Pelin Pehlivan Email and Phone Number
Experienced information security professional with 22 years of experience in various industries including telecommunication, energy, banking and consultancy with extensive knowledge in cyber security, risk management, compliance, data privacy, and IT audit. Experienced in establishing and leading Information security management system for group companies, successfully ensuring the protection of sensitive information and achieving compliance with regulations. An innovative leader with a proven track record of achieving results, with awards such as one of the top 50 most influential women in cyber security in Europe (2019), the 1st prize at the IDC 2019 Energy Summit for Enerjisa Data Leakage Prevention Project (2019) and Turkey’s first security ambassador about Industrial Control Systems in Energy Sector (2018). Skilled in leading teams and delivering successful projects, with a focus on delivering business objectives. Possess a deep understanding of security controls and compliance frameworks such as ISO 27001, ISO 22301, SAMA CTI, COBIT, NIST, PCI DSS, and GDPR. A former board member of Institute of Internal Auditors-Turkey and ISACA Istanbul, founder of Energy sector cyber security working group at ELDER, former cyber security instructor, speaker, and mentor.
-
Chief Executive OfficerXentura Cyber SolutionsDubai, Ae
-
Executive Partner @Natica Global, Executive Partner@Amntech GlobalNatica Jul 2024 - PresentDubai, United Arab Emirates -
Vciso, Information Security, It Risk, It Compliance, Data Privacy ConsultantFreelance Jan 2021 - Jul 2024United Arab EmiratesCybersecurity & Resilience ConsultantI specialize in end-to-end cybersecurity consulting encompassing:Cybersecurity & Resilience: Comprehensive analysis of a company's current cybersecurity activities, assessing associated risks within the broader threat landscape, tailored to the specific industry context.Data Privacy Governance: Guiding organizations in establishing robust data privacy policies and practices, ensuring compliance with global standards and… Show more Cybersecurity & Resilience ConsultantI specialize in end-to-end cybersecurity consulting encompassing:Cybersecurity & Resilience: Comprehensive analysis of a company's current cybersecurity activities, assessing associated risks within the broader threat landscape, tailored to the specific industry context.Data Privacy Governance: Guiding organizations in establishing robust data privacy policies and practices, ensuring compliance with global standards and regulations.Business Continuity & Compliance: Assisting businesses in building resilient infrastructures and processes that stand up to challenges, while staying compliant with industry regulations.Strategic Guidance: Offering bespoke recommendations on strategies, equipment, and procedures to fortify both digital and physical security postures.Implementation Roadmap: Designing a step-by-step guide to roll out security services, policies, procedures, and equipment, ensuring seamless integration and successful implementation to safeguard organizational assets.With a keen understanding of the ever-evolving threat environment and deep expertise in risk management, I assist businesses in not just navigating the digital domain securely, but also in fostering an organizational culture grounded in cybersecurity awareness and best practices. Show less
-
Head Of Cyber Security ConsultingAxon Technologies (Cybersecurity) Jan 2023 - Jun 2023United Arab EmiratesAs the Head of Cyber Security Consulting at Axon, I led consulting initiatives across diverse sectors, including government, healthcare & pharma, consumer business & services, finance, and energy. Key Offerings:Development of a cybersecurity strategy and operating modelComprehensive Cybersecurity Maturity and Risk Assessment, Business Impact Analysis, and Cloud Security Maturity ExaminationCompliance Assessment and Implementation Planning according to ISO 27001… Show more As the Head of Cyber Security Consulting at Axon, I led consulting initiatives across diverse sectors, including government, healthcare & pharma, consumer business & services, finance, and energy. Key Offerings:Development of a cybersecurity strategy and operating modelComprehensive Cybersecurity Maturity and Risk Assessment, Business Impact Analysis, and Cloud Security Maturity ExaminationCompliance Assessment and Implementation Planning according to ISO 27001, ISO 22301, GDPR, NIST Standards, PCI-DSS, SAMA & UAE IT Security RegulationsDelivering specialized services including CISO-as-a-Service, Governance, Risk and Compliance (GRC) as a service, Cyber Threat Intelligence as a service and Cyber Security Program Management as a serviceOur mission was to safeguard the digital endeavors of our clients, ensuring they operate in a secure, resilient, and compliant environment, regardless of the complexities of their business landscape. Show less -
Head Of Cyber Security, It Risk And ComplianceEnerjisa May 2017 - Dec 2020İstanbul• Established and led the Information Security management system for the companies under Enerjisa Co. (3 Retail companies, 3 Distribution companies, Generation Company (till 12/2017), Customer Solutions, Esarj, Enerjisa main)• Developed and managed the budget for security technology initiatives that aligned with business objectives and compliance requirements• Defined security requirements and led the implementation of security solution projects (SOC, SIEM, DLP, GDPR, IDM, EDR, NDR… Show more • Established and led the Information Security management system for the companies under Enerjisa Co. (3 Retail companies, 3 Distribution companies, Generation Company (till 12/2017), Customer Solutions, Esarj, Enerjisa main)• Developed and managed the budget for security technology initiatives that aligned with business objectives and compliance requirements• Defined security requirements and led the implementation of security solution projects (SOC, SIEM, DLP, GDPR, IDM, EDR, NDR, etc.) that adhered to industry standards and regulations, resulting in improved security posture and reduced risk exposure• Led the security operation of SOC, SIEM, DLP, EDR, NDR, XDR, PAM-PM, DAM solutions• Chaired the Information Security Risk Committee and ensured the mitigation of IT and OT security risks through the management of the technology risk register and remediation plan• Managed the attainment and maintenance of information security-related certificates (ISO 27001, ISO 27019, ISO 20000, PCI DSS)• Designed internal controls based on COBIT and NIST frameworks and conducted periodic security reviews / internal audits on processes, applications and infrastructure to ensure compliance with corporate security policies and legal & regulatory standards • Participated in critical projects and designed security controls for application development projects to ensure compliance with corporate security procedures and regulations.• Coordinated information security awareness training for the organization • Managed relationships with vendors and regulatory agencies and accompanied the regulatory audits (EPDK, ITGC) and ensured compliance with regulatory standards through the remediation of findings• Coordinated penetration tests and security assessments for Enerjisa companies and critical third-party service providers. Show less -
System And Network Security InstructorSabanci University Jun 2017 - Oct 2017Istanbul, Turkey -
Security Assurance Group ManagerTurk Telekom Group Apr 2015 - Apr 2017• Formed and managed a team of 12 employees under 3 companies• Aligned and enhanced the Information Security and Risk Management systems, policies & procedures of TT Group companies.• Managed the attainment and maintenance of ISO27001 and PCI-DSS certificates for TT group companies• Designed internal controls to ensure adherence with corporate security policies and legal & regulatory standards.• Conducted security reviews and coordinated penetration tests for companies within… Show more • Formed and managed a team of 12 employees under 3 companies• Aligned and enhanced the Information Security and Risk Management systems, policies & procedures of TT Group companies.• Managed the attainment and maintenance of ISO27001 and PCI-DSS certificates for TT group companies• Designed internal controls to ensure adherence with corporate security policies and legal & regulatory standards.• Conducted security reviews and coordinated penetration tests for companies within the TT Group and 3rd-party service providers.• Coordinated regulatory audits (BTK/BDDK) in Technology Group, took necessary actions for compliance, and followed up on findings.• Led the security awareness program throughout the TT Group companies.• Communicated risk and mitigation strategies arising from participation in security technical reviews and provided consultation on information security-related topics in projects.• Managed the approval process for firewalls, SSL-VPNs, data access, and authorization demands. Design the internal controls to ensure adherence with corporate security policies and legal & regulatory standards Show less
-
Internal Audit Manager (It)Avea Apr 2013 - Apr 2015Istanbul, Turkey• Managed and formed an IT Audit team, overseeing the annual Avea Risk Assessment and Risk Mapping process. • Developed the audit plan based on the Avea Risk Map, identifying potential risk areas and opportunities for operational efficiency improvement. • Conducted reviews of processes and systems to ensure compliance with legal and regulatory standards and effective risk-related controls. • Prepared and presented audit reports to the Board, including prioritized action plans in… Show more • Managed and formed an IT Audit team, overseeing the annual Avea Risk Assessment and Risk Mapping process. • Developed the audit plan based on the Avea Risk Map, identifying potential risk areas and opportunities for operational efficiency improvement. • Conducted reviews of processes and systems to ensure compliance with legal and regulatory standards and effective risk-related controls. • Prepared and presented audit reports to the Board, including prioritized action plans in collaboration with company management. • Managed multiple audits, including IT Governance, data confidentiality, email security, log management, social media management, authorization management, outsourcing IT staff, data leakage prevention, etc. • Monitored action plan progress and ensured timely implementation and reporting through management reporting. • Established strong relationships with internal departments and external stakeholders Show less
-
Senior It AuditorAkbank Mar 2001 - Apr 2013Istanbul, Istanbul, Turkey• Developed a comprehensive risk-based audit plan and maintained risk and control mapping documentation. • Conducted various application control, infrastructure and IT process audits for Akbank, its subsidiaries (Akbank International NV in Netherlands and Akbank AG in Germany, Aksigorta, Aklease), and its critical service suppliers, in compliance with Akbank security requirements and regulations.• Conducted process and application audits in specific areas such as IT Governance by using… Show more • Developed a comprehensive risk-based audit plan and maintained risk and control mapping documentation. • Conducted various application control, infrastructure and IT process audits for Akbank, its subsidiaries (Akbank International NV in Netherlands and Akbank AG in Germany, Aksigorta, Aklease), and its critical service suppliers, in compliance with Akbank security requirements and regulations.• Conducted process and application audits in specific areas such as IT Governance by using COBIT standard, SWIFT system, internet banking application, physical security of server rooms or archieve buildings, email security, credit card printing and deliver process, EFT, ATM, and POS, • Participated in risk analysis for in-house developed IT applications and 3rd party services/products.• Evaluated the effectiveness of security controls in computerized and manual systems, and made recommendations for control environment improvements. • Evaluated the effectiveness of the organization's disaster recovery preparations through participation in disaster recovery tests Show less -
Corporate Marketing SpecialistPamukbank Aug 1999 - Sep 2000Istanbul, Turkey• Coordination of business relations between the bank and the customers • Acting as a representative of the companies at the bank. • Making financial analysis, investment consulting and examining import and export transactions for the companies.
Pelin Pehlivan Education Details
-
Completion Certification -
Graduated First In Class Ranking
Frequently Asked Questions about Pelin Pehlivan
What company does Pelin Pehlivan work for?
Pelin Pehlivan works for Xentura Cyber Solutions
What is Pelin Pehlivan's role at the current company?
Pelin Pehlivan's current role is Chief Executive Officer.
What schools did Pelin Pehlivan attend?
Pelin Pehlivan attended Orta Doğu Teknik Üniversitesi / Middle East Technical University, Istanbul Bilgi University, Sabanci University.
Who are Pelin Pehlivan's colleagues?
Pelin Pehlivan's colleagues are Omer Alper Gokgoz, Zeynep Katmer, Can Er, Ümit Ünsoy, Ali Emre Duran, Onur Gökyaka, Ahmet Deniz Erol.
Not the Pelin Pehlivan you were looking for?
-
-
-
-
Pelin Pehlivan
Türkiye
Free Chrome Extension
Find emails, phones & company data instantly
Aero Online
Your AI prospecting assistant
Select data to include:
0 records × $0.02 per record
Download 750 million emails and 100 million phone numbers
Access emails and phone numbers of over 750 million business users. Instantly download verified profiles using 20+ filters, including location, job title, company, function, and industry.
Start your free trial