Senior Cyber Security Engineer

4 Months ago • 4-8 Years • Cyber Security

Job Summary

Job Description

Roof Stacks seeks a Senior Cyber Security Engineer to lead and oversee their application security program. Responsibilities include directing application security initiatives, supporting platform teams, managing vulnerability management, championing secure development practices, maintaining robust security architecture, implementing threat modeling, enhancing security tools within the CI/CD pipeline, organizing penetration testing, ensuring secure cloud configurations (AWS, Google Cloud, Azure), developing secure practices for containerized applications, leading incident response, and conducting regular security audits. The ideal candidate will have extensive experience in application security, strong communication skills, deep knowledge of OWASP Top 10, cloud security expertise, penetration testing proficiency, and relevant certifications.
Must have:
  • Extensive application security experience (SaaS)
  • Strong communication & collaboration skills
  • Deep knowledge of OWASP Top 10 & secure coding
  • Cloud security expertise (AWS, GCP, Azure)
  • Penetration testing proficiency
  • Vulnerability management experience
Good to have:
  • SIEM experience
  • Containerization & cloud-native security tools
  • Relevant certifications (CISSP, etc.)
  • Incident response experience

Job Details

As Roof Stacks, we have been carrying out innovative projects since 2015. We aim to become a global actor in Tourism Systems, Extended Reality(AR/VR), Blockchain Technologies, Game Development, and Financial Technology, which are our areas of expertise.

We focus on creating a difference with the technologies we develop and designing the future. In addition to our central office in Ataşehir/İstanbul, we have branches in Antalya and Elazığ in Turkey.

We have strengthened our position in the global market by opening a new office in Austin, USA, which hosts world technology giants from all over the world.

Job requirements:

Requirements:
• Extensive experience leading application security teams, preferably within SaaS environments.
• Exceptional communication and interpersonal abilities, capable of effectively collaborating with multidisciplinary teams.
• Advanced analytical and management skills.
• Deep knowledge of common application security risks, such as those listed in the OWASP Top 10, and best practices in secure coding.
• Expertise in cloud security services across AWS, Google Cloud, and/or Azure, including IAM, key management, and secure networking practices.
• Proficiency with penetration testing tools and techniques.
• Experience in Security Incident management and/or operating within a SOC (Security Operations Center), including familiarity with SIEM systems, is advantageous.
• Familiarity with containerization and cloud-native security tools (e.g., AWS Security Hub, Google Security Command Center, Azure Defender).
• Relevant professional certifications (e.g., CISSP, CISM, SANS GIAC, OSCP, AWS Security Specialty, Google Professional Cloud Security Engineer) are beneficial.
• Proficient in both written and spoken English.
• Prior remote work experience is not mandatory but is considered an asset.

Key Responsibilities:

Key Responsibilities:
• Direct and oversee the application security program, ensuring it aligns with the broader Security strategy.
• Support the platform team in their day-to-day operations, projects, and personal development through guidance and mentorship.
• Manage the vulnerabilities management process in close collaboration with the Engineering teams, providing important metrics to the Security Director.
• Champion the adoption of Secure Development Life Cycle practices within the Platform Engineering team.
• Maintain robust security architecture across Platform, Data, Development, and Product teams.
• Implement threat modeling practices into product design and development processes.
• Aid in the enhancement and upkeep of security tools used in the CI/CD pipeline.
• Organize and facilitate penetration testing activities, including defining the scope, planning, and analyzing outcomes.
• Collaborate with infrastructure and cloud teams to ensure secure configurations across multi-cloud environments, including AWS, Google Cloud, and Azure.
• Develop and implement security best practices for containerized applications and orchestration tools (Docker, Kubernetes, GKE, AKS).
• Provide leadership in incident response processes, ensuring robust cloud-based security incident management and recovery procedures.
• Conduct regular audits of cloud security configurations, ensuring compliance with industry standards and frameworks.
undefinedundefinedundefined

Similar Jobs

Entrata - Team Lead

Entrata

Tel Aviv-Yafo, Tel Aviv District, Israel (Hybrid)
2 Months ago
NVIDIA - Senior Software Engineer - Build and Deployment Tools

NVIDIA

Bengaluru, Karnataka, India (Hybrid)
3 Months ago
PwC - Senior Associate_Full Stack Developer_Data & Analytics_Advisory_PAN  India

PwC

Bengaluru, Karnataka, India (On-Site)
7 Months ago
Insight  Software - Software Engineer (Full stack - C# & ReactJS)

Insight Software

Bengaluru, Karnataka, India (On-Site)
1 Week ago
Gunzilla - DevOps/Build Engineer

Gunzilla

Kyiv, Kyiv City, Ukraine (On-Site)
1 Month ago
NVIDIA - System Software Engineer - Android Platform Security

NVIDIA

Taipei City, Taiwan (On-Site)
1 Week ago
ByteDance - Full-Stack Software Engineer - Security Operation Center

ByteDance

San Jose, California, United States (On-Site)
6 Months ago
ION - Senior Security Architect

ION

Collecchio, Emilia-Romagna, Italy (On-Site)
6 Months ago
Tesla - Security Systems Engineer

Tesla

Brandenburg, Germany (On-Site)
2 Months ago
Google - Senior Software Engineer, ChromeOS, Security

Google

Kraków, Lesser Poland Voivodeship, Poland (On-Site)
2 Days ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Mindtickle - SRE-II

Mindtickle

Pune, Maharashtra, India (Hybrid)
1 Month ago
SOFTGAMES - Senior HTML5 Game Developer (Remote)

SOFTGAMES

Berlin, Berlin, Germany (Remote)
3 Months ago
Warner Bros Games - Staff Technical Program Manager

Warner Bros Games

(Hybrid)
2 Months ago
Tencent - Security Software Engineer I

Tencent

Palo Alto, California, United States (On-Site)
4 Months ago
GoDaddy - Senior Cloud Engineer

GoDaddy

(Remote)
6 Hours ago
Aristocrat Gaming - Project Manager - AREA Suite of Apps

Aristocrat Gaming

Las Vegas, Nevada, United States (Hybrid)
1 Week ago
Nahc io - Software Engineer (Unity)

Nahc io

Hong Kong (On-Site)
3 Weeks ago
Playrix - Lead C++ Software Engineer (Gameplay)

Playrix

Georgia (Remote)
6 Months ago
PwC - Senior Software Developer (.NET)

PwC

Qormi, Malta (On-Site)
7 Months ago
Nagarro - QA-AUTOMATION

Nagarro

Cairo, Cairo Governorate, Egypt (On-Site)
6 Months ago

Get notifed when new similar jobs are uploaded

Jobs in İstanbul, İstanbul, Türkiye

USE Insider - Financial Controller (Hybrid)

USE Insider

İstanbul, İstanbul, Türkiye (Hybrid)
6 Months ago
Trendyol - Senior Data Analyst ( Data Science - Site Management)

Trendyol

İstanbul, İstanbul, Türkiye (Hybrid)
6 Months ago
Fuse Games - Senior Data Analyst

Fuse Games

İstanbul, Türkiye (On-Site)
1 Day ago
Dream Games - Concept Artist

Dream Games

İstanbul, Türkiye (On-Site)
2 Months ago
Good Job Games - Junior Game Developer

Good Job Games

İstanbul, Türkiye (On-Site)
7 Months ago
USE Insider - Accounting Specialist

USE Insider

İstanbul, İstanbul, Türkiye (Hybrid)
6 Months ago
Trendyol - International Tax Professionals

Trendyol

İstanbul, İstanbul, Türkiye (Hybrid)
1 Week ago
Assystems - Lead Mechanical Inspector

Assystems

Mersin, Mersin, Türkiye (On-Site)
6 Months ago
Fuse Games - Game Developer

Fuse Games

İstanbul, Türkiye (On-Site)
1 Day ago
USE Insider - Senior Product Manager - (Remote)

USE Insider

İstanbul, İstanbul, Türkiye (Remote)
6 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

SmileGate - Group Security Policy (Planning/Strategy) Manager

SmileGate

Seongnam-si, Gyeonggi-do, South Korea (On-Site)
3 Months ago
Google - Security Engineer III, Red Team, Cloud CISO

Google

New York, New York, United States (On-Site)
2 Weeks ago
ByteDance - Senior Technology Internal Auditor (Global Technology Audit)

ByteDance

Singapore (Hybrid)
1 Month ago
PwC - IN_Senior Associate _Cloud Security Expert_Advisory Corporate_Advisory_Kolkata

PwC

Kolkata, West Bengal, India (On-Site)
5 Months ago
Microsoft - Senior Software Engineer

Microsoft

Redmond, Washington, United States (On-Site)
1 Week ago
N-iX - Senior Cybersecurity Engineer

N-iX

(Remote)
2 Weeks ago
Google - Staff Software Engineer, Product Security Engineering, Cloud CISO

Google

Kirkland, Washington, United States (On-Site)
1 Week ago
PwC - IN-Associate_Salesforce _ Enterprise Apps SFDC_Advisory_ Pan India

PwC

Mumbai, Maharashtra, India (On-Site)
5 Months ago
Microsoft - Senior Data Engineer - MSTIC RnD

Microsoft

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)
2 Weeks ago
ION - Cyber Security Analyst, Italy

ION

Milan, Lombardy, Italy (On-Site)
6 Months ago

Get notifed when new similar jobs are uploaded

About The Company

At Roofstacks, we are not content with simply innovating; we are committed to pushing the frontiers of technology. Since our establishment in 2015, we have skillfully integrated conventional systems with cutting-edge solutions, raising the standard in industries such as tourism, metaverse, AR, gaming, blockchain, and fintech.


İstanbul, İstanbul, Türkiye (Hybrid)

İstanbul, İstanbul, Türkiye (On-Site)

İstanbul, İstanbul, Türkiye (On-Site)

İstanbul, İstanbul, Türkiye (Hybrid)

İstanbul, İstanbul, Türkiye (On-Site)

Kahramanmaraş, Kahramanmaraş, Türkiye (On-Site)

İstanbul, İstanbul, Türkiye (On-Site)

İstanbul, İstanbul, Türkiye (On-Site)

İstanbul, İstanbul, Türkiye (On-Site)

View All Jobs

Get notified when new jobs are added by RoofStack

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug