-
Payten

Information Security Risk and Compliance Specialist

Payten
Turkey · Full-time · Associate

Information Security & Risk & Compliance Specialist


Job Description:

  • Performing and coordinating internal, external (PCI DSS, PCI SSF, PCI 3DS, ISO 27001, ISO 22301, ISO27701, BDDK, TCMB) and bank audits and follow up findings.
  • Creating and updating policies, procedures, guidelines for PCI standards (PCI DSS, PCI SSF, PCI 3DS), ISO standards (ISO 27001, ISO 22301) and BDDK, TCMB.
  • Having knowledge about SDLC (Software Development Life Cycle) process to create secure software development environment.
  • Identifying information security requirements for IT and company projects.
  • Reviewing agreement and preparing procedures, standards accordingly to compliance in agreements with customers.
  • Performing and coordinating ISMS’s and BCMS's main processes activities like DRC tests, asset management, business impact analysis, risk assessments etc.
  • Managing risks (IT, InfoSec, Operational) and identifying risk action plans and periodically report the results to review for senior management.
  • Management information security and business continuity awareness program (prep. training, newsletter, announcement, phishing attack simulation etc.)
  • Follow up disaster recovery tests and business continuity plan for customers and in-house apps.


Experience & Qualifications

  • At least 2-3 years of experience at least one of the fields of business continuity, information security, audit and risk management role.
  • Experience of IT security audit for banks, payment institutions and accredited auditing firms.
  • Preferably having CISA, ISO 27001 LA certifications.
  • Experience in personal data protection regulations like KVKK and GDPR.
  • Experience in credit card security standards like PCI DSS, PCI SSF, PCI 3DS.
  • Experience in compliance for local regulations like BDDK and TCMB.
  • Experience in information security and risk management (Includes IT, InfoSec and Operational).
  • Experience in business continuity management (knowledge about critical components of a disaster recovery plan like RTO, RPO).


Skills:

  • Having strong verbal and written communication skills in English.
  • Analytical, problem solver, thinking before acting.
  • Technical level communications and impressive presentation skill to Senior Management
  • Excellent communication skills such as active listening, persuasion, negotiation with internal and external parties.
  • Big picture thinking and solution oriented.

Key Skills

Ranked by relevance

pci dss dss simulation cisa
Login to Apply
Posted
Feb 19, 2026
Type
Full-time
Level
Associate
Location
Istanbul
Company
Payten

Industries

Financial Services

Categories

Information Technology

Related Jobs

3 roles aligned with this opportunity

View all jobs
View Job Details
Worldline
Related

Information Security Officer

2026-06-15

Full-time
Not Applicable
Romania
Financial Services
Information Technology
View Job Details
Broadridge
Related

Senior Auditor, IT/Technology

2026-06-17

Full-time
Not Applicable
Romania
Financial Services
Information Technology
View Job Details
SIBS ROMANIA
Related

Security Analyst

2026-06-17

Full-time
Mid-Senior
Romania
Financial Services
Analyst