Jobs and Careers
NT

Senior Vice President, Information Security

NTT DATA
Texas, United States of America, United StatesRemotefull_timeVerifiedPosted 22 Nov 2024
💰 $400,000/yr($280,000/yr$400,000/yr)

About the role

Make an impact with NTT DATA
Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it’s a place where you can grow, belong and thrive.

Your day at NTT DATA

The Global Chief Information Security Officer (CISO) is a seasoned executive responsible for establishing and maintaining a robust information, cyber and technology security program within a complex global environment.

The CISO serves as a strategic partner to the executive leadership team, aligning security initiatives with business objectives while mitigating risk and ensuring regulatory compliance. This individual possesses a unique blend of technical expertise, business acumen, leadership and communication skills to navigate the evolving threat landscape and protect the organization’s critical infrastructure, information and assets around the globe.

This role will have dual solid line reporting to the CEO of NTT Global Data Centers and the CISO of NTT Data Services, Inc.

What you'll be doing

Strategic Leadership:

  • Develop, implement, champion and consistently improve a comprehensive information, cyber and technology security strategy and programs that align with the organization’s overall business goals, risk appetite, and regulatory requirements.
  • Provide strategic guidance to the executive leadership team on information security matters, emerging threats, and industry best practices.
  • Foster a culture of security awareness and accountability throughout the organization, establishing & executing education, training, and continuous improvement, providing leadership and guidance to all staff members worldwide.
  • Oversee that information security programs are being followed as intended and per formal governance.
  • Partner with stakeholders to raise awareness for security strategy and policy

Governance, Rick Management & Compliance:

  • Establish and consistently improve Security Policies and Procedures to fulfill the information, cyber and technology security strategy and required standards throughout the organization in compliance with legal requirements
  • Modify and maintain a robust risk management framework to identify, assess, and mitigate information security risks across the enterprise.
  • Ensure compliance with relevant cybersecurity regulations and industry standards, such as HIPAA, CIS 18, NIST Cybersecurity Framework, SOC2, and PCI DSS.
  • Oversee regular security audits, risk assessments, vulnerability scans, and penetration tests to identify vulnerabilities and track remediation efforts.
  • Evaluate and manage third-party vendors and partners to ensure they meet the organization’s security standards and contractual obligations.
  • Conduct regular security assessments of third-party vendors and implement appropriate risk mitigation strategies.
  • Manage and participate in audit and compliance related activities
  • Consistently assess and communicate all security risks associated with all purchase and practices of the company

Security Architecture, Operations and Engineering:

  • Participate in business technology planning and contribute to the future vision of technology and systems
  • Partner with the business and other Information Systems (IS) and Data Privacy organizations to drive coherent end to end architectures that feature security as “built-in” rather than “bolted-on.”
  • Oversee the implementation, management and continuous improvement of security technologies and controls, including intrusion detection and prevention systems, firewalls, endpoint protection, data loss prevention, CASB, SASE, identity and access management solutions, etc.
  • Oversee the operation of all security controls and cultivate a “bias for action and recovery” while maintaining cyber safety during outages.

Incident Response, Digital Forensics and Recovery:

  • Develop, implement, and consistently improve comprehensive incident response and disaster recovery plans to minimize the impact of security breaches and ensure business continuity.
  • Lead the investigation and resolution of security incidents, coordinating with internal and external stakeholders, including law enforcement and regulatory agencies, as needed.
  • Creatively and independently provide resolution to security incidents in a cost-effective manner while minimizing impact to the business overall
  • Design the organization, its policies and programs for as much resiliency as possible, preparing for rapid assessment, remediation and recovery of any possible future cybersecurity events.

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

NTT DATA

View company profile →