Seray Aktürk

Cyber & Information Security Vice President, CDPSE, ISO27001 LA | Internal Systems

Istanbul, Türkiye

About

https://deloi.tt/3KOg6bH

Experience

  • Information Security and Information Systems Control Vice President at Stablex
    Nov 2023 - Present · 2 yrs 8 mos

    • Reporting directly to the Board • Process design focuses on defining what the organization will do to achieve by creating a new process, workflows etc. • Implement ISO 27001 framework and Information Security Management System (ISMS). • Develop a complete set of corporate Information Security policies and standards and continually monitoring the information security controls, KRIs/KPIs and technical landscape • Lead on compliance reviews, certifications and accreditations (e.g. ISO27001, Cyber Essentials, KVKK, GDPR etc.) • Implement effective and appropriate GRC controls and measures to protect systems and data • Identify, communicate and manage current and emerging security threats with relevant stakeholders • Develop Information security compliance frameworks, security policies and procedures, where necessary • Work with business, internal IT and 3rd party vendor teams to promote and adopt security best practices • Validate IT infrastructure and other reference architectures for security best practices and recommend changes to enhance security and reduce risks, where applicable. • Performing information systems checks • Organize the purchase, schedule upgrades and security backups of new systems with IT director • Periodic controlling the smooth running of all IT systems, including anti-virus software, print services and email provision • Secure data from internal and external attack • Offer users appropriate support and advice • Managing crisis situations, which may involve complex technical hardware or software problems

  • Deloitte (6 yrs 9 mos)
    • Cyber Risk Manager, CDPSE, ISO27001 LA | Risk Advisory
      Mar 2017 - Nov 2023 · 6 yrs 9 mos

      • Project Management in privacy areas • ISMS • Cyber Wargaming (Cyber Crisis Management) • DLP Configurations • Participate in client workshops to complete Security Authorization Packages and Security Assessments • Provide review and analysis of vulnerability scan results from tools • Understanding of networks, protocols, security configurations, identity and access management, and the systems development life cycle • Performing entity wide risk assessment based on Deloitte EMEA Cyber Security Framework • Personal Data Privacy and Protection • Risk Management, Cyber Risk Management • Data Inventory and Classification

    • Cyber Risk Senior Consultant | Risk Advisory
      Jun 2020 - Jun 2022 · 2 yrs 1 mo

    • Cyber Security Consultant | Risk Advisory
      Jun 2018 - Jun 2020 · 2 yrs 1 mo

  • Junior - AVIONIC ATE at Turkish Technic
    Jul 2015 - Dec 2015 · 6 mos

    • Responsible for Information Security areas • Examined devices which related to the airplane electronics • Had chance to investigate cockpit and figured out how all devices work • Studied on radio, wireless communication systems • Responsible for TRAX software to collect all necessary data in manufacturing information • Tested components of airplane

  • Junior - Tank System Engineering Department at OTOKAR Otomotiv ve Savunma Sanayi A.Ş.
    Jan 2015 - Jun 2015 · 6 mos

    • Responsible for Information Security areas • Used VeSys in order to design interior part of vehicles which related to job • Became familiar to technical terms • Responsible from the design and development process of the schematic design • Organized documents and repots