Watsons Turkey is a part of AS Watson Group, the world's largest international health and beauty retailer, operating over 17,000 stores under 12 retail brands across 31 markets with more than 130,000 employees. As of the 2024 fiscal year, AS Watson Group recorded a revenue of 24 billion USD and serves over 6 billion customers annually through its O+O (Offline plus Online) platforms, offering a technology-enabled retail experience.
As the leading O+O health and beauty retailer in Asia, Watsons operates 8,000 stores and over 1,500 pharmacies across 16 markets in Asia, Europe, and the Middle East.
Watsons Turkey is one of the leading beauty and personal care retailers in Turkey, with more than 450 stores in 66 cities and over 3,500 employees. It aims to make a positive difference in customers’ lives through its products and services.
Watsons is Asia’s No.1 Personal Care and Beauty Retailer.* *Based on the results of the "Top 50 Customer Experience Brands" survey conducted by Campaign Asia with 9,000 participants across six Asian countries.
* The data you share is protected and processed within the scope of the Personal Data Protection Law No. 6698 ("KVKK"). For detailed information, you can visit https://www.watsons.com.tr/calisan-adayi-aydinlatma-metni.
Qualifications:
- Bachelor’s degree in Engineering, Computer Science, Information Technology or related fields,
- Minimum 6-7 years of experience in Cybersecurity, Information Security and/or Security Operations,
- Experience in team management while also being able to take direct technical action when needed,
- Strong knowledge of cybersecurity frameworks, security operations and risk management principles,
- Experience in vulnerability management, patch management and cybersecurity incident management processes,
- Hands‑on experience with Qualys or similar tools for vulnerability assessment, analysis and remediation,
- Knowledge of Microsoft Defender, endpoint security, system hardening, logging, monitoring and threat detection processes,
- Good understanding of network security concepts including Firewall, IDS/IPS, Zero Trust and secure access principles,
- Experience in security monitoring, threat intelligence and incident response activities,
- Familiarity with KVKK, ISO 27001 and other information security standards and compliance requirements,
- Experience in conducting security audits, risk assessments and compliance reviews,
- Good English communication skills for technical coordination with global teams,
- Strong analytical thinking, crisis management, problem-solving and sense of responsibility.
Job Description:
- Lead and manage the company’s cybersecurity and information security operations,
- Ensure the implementation, maintenance and continuous improvement of information security policies, standards and procedures,
- Manage vulnerability assessment and remediation activities through Qualys or similar security tools,
- Plan, coordinate and monitor patch management and security update activities across the organization,
- Lead technical response, investigation and root cause analysis for cybersecurity incidents such as malware, phishing, ransomware and unauthorized access,
- Oversee endpoint security, system hardening, logging and security monitoring processes,
- Review and govern firewall rules, privileged access management and core security controls on a regular basis,
- Conduct risk assessments and recommend security improvements to reduce organizational risk exposure,
- Ensure compliance with KVKK, ISO 27001 and applicable cybersecurity requirements,
- Coordinate cybersecurity audits, security assessments and compliance activities,
- Work closely with global cybersecurity and technology teams on security initiatives and operational requirements,
- Manage team performance, development and operational effectiveness,
- Coordinate cybersecurity-related activities with external security vendors and service providers.