Director: Security Incident and Vulnerability Management

vor 1 Monat


Sydney, Österreich NTT DATA Vollzeit
Director: Security Incident and Vulnerability Management

NTT DATA NTT DATA helps clients transform through consulting, industry solutions, business process services, IT modernization and managed services.

View company page

Want to be a part of our team?

The Director, Information Security is a senior management role responsible for overseeing and leading NTT's information security programme(s). This role plays a critical role in contributing towards the development of, as well as driving the implementation of NTT's security and governance strategy, frameworks, policies, and practices enabling a risk-free and scalable business operations. This role collaborates with cross functional teams, and senior leadership, and other stakeholders to maintain a robust and proactive information security posture.

Working at NTT

Key Roles and Responsibilities:

  • Contributes towards the development and drives the implementation of an organisation-wide information security strategy aligned with the NTT's business objectives.
  • Contributes towards establishing and maintaining information security policies, procedures, standards, and guidelines that comply with industry best practices and regulatory requirements.
  • Oversees the identification, assessment and management of information security risks across the organisation, including data, systems, networks, and third-party relationships.
  • Promotes a culture of security awareness among employees through training, education, and regular communication.
  • Oversees the development and execution of incident response plans to effectively address and mitigate security incidents.
  • Ensures NTT's compliance with relevant security regulations, laws, and industry standards.
  • Assesses and selects appropriate security technologies and solutions to protect NTT's digital assets.
  • Implements security monitoring tools and systems to detect and respond to security threats and providing regular reports to executive leadership and stakeholders.
  • Stays informed about emerging security threats and industry trends to continuously enhance the organisation's security posture.
  • Evaluates security risks associated with third-party vendors and service providers and implementing risk mitigation strategies.
  • Effectively communicates security incidents, responses, and mitigation efforts to relevant stakeholders.
  • Coordinates and manages internal and external security audits and assessments.
  • Provides guidance and leadership to the information security team, ensuring adherence to security policies and procedures.


Knowledge, Skills and Attributes:

  • Strong knowledge of security frameworks and standards (e.g., ISO 27001, NIST, CIS, etc.)
  • Has knowledge about PCI, HIPAA, NIST, GLBA and SOX compliance assessments
  • In-depth understanding of security technologies, tools, and best practices
  • Excellent communication and presentation skills with the ability to effectively convey complex security concepts to non-technical stakeholders
  • Strong leadership and team management skills to lead and motivate a diverse security team
  • Strategic thinking and problem-solving abilities with a focus on delivering results
  • Business acumen and the ability to align security objectives with overall business objectives


Academic Qualifications and Certifications:

  • Degree in business administration or a technology-related field required (e.g., computer science, information technology, etc.)
  • MBA or Masters in IT related field with a security focus preferred
  • Related Cybersecurity, risk management and data privacy certifications preferred: CompTIA Security+, CISSP, CISM, CISA, and/or CEH


Required Experience:

  • Significant experience in a combination of risk management, information security and IT roles in a global organisation
  • Proven track record of successfully developing and implementing enterprise-wide information security strategies and initiatives
  • Significant experience with contract and vendor negotiations and management
  • Significant experience in Agile (scaled) software development or other best in class development practices
  • Significant experience with Cloud computing / Elastic computing across virtualised environments
  • Significant experience in risk management, compliance and regulatory requirements related to information security
  • Significant working with national and international regulatory compliance frameworks such as NIST, ISO, SOX, EU GDPR, CCPA and PCI DSS
  • Significant experience and working knowledge of the following areas of technical expertise: information policy formulation, information security management, business risk management, IT risk assessment and management, IT continuity management, IT governance formulation, and organisational change management, IT financial management and IT audit

Skills Summary

What will make you a good fit for the role?

Workplace type:

Hybrid Working

Equal Opportunity Employer

NTT is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, color, sex, religion, national origin, disability, pregnancy, marital status, sexual orientation, gender reassignment, veteran status, or other protected category

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.

#J-18808-Ljbffr
  • Cyber Security

    vor 1 Tag


    Sydney, Österreich Charterhouse Recruitment (Australia) Vollzeit

    Are you a seasoned cyber security professional looking to make an impact with an industry-leadingbrand? We are seeking an experienced Cyber Security Vulnerability Specialist for a pivotal 12-month daily rate contract role, with opportunities for extension. This position offers a competitive daily rate of $800-900 including super.Role Responsibilities:Conduct...


  • Sydney, Österreich Amazon Vollzeit

    Security Detection Engineer, Vulnerability Management & RemediationJob ID: 2674463 | Amazon Corporate Services Pty LtdAmazon Security is seeking an innovative Security Engineer to join the Vulnerability Management and Remediation (VMR) team as a Vulnerability Detection Engineer. The VMR team is responsible for the discovery, assessment, triage, and...


  • Sydney, Österreich Transgrid Vollzeit

    Select how often (in days) to receive an alert: Location: Sydney - Eastern Creek, NSW, Australia Company: TransGrid High performing, diverse, inclusive, and supportive team Proudly making a difference with the transition to renewable energy Access to corporate discounts | Fitness Passport | EAP The Opportunity This is an exciting...


  • Council of the City of Sydney, Österreich Amazon.com Vollzeit

    Security Detection Engineer, Vulnerability Management & Remediation Amazon.com Free shipping on millions of items. Get the best of Shopping and Entertainment with Prime. Enjoy low prices and great deals on the largest selection of everyday essentials and other products, including fashion, home, beauty, electronics, Alexa... View company page Amazon...


  • Sydney, Österreich Murex SAS Vollzeit

    Create your future with Affin! You too can make a difference.Join us at AFFIN, where the open minds meet and be inspired by a shared commitment to great work. Here, you don't just stay at the forefront of the industry - you can make a difference too.Key Responsibilities:Security Solution Architecture:Design, develop, and implement comprehensive security...

  • Incident Response

    vor 1 Monat


    Sydney, Österreich Bank of America Vollzeit

    Job Description:At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day.One of the keys to driving Responsible Growth is being a great place to work for our...

  • Incident Response

    vor 2 Wochen


    Sydney, Österreich Bank of America Vollzeit

    Job Description:At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day.One of the keys to driving Responsible Growth is being a great place to work for our...


  • Sydney, Österreich NTT DATA Vollzeit

    Principal Cyber Risk and Compliance Manager NTT DATA NTT DATA helps clients transform through consulting, industry solutions, business process services, IT modernization and managed services. View company page Want to be a part of our team?The Cyber Risk and Compliance Manager reports into the Director of Security and is the primary point of contact...


  • Sydney, Österreich NTT DATA Vollzeit

    Principal Cyber Risk and Compliance Manager NTT DATA NTT DATA helps clients transform through consulting, industry solutions, business process services, IT modernization and managed services. View company page Want to be a part of our team?The Cyber Risk and Compliance Manager reports into the Director of Security and is the primary point of contact...


  • Sydney, Österreich Pope Recruitment Pty Ltd Vollzeit

    DescriptionSummary:We are seeking a highly skilled and experienced Chief Information Security Officer to lead our organization's information security efforts. The successful candidate will be responsible for developing and implementing security strategies, policies, and procedures to protect our organization's information assets from cyber threats and...


  • Sydney, Österreich Pope Recruitment Vollzeit

    DescriptionSummary:We are seeking a highly skilled and experienced Chief Information Security Officer to lead our organization's information security efforts. The successful candidate will be responsible for developing and implementing security strategies, policies, and procedures to protect our organization's information assets from cyber threats and...


  • North Sydney Council, Österreich Nine Vollzeit

    Nine is Australia’s largest locally owned media company – the home of Australia’s most trusted and loved brands spanning News, Sport, Lifestyle, and Entertainment. We pride ourselves on creating the best content, accessed by consumers when and how they want – across Publishing, Broadcasting and Digital.Nine’s assets include the 9Network, major...


  • North Sydney Council, Österreich Nine Vollzeit

    Nine is Australia’s largest locally owned media company – the home of Australia’s most trusted and loved brands spanning News, Sport, Lifestyle, and Entertainment. We pride ourselves on creating the best content, accessed by consumers when and how they want – across Publishing, Broadcasting and Digital.Nine’s assets include the 9Network, major...


  • North Sydney Council, Österreich Nine Vollzeit

    Nine is Australia’s largest locally owned media company – the home of Australia’s most trusted and loved brands spanning News, Sport, Lifestyle, and Entertainment. We pride ourselves on creating the best content, accessed by consumers when and how they want – across Publishing, Broadcasting and Digital.Nine’s assets include the 9Network, major...


  • Sydney, Österreich auspayplus.com.au Vollzeit

    The Game Changers:At AP+ we're changing the game! We're doing big things, and we can't do it alone. We're part of a big ecosystem, and we know teamwork and passion for our purpose is what will make us successful. We value the unique talents, perspectives, of all our employees. This includes people of all gender identities and sexual orientations, First...


  • Sydney, Österreich Palo Alto Networks Vollzeit

    Consulting Director, Incident Response (Unit 42)Full-timeDepartment: OtherJob Country: AustraliaOur MissionAt Palo Alto Networks everything starts and ends with our mission:Being the cybersecurity partner of choice, protecting our digital way of life.Our vision is a world where each day is safer and more secure than the one before. We are a company built on...


  • North Sydney Council, Österreich Nine Vollzeit

    Cyber Security Support Engineer - EndpointNine is Australia’s largest locally owned media company – the home of Australia’s most trusted and loved brands spanning News, Sport, Lifestyle, and Entertainment. We pride ourselves on creating the best content, accessed by consumers when and how they want – across Publishing, Broadcasting and...


  • North Sydney Council, Österreich Nine Vollzeit

    Cyber Security Support Engineer - EndpointNine is Australia’s largest locally owned media company – the home of Australia’s most trusted and loved brands spanning News, Sport, Lifestyle, and Entertainment. We pride ourselves on creating the best content, accessed by consumers when and how they want – across Publishing, Broadcasting and...


  • Sydney, Österreich NTT Vollzeit

    Continue to make an impact with a company that is pushing the boundaries of what is possible. At NTT DATA, we are renowned for our technical excellence, leading innovations, and making a difference for our clients and society. Our workplace embraces diversity and inclusion – it’s a place where you can continue to grow, belong, and thrive.Your...


  • Sydney, Österreich Charterhouse Recruitment (Australia) Vollzeit

    Senior Security Engineer OpportunityAre you passionate about protecting critical data in the fast-paced world of financial services? We're looking for a skilled Senior Security Engineer with 4-8 years of experience, including expertise in cloud environments.Your Role: As a Senior Security Engineer, you'll lead efforts to fortify the companies, computers,...