Our Team

A senior team of cybersecurity, compliance, and data protection specialists with deep regulatory experience across financial services, defence, public sector, and critical infrastructure.

Team Composition

Nesil Teknoloji’s consulting team comprises 50+ certified specialists organised into four practice areas:

  • Offensive Security Practice — penetration testers, red team operators, exploit developers, and threat intelligence analysts
  • Compliance & Governance Practice — Lead Implementer and Lead Auditor certified consultants for ISO/IEC 27001, 27701, 22301, and 20000
  • Data Protection Practice — KVKK, GDPR, and ISO 27701 specialists, including outsourced Data Protection Officers
  • Secure Engineering Practice — DevSecOps, application security, source code review, and threat modelling specialists

Professional Credentials Held by the Team

Offensive Security

  • OSCP — Offensive Security Certified Professional
  • OSCE — Offensive Security Certified Expert
  • OSWE — Offensive Security Web Expert
  • CREST CRT, CCT — CREST Registered / Certified Tester
  • CEH (Master) — Certified Ethical Hacker
  • GPEN, GWAPT, GXPN — GIAC penetration testing credentials

Governance, Risk & Compliance

  • ISO/IEC 27001 Lead Implementer & Lead Auditor
  • ISO/IEC 27701 Lead Implementer
  • ISO/IEC 22301 Lead Implementer (Business Continuity)
  • CISA — Certified Information Systems Auditor
  • CISM — Certified Information Security Manager
  • CRISC — Certified in Risk and Information Systems Control
  • CISSP — Certified Information Systems Security Professional

Data Protection

  • CIPP/E, CIPM, CIPT — IAPP privacy credentials
  • KVKK Data Protection Officer (DPO) certification

Engagement Model

Every engagement is led by a named senior consultant accountable for scope, quality, and outcome. Delivery teams are sized and composed to the engagement — typically a Lead Consultant, two to four practitioners, and a Quality Reviewer drawn from a separate practice for independent peer review of findings before delivery.

For multi-year compliance programmes, a Programme Director is assigned with weekly steering and quarterly board-level reporting.