Senior Cyber Security Engineer

1 Month ago • 4-8 Years • Cyber Security

Job Summary

Job Description

Roof Stacks seeks a Senior Cyber Security Engineer to lead their application security program. Responsibilities include directing application security initiatives, mentoring the platform team, managing vulnerability management, championing secure development lifecycle practices, maintaining robust security architecture, implementing threat modeling, enhancing security tools in the CI/CD pipeline, conducting penetration testing, ensuring secure multi-cloud configurations (AWS, Google Cloud, Azure), developing containerized application security best practices, leading incident response, and performing security audits. The ideal candidate possesses extensive experience leading application security teams in SaaS environments, strong communication and analytical skills, deep knowledge of application security risks (OWASP Top 10), cloud security expertise, penetration testing proficiency, and experience with SIEM systems. Relevant certifications are a plus.
Must have:
  • Lead application security teams in SaaS
  • Deep knowledge of OWASP Top 10
  • Cloud security expertise (AWS, Azure, GCP)
  • Penetration testing proficiency
  • Vulnerability management
  • Secure development lifecycle
Good to have:
  • SIEM experience
  • Containerization & cloud-native security
  • Relevant certifications (CISSP, etc.)
  • Incident response leadership

Job Details

As Roof Stacks, we have been carrying out innovative projects since 2015. We aim to become a global actor in Tourism Systems, Extended Reality(AR/VR), Blockchain Technologies, Game Development, and Financial Technology, which are our areas of expertise.

We focus on creating a difference with the technologies we develop and designing the future. In addition to our central office in Ataşehir/İstanbul, we have branches in Antalya and Elazığ in Turkey.

We have strengthened our position in the global market by opening a new office in Austin, USA, which hosts world technology giants from all over the world.

Job requirements:

Requirements:
• Extensive experience leading application security teams, preferably within SaaS environments.
• Exceptional communication and interpersonal abilities, capable of effectively collaborating with multidisciplinary teams.
• Advanced analytical and management skills.
• Deep knowledge of common application security risks, such as those listed in the OWASP Top 10, and best practices in secure coding.
• Expertise in cloud security services across AWS, Google Cloud, and/or Azure, including IAM, key management, and secure networking practices.
• Proficiency with penetration testing tools and techniques.
• Experience in Security Incident management and/or operating within a SOC (Security Operations Center), including familiarity with SIEM systems, is advantageous.
• Familiarity with containerization and cloud-native security tools (e.g., AWS Security Hub, Google Security Command Center, Azure Defender).
• Relevant professional certifications (e.g., CISSP, CISM, SANS GIAC, OSCP, AWS Security Specialty, Google Professional Cloud Security Engineer) are beneficial.
• Proficient in both written and spoken English.
• Prior remote work experience is not mandatory but is considered an asset.

Key Responsibilities:

Key Responsibilities:
• Direct and oversee the application security program, ensuring it aligns with the broader Security strategy.
• Support the platform team in their day-to-day operations, projects, and personal development through guidance and mentorship.
• Manage the vulnerabilities management process in close collaboration with the Engineering teams, providing important metrics to the Security Director.
• Champion the adoption of Secure Development Life Cycle practices within the Platform Engineering team.
• Maintain robust security architecture across Platform, Data, Development, and Product teams.
• Implement threat modeling practices into product design and development processes.
• Aid in the enhancement and upkeep of security tools used in the CI/CD pipeline.
• Organize and facilitate penetration testing activities, including defining the scope, planning, and analyzing outcomes.
• Collaborate with infrastructure and cloud teams to ensure secure configurations across multi-cloud environments, including AWS, Google Cloud, and Azure.
• Develop and implement security best practices for containerized applications and orchestration tools (Docker, Kubernetes, GKE, AKS).
• Provide leadership in incident response processes, ensuring robust cloud-based security incident management and recovery procedures.
• Conduct regular audits of cloud security configurations, ensuring compliance with industry standards and frameworks.

Similar Jobs

BigID - Software Engineer Team Lead

BigID

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)
5 Months ago
Shyft Labs - Databricks Engineer

Shyft Labs

Toronto, Ontario, Canada (Hybrid)
3 Months ago
AppZen - Sr. Quality Engineer

AppZen

Pune, Maharashtra, India (Hybrid)
3 Months ago
Hawk Eye Innovations - Test Automation Engineer

Hawk Eye Innovations

Basingstoke, England, United Kingdom (Hybrid)
1 Week ago
PENN Interactive - Data Scientist

PENN Interactive

(Remote)
4 Days ago
Universal Music - Principal Application Security Engineer

Universal Music

Santa Monica, California, United States (Remote)
1 Month ago
PwC - Financial Services Audit Associate

PwC

Makati, Metro Manila, Philippines (On-Site)
7 Months ago
Tencent - Security Operations - PUBG Mobile

Tencent

Shenzhen, Guangdong Province, China (On-Site)
2 Months ago
PwC - Assurance Technology Risk & Quality Manager

PwC

Dublin, County Dublin, Ireland (On-Site)
7 Months ago
Google - Software Engineer III, AI Agent Security, Core, Systems

Google

Zürich, Zurich, Switzerland (On-Site)
2 Weeks ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

WebFX - Entry Level Software Engineer

WebFX

Harrisburg, Pennsylvania, United States (On-Site)
6 Months ago
Ubisoft - Monitoring Specialist - Golang Developer

Ubisoft

Saint-Mandé, Île-de-France, France (Hybrid)
2 Weeks ago
Thatgamecompany - Senior Backend Engineer - China

Thatgamecompany

Shanghai, Shanghai, China (On-Site)
1 Month ago
Playrix - Senior C++/Python Software Engineer (Engine)

Playrix

Serbia (Remote)
6 Months ago
Buckman - Senior Lead Digital Software Engineer – Front End

Buckman

Chennai, Tamil Nadu, India (On-Site)
7 Months ago
Contentstack - Senior Manager - BI Data Engineering & Architecture

Contentstack

Bengaluru, Karnataka, India (On-Site)
5 Days ago
Synamedia - Software Engineer (Node JS, GoLang, AWS)

Synamedia

Bengaluru, Karnataka, India (On-Site)
8 Months ago
Palo Alto Networks - Sr Staff DevOps Engineer

Palo Alto Networks

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)
1 Month ago
Uniswap Labs - Senior Site Reliability Engineer (SRE)

Uniswap Labs

New York, New York, United States (Hybrid)
1 Day ago
Sinch - Full Stack Software Engineer

Sinch

Mandaluyong, Metro Manila, Philippines (Remote)
1 Month ago

Get notifed when new similar jobs are uploaded

Jobs in İstanbul, İstanbul, Türkiye

Spyke Games - Backend Game Developer

Spyke Games

İstanbul, Türkiye (On-Site)
9 Months ago
Boombit - Senior Game Product Manager

Boombit

İzmir, İzmir, Türkiye (On-Site)
5 Months ago
gyb games - Senior Backend Developer

gyb games

İstanbul, İstanbul, Türkiye (On-Site)
4 Days ago
Trendyol - Category Professionals

Trendyol

Maslak, İstanbul, Türkiye (Hybrid)
6 Months ago
Ruby game studio - Game Designer

Ruby game studio

İzmir, İzmir, Türkiye (On-Site)
1 Month ago
vertigoo games - Marketing Artist Intern

vertigoo games

İstanbul, İstanbul, Türkiye (On-Site)
4 Days ago
Boombit - Senior 3D Artist

Boombit

İzmir, İzmir, Türkiye (On-Site)
5 Months ago
Dream Games - Senior Recruitment Specialist

Dream Games

İstanbul, Türkiye (On-Site)
9 Months ago
RoofStack - Senior Test Automation Developer

RoofStack

İstanbul, İstanbul, Türkiye (On-Site)
1 Month ago
RoofStack - Data Product Owner

RoofStack

İstanbul, İstanbul, Türkiye (On-Site)
1 Month ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Larian Studios - Lead Security & Network Engineer

Larian Studios

Guildford, England, United Kingdom (On-Site)
2 Months ago
PwC - ETIC, Cybersecurity Graduate Program

PwC

Cairo, Cairo Governorate, Egypt (On-Site)
6 Months ago
Nintendo - Security Engineer

Nintendo

Redmond, Washington, United States (Hybrid)
5 Months ago
Google - Insider Risk Analyst

Google

Hyderabad, Telangana, India (On-Site)
2 Weeks ago
Universal Music - Application Security Engineer

Universal Music

Santa Monica, California, United States (Remote)
3 Weeks ago
Immutable - Head of Security

Immutable

Sydney, New South Wales, Australia (Hybrid)
2 Months ago
Google - Technical Program Manager III, AI Security Detection and Response, Core

Google

Boulder, Colorado, United States (On-Site)
6 Days ago
Microsoft - Software Engineer - Security

Microsoft

Redmond, Washington, United States (On-Site)
2 Weeks ago
Google - Software Engineer III, Security/Privacy, Google Cloud

Google

Sunnyvale, California, United States (On-Site)
6 Days ago
PwC - Financial Services GRC Senior Associate

PwC

Makati, Metro Manila, Philippines (On-Site)
7 Months ago

Get notifed when new similar jobs are uploaded

About The Company

İstanbul, İstanbul, Türkiye (On-Site)

İstanbul, İstanbul, Türkiye (Hybrid)

İstanbul, İstanbul, Türkiye (On-Site)

İstanbul, İstanbul, Türkiye (On-Site)

View All Jobs

Get notified when new jobs are added by Roofstacks

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug