago • 4-8 Years • Cyber Security

About the job

Job Description

Roof Stacks seeks a Senior Cyber Security Engineer to lead and oversee their application security program. Responsibilities include directing application security initiatives, supporting platform teams, managing vulnerability management, championing secure development practices, maintaining robust security architecture, implementing threat modeling, enhancing security tools within the CI/CD pipeline, organizing penetration testing, ensuring secure cloud configurations (AWS, Google Cloud, Azure), developing secure practices for containerized applications, leading incident response, and conducting regular security audits. The ideal candidate will have extensive experience in application security, strong communication skills, deep knowledge of OWASP Top 10, cloud security expertise, penetration testing proficiency, and relevant certifications.
Must have:
  • Extensive application security experience (SaaS)
  • Strong communication & collaboration skills
  • Deep knowledge of OWASP Top 10 & secure coding
  • Cloud security expertise (AWS, GCP, Azure)
  • Penetration testing proficiency
  • Vulnerability management experience
Good to have:
  • SIEM experience
  • Containerization & cloud-native security tools
  • Relevant certifications (CISSP, etc.)
  • Incident response experience
As Roof Stacks, we have been carrying out innovative projects since 2015. We aim to become a global actor in Tourism Systems, Extended Reality(AR/VR), Blockchain Technologies, Game Development, and Financial Technology, which are our areas of expertise.

We focus on creating a difference with the technologies we develop and designing the future. In addition to our central office in Ataşehir/İstanbul, we have branches in Antalya and Elazığ in Turkey.

We have strengthened our position in the global market by opening a new office in Austin, USA, which hosts world technology giants from all over the world.

Job requirements:

Requirements:
• Extensive experience leading application security teams, preferably within SaaS environments.
• Exceptional communication and interpersonal abilities, capable of effectively collaborating with multidisciplinary teams.
• Advanced analytical and management skills.
• Deep knowledge of common application security risks, such as those listed in the OWASP Top 10, and best practices in secure coding.
• Expertise in cloud security services across AWS, Google Cloud, and/or Azure, including IAM, key management, and secure networking practices.
• Proficiency with penetration testing tools and techniques.
• Experience in Security Incident management and/or operating within a SOC (Security Operations Center), including familiarity with SIEM systems, is advantageous.
• Familiarity with containerization and cloud-native security tools (e.g., AWS Security Hub, Google Security Command Center, Azure Defender).
• Relevant professional certifications (e.g., CISSP, CISM, SANS GIAC, OSCP, AWS Security Specialty, Google Professional Cloud Security Engineer) are beneficial.
• Proficient in both written and spoken English.
• Prior remote work experience is not mandatory but is considered an asset.

Key Responsibilities:

Key Responsibilities:
• Direct and oversee the application security program, ensuring it aligns with the broader Security strategy.
• Support the platform team in their day-to-day operations, projects, and personal development through guidance and mentorship.
• Manage the vulnerabilities management process in close collaboration with the Engineering teams, providing important metrics to the Security Director.
• Champion the adoption of Secure Development Life Cycle practices within the Platform Engineering team.
• Maintain robust security architecture across Platform, Data, Development, and Product teams.
• Implement threat modeling practices into product design and development processes.
• Aid in the enhancement and upkeep of security tools used in the CI/CD pipeline.
• Organize and facilitate penetration testing activities, including defining the scope, planning, and analyzing outcomes.
• Collaborate with infrastructure and cloud teams to ensure secure configurations across multi-cloud environments, including AWS, Google Cloud, and Azure.
• Develop and implement security best practices for containerized applications and orchestration tools (Docker, Kubernetes, GKE, AKS).
• Provide leadership in incident response processes, ensuring robust cloud-based security incident management and recovery procedures.
• Conduct regular audits of cloud security configurations, ensuring compliance with industry standards and frameworks.
undefinedundefinedundefined
View Full Job Description

Add your resume

80%

Upload your resume, increase your shortlisting chances by 80%

About The Company

At Roofstacks, we are not content with simply innovating; we are committed to pushing the frontiers of technology. Since our establishment in 2015, we have skillfully integrated conventional systems with cutting-edge solutions, raising the standard in industries such as tourism, metaverse, AR, gaming, blockchain, and fintech.


İstanbul, İstanbul, Türkiye (Hybrid)

İstanbul, İstanbul, Türkiye (Remote)

İstanbul, İstanbul, Türkiye (Remote)

İstanbul, İstanbul, Türkiye (Hybrid)

İstanbul, İstanbul, Türkiye (Hybrid)

İstanbul, İstanbul, Türkiye (Remote)

İstanbul, İstanbul, Türkiye (Hybrid)

İstanbul, İstanbul, Türkiye (Hybrid)

İstanbul, İstanbul, Türkiye (Remote)

İstanbul, İstanbul, Türkiye (Hybrid)

View All Jobs

Get notified when new jobs are added by RoofStack

Similar Jobs

EPAM Systems - Senior Automation Tester in JavaScript

EPAM Systems, India (Remote)

Luxoft - Senior Data Engineer/Analyst

Luxoft, Switzerland (On-Site)

Luxoft - Senior PHP Developer

Luxoft, (Remote)

Sourcegraph  Inc  - Software Engineer - Dev Infra [IC3]

Sourcegraph Inc , United States (On-Site)

Sinch - Security Engineer

Sinch, Canada (Hybrid)

bosh group india - Data Protection and Information Security Officer

bosh group india, India (On_site)

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Get notifed when new similar jobs are uploaded

Jobs in İstanbul, İstanbul, Türkiye

Trendyol - Back Office Professionals

Trendyol, Türkiye (Hybrid)

Good Job Games - Junior Software Engineer

Good Job Games, Türkiye (On-Site)

Trendyol - Data Science Professionals - Trendyol GO

Trendyol, Türkiye (Hybrid)

Trendyol - Head of Retail FS & Domestic Payments

Trendyol, Türkiye (Hybrid)

IO Interactive - Producer

IO Interactive, Türkiye (On-Site)

USE Insider - Senior Software Engineer (Golang)

USE Insider, Türkiye (Remote)

Assystems - Civil Engineer

Assystems, Türkiye (On-Site)

USE Insider - Customer Success Manager (Arabic Speaker)

USE Insider, Türkiye (Hybrid)

Spyke Games - QA Specialist

Spyke Games, Türkiye (On-Site)

Get notifed when new similar jobs are uploaded