Director Information Security
Executas HR and Business Solutions · Istanbul, Istanbul, Türkiye
Apply & track with Apply EdgeExecutas is seeking an experienced Information Security Director for one of our distinguished clients.This senior leadership role brings together information security strategy, application and platform security, defensive security, governance, regulatory compliance, risk management and business continuity. The successful candidate will combine strategic leadership with practical security experience and translate information security risks into clear, actionable business priorities.Key ResponsibilitiesLead the organization’s information and cybersecurity strategy across web, mobile application and other business-critical technology environments.Oversee defensive security initiatives and coordinate their implementation with technology and relevant business functions.Assess the operational and business impact of security requirements and ensure that appropriate measures are implemented.Manage information security governance and compliance activities, including PCI DSS, ISO 27001, KVKK, GDPR and related GRC requirements.Oversee access and authorization management practices and contribute to effective data governance.Lead information security risk assessments and business-impact analyses.Manage business continuity, disaster recovery and organizational resilience activities in line with ISO 22301 principles.Lead and guide the information security team by establishing clear priorities and providing direction.Act as a trusted advisor to senior management and business functions on information security risks, decisions and improvement opportunities.Build effective cross-functional collaboration and strengthen organizational ownership of information security.Monitor developments in cybersecurity and provide forward-looking guidance on emerging risks and relevant solutions.Qualifications and ExperienceProven leadership experience at Head of Information Security, Information Security Director or CISO level.Demonstrated experience in securing web applications, mobile applications and internet-facing technology environments.A strong combination of strategic leadership, governance expertise and practical security experience.Experience in defensive security operations and implementing security measures across complex organizations.Solid knowledge of PCI DSS, ISO 27001, ISO 22301, KVKK, GDPR and GRC practices.Experience in information security risk management, business-impact analysis, business continuity and disaster recovery.Proven team leadership and people-management capability.Strong communication, influencing and stakeholder-management skills, particularly across functions and at senior-management level.The ability to build trust and approach information security requirements with a pragmatic, collaborative and solution-oriented mindset.Experience within complex, high-availability and business-critical technology environments is highly preferred.Previous in-house information security leadership experience within a corporate organization is strongly preferred.We are looking for a leader who can balance information security requirements with business realities and combine technical credibility with sound judgement, effective communication and organizational influence.If your experience brings together cybersecurity leadership, platform security, governance and organizational resilience, we look forward to receiving your application through LinkedIn.