Head of Security Operations
NTT DATAAbout the role
Make an impact with NTT DATA
Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it’s a place where you can grow, belong and thrive.
Your day at NTT DATA
The Head of Information Security Operations is a senior leadership position responsible for overseeing and managing all aspects of an organization’s information security operations. This role is crucial for safeguarding the organization’s data, systems, and infrastructure from cyber threats. The Head of Information Security Operations collaborates with cross-functional teams, sets strategic direction, and ensures the effective implementation of security measures to protect the confidentiality, integrity, and availability of the organization’s information assets.What you'll be doing
Key Roles and Responsibilities:
Providing Security-Related Advice and Guidance:
- Develops an Operations strategy that aligns with business objectives.
- Advises senior management and stakeholders on security matters.
- Ensures that Operations procedures, and protocols are updated and comply with industry best practices and legal requirements.
Security Governance and Compliance:
- Monitors compliance with security policies and regulatory requirements.
- Prepares for audits and assessments.
Leadership and Team Management:
- Provides direction and guidance for operations, administration, and results for a major departments or multiple departments within a function or work area.
- Interdepartmental Coordination:
- Promote and manage interdepartmental coordination to ensure a unified security posture.
- Facilitate regular meetings and communication between security teams and other organizational units.
- Establishes operational objectives for managers and teams.
- Builds and leads a high-performing security operations team.
- Provides mentorship, coaching, and professional development.
- Fosters a collaborative and inclusive work environment.
- Communicates security priorities and initiatives to executive leadership.
- Manages and is accountable for the Security budget for the operations.
Overseeing Security Operations:
- Monitors day-to-day security operations, including system monitoring, investigations, and incident response.
- Collaborates with other departments (HR, IT) to integrate security policies and procedures into overall operations.
Risk Assessments & Risk Management:
- Identifies, assesses, and manages security risks to the organization’s employees, clients, assets, and facilities.
- Develops and implements security plans to mitigate these risks.
- Prioritizes security investments based on risk exposure and reports on risk posture to senior management.
- Report on risk posture to senior management.
- Ensures business continuity and disaster recovery measures are in place.
Cybersecurity Incident Response (CSIRT):
- Leads and manages the organization’s CSIRT team.
- Develops and maintains incident response plans, playbooks, and procedures.
- Attack Surface Management: Monitor and maintain ASM alerting and implement processes to mitigate external threats.
- Coordinates and responds to security incidents, breaches, and vulnerabilities.
- Conducts post-incident analysis and continuous improvement.
Digital Forensics and Cybersecurity Investigations:
- Collects, processes, preserves, analyzes, and presents digital-related evidence to support vulnerability mitigation and/or investigations.
- Applies tactics, techniques, and procedures to a full range of tools and processes related to administrative, criminal, and counterintelligence gathering.
Hacking Centre (Penetration Testing):
- Oversees the penetration testing program.
- Collaborates with external vendors or internal teams to conduct regular security assessments.
- Reviews and acts on penetration test findings to enhance security posture.
- Ensures compliance with industry standards and regulations.
Global Security Centres of Excellence:
Establishes a Centre of Excellence ensuring consistency, reducing risks, costs, and alignment with best practices, while providing skill and scale to smaller business units. The following CoE’s includes but not limited to:
Information Security Platforms:
- Manages security tools and platforms (e.g., SASE, SIEM, EDR, Firewalls, vulnerability management
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s