Make an impact with NTT DATA
Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it’s a place where you can grow, belong and thrive.
Your day at NTT DATA
The Director, Information Security is a leadership role, responsible for overseeing and leading organizational information security program(s).
This role plays a critical role in contributing towards the development of, as well as driving the implementation of company security and governance strategy, frameworks, policies, and practices enabling a risk-free and scalable business operations.
The Director, Information Security collaborates with cross functional teams, and senior leadership, and other stakeholders to maintain a robust and proactive information security posture whilst fostering a collaborative and innovative team culture focused on operational excellence.
Key responsibilities:
Contributes towards the development and drives the implementation of an organization-wide information security strategy aligned with the NTT's business objectives.
Contributes towards establishing and maintaining information security policies, procedures, standards, and guidelines that comply with industry best practices and regulatory requirements.
Oversees the identification, assessment and management of information security risks across the organization, including data, systems, networks, and third-party relationships.
Promotes a culture of security awareness among employees through training, education, and regular communication.
Oversees the development and execution of incident response plans to effectively address and mitigate security incidents.
Ensures NTT's compliance with relevant security regulations, laws, and industry standards.
Assesses and selects appropriate security technologies and solutions to protect NTT's digital assets.
Implements security monitoring tools and systems to detect and respond to security threats and providing regular reports to executive leadership and stakeholders.
Stays informed about emerging security threats and industry trends to continuously enhance the organization's security posture.
Evaluates security risks associated with third-party vendors and service providers and implementing risk mitigation strategies.
Effectively communicates security incidents, responses, and mitigation efforts to relevant stakeholders.
Coordinates and manages internal and external security audits and assessments.
Provides guidance and leadership to the information security team, ensuring adherence to security policies and procedures.
To thrive in this role, you need to have:
Significant knowledge of security frameworks and standards (for example, ISO 27001, NIST, CIS, etc.).
Significant knowledge about PCI, HIPAA, NIST, GLBA and SOX compliance assessments.
Significant understanding of security technologies, tools, and best practices.
Excellent communication and presentation skills with the ability to effectively convey complex security concepts to non-technical stakeholders.
Significant leadership and team management skills to lead and motivate a diverse security team.
Strategic thinking and problem-solving abilities with a focus on delivering results.
Significant business acumen and the ability to align security objectives with overall business objectives.
Academic qualifications and certifications:
Bachelor's degree or equivalent in business administration or a technology-related field such computer science or information technology or related preferred.
An advanced degree such as an MBA or Masters in an IT related field with a security focus preferred.
Related Cybersecurity, risk management and data privacy certifications preferred such as CompTIA Security+, CISSP, CISM, CISA, and/or CEH.
Required experience:
Significant experience in a combination of risk management, information security and IT roles in a global organization.
Proven track record of successfully developing and implementing enterprise-wide information security strategies and initiatives.
Significant experience with contract and vendor negotiations and management.
Significant experience in Agile (scaled) software development or other best in class development practices.
Significant experience with Cloud computing / Elastic computing across virtualized environments.
Significant experience in risk management, compliance and regulatory requirements related to information security.
Significant working with national and international regulatory compliance frameworks such as NIST, ISO, SOX, EU GDPR, CCPA and PCI DSS.
Significant experience and working knowledge of the following areas of technical expertise - information policy formulation, information security management, business risk management, IT risk assessment and management, IT continuity management, IT governance formulation, and organizational change management, IT financial management and IT audit.
Workplace type:
About NTT DATA
NTT DATA is a $30+ billion business and technology services leader, serving 75% of the Fortune Global 100. We are committed to accelerating client success and positively impacting society through responsible innovation. We are one of the world’s leading AI and digital infrastructure providers, with unmatched capabilities in enterprise-scale AI, cloud, security, connectivity, data centers and application services. Our consulting and industry solutions help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have experts in more than 50 countries. We also offer clients access to a robust ecosystem of innovation centers as well as established and start-up partners. NTT DATA is part of NTT Group, which invests over $3 billion each year in R&D.
Equal Opportunity Employer
NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career with us. Apply today.
Third parties fraudulently posing as NTT DATA recruiters
NTT DATA recruiters will never ask job seekers or candidates for payment or banking information during the recruitment process, for any reason. Please remain vigilant of third parties who may attempt to impersonate NTT DATA recruiters—whether in writing or by phone—in order to deceptively obtain personal data or money from you. All email communications from an NTT DATA recruiter will come from an @nttdata.com email address. If you suspect any fraudulent activity, please contact us.
Skills Required
- Significant knowledge of security frameworks and standards (ISO 27001, NIST, CIS).
- Significant knowledge about PCI, HIPAA, NIST, GLBA and SOX compliance assessments.
- Significant understanding of security technologies, tools, and best practices.
- Excellent communication and presentation skills to convey complex security concepts to non-technical stakeholders.
- Significant leadership and team management skills to lead and motivate a diverse security team.
- Strategic thinking and problem-solving abilities focused on delivering results and aligning security with business objectives.
- Significant experience in risk management, information security and IT roles in a global organization.
- Proven track record of developing and implementing enterprise-wide information security strategies and initiatives.
- Significant experience with contract and vendor negotiations and management.
- Significant experience in Agile (scaled) software development or other best-in-class development practices.
- Significant experience with Cloud computing / Elastic computing across virtualized environments.
- Significant experience with risk management, compliance and regulatory requirements related to information security (including NIST, ISO, SOX, EU GDPR, CCPA, PCI DSS).
- Experience in information policy formulation, IT risk assessment and management, IT continuity management, IT governance, organizational change management, IT financial management and IT audit.
- Bachelor's degree or equivalent in business administration, computer science, information technology, or related field.
- Advanced degree (MBA or Masters in IT/security) preferred.
- Related cybersecurity, risk management and data privacy certifications such as CompTIA Security+, CISSP, CISM, CISA, and/or CEH.
NTT DATA Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about NTT DATA and has not been reviewed or approved by NTT DATA.
-
Fair & Transparent Compensation — Feedback suggests salary bands and grades are clearly defined, making ranges and promotion criteria easier to understand. Standardized HR processes provide visibility into levels across common delivery roles.
-
Healthcare Strength — Feedback suggests the package includes comprehensive medical, dental, and vision options with HSA/FSA eligibility. Global materials emphasize comprehensive insurance and wellbeing as baseline offerings across regions.
-
Wellbeing & Lifestyle Benefits — Flexible work options, including remote/hybrid arrangements, are highlighted as core benefits and can support work–life balance. Some delivery teams report more manageable hours than strategy consultancies, improving perceived value for time.
NTT DATA Insights
What We Do
NTT DATA, Inc. is a trusted global innovator of business and technology services. We're committed to helping clients innovate, optimize and transform for long-term success. Our R&D investments help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have diverse experts in more than 50 countries and a robust partner ecosystem of established and start-up companies. Our services include business and technology consulting, data and artificial intelligence, industry solutions, as well as the development, implementation and management of applications, infrastructure, and connectivity


.jpeg)






