Jobs › Companies › NTT › IT Security Officer

À propos de ce poste IT Security Officer chez NTT

NTT · Sur site · Kallang, Singapore

Make an impact with NTT DATA
Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it’s a place where you can grow, belong and thrive.

Your day at NTT DATA


The IT Security Officer will support the customer's information security program across a hybrid infrastructure consisting of on-premises systems and AWS cloud services. This role is responsible for driving the vulnerability management lifecycle, maintaining the organizational Risk Register, coordinating risk acceptance and remediation activities with stakeholders, and overseeing day-to-day security operations related to signature updates and vendor vulnerability notifications.

Key Responsibilities


Vulnerability Management

  • Execute and manage regular vulnerability scans across on-premises infrastructure and AWS services (EC2, S3, RDS, and other relevant services)
  • Generate, review, and distribute vulnerability scan reports to relevant technical teams and leadership
  • Follow up with Subject Matter Experts (SMEs) on outstanding vulnerability findings to ensure timely remediation or documented exceptions
  • Track remediation status and escalate overdue items per defined SLAs

Risk Register & Risk Acceptance

  • Own and maintain the organization's Risk Register, ensuring it reflects current, accurate risk data
  • Draft Risk Acceptance forms for identified risks that cannot be immediately remediated
  • Coordinate with business and technical stakeholders to review, negotiate, and obtain formal approval/sign-off on risk acceptances
  • Periodically review accepted risks for continued validity and reassessment

Security Operations Oversight

  • Monitor and verify that security signature updates (AV/EDR, IDS/IPS, etc.) are applied consistently across the environment
  • Review vendor security bulletins and vulnerability notifications to determine applicability to the customer's environment
  • Ensure timely triage and action on vendor-disclosed vulnerabilities affecting in-scope systems

Impact & Risk Analysis

  • Perform impact analysis on identified vulnerabilities using CVSS (Common Vulnerability Scoring System) scores
  • Contextualize CVSS base scores against the actual environment (asset criticality, exposure, compensating controls) to determine real-world risk and prioritization
  • Provide risk-based recommendations to stakeholders to support remediation prioritization decisions

Reporting & Communication

  • Prepare periodic status reports/dashboards on vulnerability management, risk register status, and outstanding risk acceptances for leadership review
  • Communicate effectively with technical SMEs, business stakeholders, and management across varying levels of technical understanding


Vulnerability Management

  • Execute and manage regular vulnerability scans across on-premises infrastructure and AWS services (EC2, S3, RDS, and other relevant services)
  • Generate, review, and distribute vulnerability scan reports to relevant technical teams and leadership
  • Follow up with Subject Matter Experts (SMEs) on outstanding vulnerability findings to ensure timely remediation or documented exceptions
  • Track remediation status and escalate overdue items per defined SLAs

Risk Register & Risk Acceptance

  • Own and maintain the organization's Risk Register, ensuring it reflects current, accurate risk data
  • Draft Risk Acceptance forms for identified risks that cannot be immediately remediated
  • Coordinate with business and technical stakeholders to review, negotiate, and obtain formal approval/sign-off on risk acceptances
  • Periodically review accepted risks for continued validity and reassessment

Security Operations Oversight

  • Monitor and verify that security signature updates (AV/EDR, IDS/IPS, etc.) are applied consistently across the environment
  • Review vendor security bulletins and vulnerability notifications to determine applicability to the customer's environment
  • Ensure timely triage and action on vendor-disclosed vulnerabilities affecting in-scope systems

Impact & Risk Analysis

  • Perform impact analysis on identified vulnerabilities using CVSS (Common Vulnerability Scoring System) scores
  • Contextualize CVSS base scores against the actual environment (asset criticality, exposure, compensating controls) to determine real-world risk and prioritization
  • Provide risk-based recommendations to stakeholders to support remediation prioritization decisions

Reporting & Communication

  • Prepare periodic status reports/dashboards on vulnerability management, risk register status, and outstanding risk acceptances for leadership review
  • Communicate effectively with technical SMEs, business stakeholders, and management across varying levels of technical understanding

Required Qualifications


  • Bachelor's degree in information security, Computer Science, or related field (or equivalent work experience)
  • 3–5+ years of experience in IT security operations, vulnerability management, or risk management
  • Hands-on experience with vulnerability scanning tools (e.g., Tenable/Nessus, Qualys, Rapid7)
  • Working knowledge of AWS security services and shared responsibility model (e.g., Security Hub, GuardDuty, Inspector, IAM)
  • Solid understanding of on-premises infrastructure security (servers, network devices, endpoints)
  • Strong understanding of CVSS scoring methodology and practical risk-based prioritization
  • Experience developing and managing Risk Registers and Risk Acceptance documentation
  • Excellent stakeholder management and communication skills, with ability to work cross-functionally

Preferred Qualifications

  • Relevant certifications: Security+, CySA+, CISSP, CRISC, AWS Security Specialty, or similar
  • Experience with GRC tools (e.g., ServiceNow GRC, Archer)
  • Familiarity with frameworks such as NIST 800-53, NIST CSF, or ISO 27001
  • Experience working in a hybrid on-prem/cloud environment supporting external customers

Soft Skills

  • Strong analytical and problem-solving skills
  • Detail-oriented with strong documentation habits
  • Ability to influence and drive accountability without direct authority
  • Comfortable working with ambiguity and competing priorities

This is a 1 year fixed term contract role. Candidates must be open to work from client site

Workplace type:


About NTT DATA
NTT DATA is a $30+ billion business and technology services leader, serving 75% of the Fortune

Global 100. We are committed to accelerating client success and positively impacting society through

responsible innovation. We are one of the world’s leading AI and digital infrastructure providers, with

unmatched capabilities in enterprise-scale AI, cloud, security, connectivity, data centers and

application services. Our consulting and industry solutions help organizations and society move

confidently and sustainably into the digital future. As a Global Top Employer, we have experts in more

than 70 countries. We also offer clients access to a robust ecosystem of innovation centers as well as

established and start-up partners. NTT DATA is part of NTT Group, which invests over $3 billion each

year in R&D.


Equal Opportunity Employer
NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career with us. Apply today.


Third parties fraudulently posing as NTT DATA recruiters 

NTT DATA recruiters will never ask job seekers or candidates for payment or banking information during the recruitment process, for any reason. Please remain vigilant of third parties who may attempt to impersonate NTT DATA recruiters whether in writing or by phone in order to deceptively obtain personal data or money from you. All email communications from an NTT DATA recruiter will come from an @nttdata.com email address. If you suspect any fraudulent activity, please contact us.

Prêt à postuler chez NTT ?
Postuler chez NTT

À propos de NTT

Is innovation part of your DNA? Do you want to enable a connected future for people, organizations, and society? Join our growing global NTT family and you’ll be part of the world’s largest ICT company (by revenue). We’ve combined the capabilities of 28 remarkable companies to become one, leading technology services provider. Together, we help our people, clients, and communities do great things with technology to create a more secure and connected future. We employ 40,000 people across 57 countries. By bringing together the world’s best technology companies and emerging innovators, we work together to deliver sustainable outcomes to businesses and the world. Innovation is part of our DNA. W

Voir tous les emplois chez NTT →

Emplois similaires

NTT
Security Managed Services Engineer (L3)
NTT
⚡ Postuler tôt Kallang, Singapore Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 10 h
NTT
Networking Technical Services Systems Integration Specialist
NTT
⚡ Postuler tôt Taipei, Taiwan Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 10 h
NTT
Ingeniero(a) Senior de Redes – Diseño e Implementación
NTT
⚡ Postuler tôt Santiago, Chile Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 1 j
NTT
Network Security Engineer (Bilingüe)
NTT
⚡ Postuler tôt Santiago, Chile Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 1 j
NTT
Associate Engineer - AI services
NTT
⚡ Postuler tôt Chennai, India Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 1 j
NTT
Database Administrator
NTT
⚡ Postuler tôt Texas, United States of Americ... Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 1 j
NTT
DevOps Engineer
NTT
⚡ Postuler tôt Texas, United States of Americ... Sur site $92,000–$131,000
● Nouveau 👁 Vu ✓ Postulé il y a 1 j
NTT
Site Reliability Engineer
NTT
⚡ Postuler tôt Texas, United States of Americ... Sur site $80,000–$114,000
● Nouveau 👁 Vu ✓ Postulé il y a 1 j
NTT
Order Management Administrator
NTT
⚡ Postuler tôt Mumbai, India Sur site
● Nouveau 👁 Vu ✓ Postulé il y a 1 j

Inscrivez-vous pour des suggestions adaptées aux emplois que vous ouvrez et aux recherches que vous enregistrez.

Plus d’emplois chez NTT

Voir tous les emplois chez NTT →

Postuler maintenant
🤖

Doucement — un instant

JobsRadar a été conçu pour de vraies personnes qui traversent une période difficile dans leur recherche d’emploi — pas pour des requêtes automatisées. Vous cliquez beaucoup trop vite et vous êtes maintenant temporairement bloqué.

Revenez plus tard. Si vous cherchez réellement un emploi, nous sommes de votre côté — agissez simplement comme un être humain.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Prenez une longueur d’avance dans votre recherche d’emploi.

Rejoignez notre canal Telegram pour ce qui vous aide à décrocher le poste — références salariales, le pouls hebdomadaire du marché et les annonces de nouveautés. Pas de spam, que du signal.

Rejoindre le canal — c’est gratuit