Derya D.

Derya D. Email and Phone Number

Information Security Risk Compliance and Governance Manager @ DİAS Teknoloji
Derya D.'s Location
Istanbul, Istanbul, Türkiye, Turkey
About Derya D.

Derya D. is a Information Security Risk Compliance and Governance Manager at DİAS Teknoloji. They is proficient in English.

Derya D.'s Current Company Details
DİAS Teknoloji

Di̇as Teknoloji

View
Information Security Risk Compliance and Governance Manager
Employees:
611
Derya D. Work Experience Details
  • Di̇as Teknoloji
    Information Security Risk Compliance And Governance Manager
    Di̇as Teknoloji
  • Koç University
    It Grc Group Leader
    Koç University Jan 2024 - Present
    Istanbul, Turkey
    As the IT GRC Team Leader, I am responsible for overseeing IT risk management, ensuring compliance with regulations, ISO 27001, and NIST standards, while maintaining the Information Security Management System (ISMS). I coordinate internal and external audits within the IT department, acting as the primary liaison for audit activities and ensuring that findings are addressed. I drive the development and improvement of IT processes and procedures, ensuring they align with business objectives and best practices. Additionally, I manage the quality of IT services by implementing robust frameworks and conducting regular process reviews. My role involves close collaboration with cross-functional teams to mitigate risks, enforce security standards, and ensure consistent compliance with ISO 27001, NIST, and other relevant frameworks. I leverage my knowledge of IT governance, risk management, and compliance to protect organizational assets, ensure continuous improvement, and maintain operational integrity.
  • Koç University
    Senior Information Security Specialist
    Koç University Apr 2022 - Feb 2024
    Greater Istanbul
    As an information security senior specialist at Koç University, my main task is to ensure information security compliance in the IT department. My primary responsibilities are compliance with the Presidency Information and Communications Guide and ISO 27001 standards. I also design Minimum Security Standards, Business Continuity processes, ISMS processes, and IT Risk Processes, ensuring compliance with these processes. Additionally, I utilize Jira for project management and tracking progress. I plan and manage projects for digitizing information security processes and compliance controls within IT and automating compliance processes, incorporating IT governance, risk management, and business continuity principles.
  • Turk Eximbank
    Senior Information Security Specialist
    Turk Eximbank Oct 2020 - Apr 2022
    İstanbul
    As an Information Security Senior Specialist at Türk Eximbank, I had various responsibilities, including information security, business continuity management, compliance with regulations and laws related to information systems, coordination of IT units, and representation of the audit on the IT side for internal and external audit activities carried out within the scope of IT COBIT, ISO 27001, and Banking Information Systems Regulations. I also conducted business continuity tests and documentation. Moreover, I actively participated in information security awareness activities such as training, surveys, and cyber security bulletins throughout the bank. Furthermore, I implemented IT risk management processes following ISO 27001, COBIT, and Banking Information Systems Regulations. During my tenure, I gained hands-on experience in utilizing Jira for project management and task tracking.
  • Boğaziçi University
    Network Administration Team Leader
    Boğaziçi University Feb 2019 - Oct 2020
    Istanbul, Turkey
  • Boğaziçi University
    Researcher
    Boğaziçi University Aug 2018 - Oct 2020
    Istanbul, Turkey
    I proactively took a 6-month hiatus from my professional career to dedicate myself to furthering my academic pursuits. I have consistently engaged in academic projects to advance knowledge within my field. Notably, during my 6-month hiatus from professional work, I prioritized completing writing processes for several publications stemming from my academic career. The projects I have been worked so far can be listed as: 1. ADAX (Attack Detection And Countermeasures Simulation) Project –ITEA3 – wins EUREKA Innovation Award 2017-(2013-2016)2. NETTSI Company " Deep Packet Inspection and Application Identification " 2021-2022.3. KRON A.S., "Cloud Based Privileged Access System ", Research Project, 2018-2020.4. TUBITAK 1003, "Cloud Based Privileged Access System ", PI, Research Grant, 2017-2021.5. Bogazici University Research Fund Grant " Deep Packet Inspection " 2021-2022.
  • Boğaziçi University
    Director
    Boğaziçi University May 2016 - Aug 2018
    It Department
  • Bogazici University
    Assistant Technical Director
    Bogazici University Jan 2013 - May 2016
    It Department
    My responsibilities include checking the technical specifications of purchases and following purchase operations, organizing the progress of technical units , ensuring relationship of technical units with each other.
  • Boğaziçi University
    Network Manager & Network Security Administrator
    Boğaziçi University May 2008 - Jan 2013
    Istanbul, Turkey
  • Turk Telekom
    Senior Specialist
    Turk Telekom Nov 2003 - Apr 2008
    Istanbul, Turkey
    Telecommunication senior specialist in ADSL network backplane and troubleshooting:2002-2004Security Senior Specialist in Turk Telekom security department: 2006-2008Managing and configuration of Commercial Firewalls, Antivirus Gateways and Content Filtering servers.I also participated in ISO 27001 process.

Derya D. Education Details

Frequently Asked Questions about Derya D.

What company does Derya D. work for?

Derya D. works for Di̇as Teknoloji

What is Derya D.'s role at the current company?

Derya D.'s current role is Information Security Risk Compliance and Governance Manager.

What schools did Derya D. attend?

Derya D. attended Boğaziçi University, Boğaziçi Üniversitesi / Bogazici University, Hacettepe Üniversitesi.

Not the Derya D. you were looking for?

Free Chrome Extension

Find emails, phones & company data instantly

Find verified emails from LinkedIn profiles
Get direct phone numbers & mobile contacts
Access company data & employee information
Works directly on LinkedIn - no copy/paste needed
Get Chrome Extension - Free

Aero Online

Your AI prospecting assistant

Download 750 million emails and 100 million phone numbers

Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.