Security Engineer - Identity and Access Management - Remote



Istanbul, İstanbul, Turkey
Posted on Thursday, May 11, 2023
Ready to get to know us?
We were founded in 2010 with a dynamic and agile start-up spirit. Since then we have grown into a decacorn with a valuation of over $16.5 billion, backed by Alibaba, General Atlantic, Softbank, Princeville Capital, and several sovereign wealth funds. Operating with that same energy from the first day, we believe we will achieve our targets and grow even more together!
May the tech be with us.
From day one, we believed that technology is the driver; e-commerce is the outcome. Thanks to our dedicated team, we are now one of the top 5 e-commerce companies in EMEA and one of the fastest-growing e-commerce companies in the world! Now we’re a team in our thousands, currently delivering more than 1.5 million packages every day to 27 countries. We offer our 30 million customers a flawless shopping experience.
Can’t stop, won’t stop!
Dreaming big is in our DNA: Gearing up to be the leading global e-commerce platform. As a young and dynamic company, we are constantly growing with Trendyol Tech, one of the leading R&D centers; Trendyol Express, the fastest growing delivery network; Dolap, the largest second-hand goods platform, and Trendyol Go, our instant food and grocery delivery service. And we’re not finished yet!
A vision focused on positive impact.
Digitalizing traders and SMEs, helping businesses grow, aiming for more women’s participation in the economy; we constantly strive to have a sustainable and positive impact on our customers, business partners, and society.
All team members are equal.
We believe in the power of an inclusive workplace. Our platform is for everyone, and so is our workplace. Each and every one of us contributes to the vibrant culture of Trendyol. The more voices we have represented and amplified in our business, the more we all thrive, contribute, and shape the future together.
About the Team
If you are a techie, you belong in our Technology Team that builds scalable, high-performance platforms for our customers using up-to-date and efficient technologies.
We are all working with the same purpose: To create a positive impact in our ecosystem by enabling commerce through technology.
What will keep you super-motivated here?
* Opportunity to take responsibility from day one, develop your skills and satisfy your hunger for learning every day from a talented, international, and diverse team
* Open communication and unique company culture of flexibility and start-up spirit
* Enjoying agile practices to accelerate big and complex challenges to shape the future of e- commerce while encouraging mistakes to continuously grow and develop as a team
* Creative, diverse, and focused teams committed to learning and problem-solving through collaboration
* Learn and develop through our extensive Trendyol training platform
* Support from a global team of experts, mentoring, and professional development opportunities
* Strong focus on talent, not titles!
* Connecting with your teammates socially regardless of physical distances via events, team gatherings, and social activities
* Competitive employee benefits such as centrally and international located offices, and great tech equipment
* Good blend of flexibility and team bonding such as a hybrid working model and three months working from abroad approach

Your Main Responsibilities

  • Design, development, and implementation of IAM solutions, architectures, and frameworks.
  • Develop and enforce IAM policies, standards, guidelines, and best practices across the organization.
  • Design, deploy, and manage IAM technologies, including user provisioning, authentication, authorization, access control, policy violation rules, segregation of duties, external and internal federation, and role-based access management systems.
  • Collaborate with various teams to identify and assess IAM-related risks and vulnerabilities, and propose mitigation strategies.
  • Work closely with system administrators and application owners to integrate IAM solutions into existing systems and applications.
  • Implement SSO solutions using OAuth2, OIDC, and SAML federation protocols along with defining authentication and authorization policies for user authentication processes.
  • Implement multi-factor authentication (MFA) solutions to strengthen user authentication and prevent unauthorized access.
  • Implement and manage a robust secret management solution, including the secure storage, rotation, and distribution of credentials, API keys, and other sensitive information.
  • Stay up-to-date with emerging IAM technologies, industry trends, and best practices to continuously improve the organization's IAM capabilities.

Qualities We Are Looking For

  • Experience in development and implementation, design and architecture of the IAM solutions.
  • Experience with IAM principles, standards, and frameworks (e.g., SAML, OAuth2, JWT, LDAP, OpenID Connect, Kerberos).
  • Strong knowledge of web access management, digital signatures, certificates management, and session management (e.g. understanding the concepts of cookies, sessions, header/cookie variables)
  • Proficiency in scripting languages (e.g., Java, PowerShell, JavaScript, Python) for automation and integration purposes.
  • Knowledge of IAM integration in cloud environments (e.g., AWS, Azure) and cloud security best practices.
  • Knowledge in implementing and managing secret management solutions
  • Familiarity with regulatory requirements (e.g., KVKK, GDPR, SOX) and security frameworks (e.g., NIST, ISO 27001).
  • Strong analytical and problem-solving skills, with the ability to assess complex IAM issues and provide effective solutions.
  • Excellent communication and interpersonal skills, with the ability to collaborate with cross-functional teams and stakeholders.
Follow Trendyol on LinkedIn; Trendyol Tech on Youtube and Medium