Turkey's insurance sector data authority with security-first infrastructure
Sigorta Bilgi ve Gözetim Merkezi operates Turkey's centralized insurance data repository—a regulatory mandate established under Turkish insurance law to aggregate sector-wide risk and fraud data. The tech stack reveals a security-hardened, enterprise-grade operation: SIEM, DLP, AWS WAF layered over Kafka + Kafka-adjacent messaging (RabbitMQ), Oracle + WebLogic backend, and Spring microservices. Current hiring is skewed toward senior engineering and security roles with accelerating velocity, while active projects track red-team scenarios, phishing resilience, and large-scale system transformation—suggesting the organization is actively hardening its perimeter and modernizing legacy monoliths.
Sigorta Bilgi ve Gözetim Merkezi is a nonprofit institution established in 2003, operating under the Turkish Insurance Law as the sector's centralized data authority. It collects, stores, and distributes insurance risk and fraud data across Turkish insurers, reinsurers, pension companies, and regulatory bodies. The organization employs 201–500 people across engineering, data, security, and support functions, all based in Istanbul. Its core mandate is to enable sound insurance pricing, prevent fraud, and strengthen public confidence in the Turkish insurance system through reliable data governance and regulatory support.
Oracle + WebLogic backend with Spring microservices (Spring Boot, Cloud, Security, Data). Data flow runs via Kafka and RabbitMQ. Security layer includes SIEM, DLP, and AWS WAF. Infrastructure: Docker, Kubernetes, Linux. CI/CD via Jenkins and GitLab.
Red team exercises, phishing simulation, cyber-security awareness training, vulnerability management improvement, and large-scale system modernization. Also pursuing API integration roadmaps and business process design to reduce integration complexity and legacy system dependencies.
Other companies in the same industry, closest in size