What is the Summary of This Position?
In this role, you will play a key role in protecting the organization's information assets, systems and infrastructure. You will be responsible for supporting cybersecurity, information security governance, risk management, compliance and security operations activities and will report to the IT Information Security and Governance Executive.
Which Profile Are We Looking For?
- Bachelor’s degree in Computer Science/Engineering, Information Systems, Software Engineering, Cybersecurity or a related technical discipline,
- At least 5 years of professional experience in one or more of Cyber Security, Information Security, IT Auditing, IT Risk Management and , IT Governance & Compliance,
- Hands-on in Log Management, SIEM and Vulnerability Management, DLP, Personal Data Protection Regulations (KVKK, GDPR),
- Having knowledge of Cyber Security and Technologies (Firewall, AV, IPS, IDS, E-mail Security Gateway etc.),
- Preferably, have one of ISO 27001 LA, ISO 22301 LA, ITIL, Cobit certificates,
- Strong analytical thinking, problem-solving and communication skills,
- Excellent command of written and spoken English.
What You'll Be Doing?
- Ensure IT processes comply with corporate policies, standards, procedures, and regulatory requirements,
- Develop, maintain, and continuously improve Information Security policies, procedures, and standards,
- Monitor and assess the security posture of systems, infrastructure, applications, and cloud environments,
- Manage security logging requirements, onboard log sources, and define SIEM use cases and correlation rules,
- Oversee Identity and Access Management (IAM) and user access control processes,
- Coordinate vulnerability assessments and penetration tests; analyze findings and track remediation activities,
- Manage cyber threat intelligence activities and support proactive threat detection initiatives,
- Participate in cybersecurity risk assessments and support enterprise-wide risk management activities,
- Lead and support security awareness and cybersecurity culture initiatives across the organization,
- Contribute to the design, implementation, and continuous improvement of IT governance and compliance processes,
- Define, monitor, and report security and compliance KPIs and metrics,
- Coordinate internal and external IT audits and ensure timely closure of audit findings and corrective actions,
- Provide recommendations and guidance to address security gaps and audit observations,
- Support and maintain the ISO 27001 Information Security Management System (ISMS) framework,
- Manage document governance activities, including policy ownership, version control, approvals and periodic reviews,
- Support IT Business Continuity, Disaster Recovery and Operational Resilience initiatives,
- Stay current with emerging cybersecurity threats, technologies, regulations and industry best practices.
Nobel’s proven excellence in the global pharmaceutical sector is driven by the dedication and expertise of our people. Since 1954, we have grown from our roots in Türkiye into a global pharmaceutical company, thanks to the dedication and expertise of nearly 5,000 colleagues.
We operate 5 R&D and production hubs across Türkiye, Kazakhstan, and Uzbekistan, and our presence spans 24 countries with dedicated local teams. Our multicultural and multinational colleagues embody our global presence, ensuring that our products reach patients in more than 50 countries.
What unites us is our mission: Health for All, Access for All. Every day, we work with passion to improve the quality of human life because at Nobel, every contribution makes a difference.