Business Information Security officer (BISO)

Company: NTT
Apply for the Business Information Security officer (BISO)
Location: London
Job Description:

Overview

In this role you will serve as the primary business-facing security lead, aligning security with business objectives and service delivery. You will act as a trusted advisor to stakeholders, promoting secure design and governance across the service lifecycle. You’ll drive security maturity, operational resilience, and control effectiveness through collaboration with security functions and service teams. This is an opportunity to shape security culture and ensure governance practices keep pace with business needs.

Pay / Benefits

  • tailored benefits package
  • Learning and Development opportunities
  • flexible work options

Responsibilities

  • Act as the primary security representative for assigned services and build trusted cross-functional relationships
  • Translate business, contractual, regulatory and security requirements into operational activities and embed them in service management
  • Support governance, audit and assurance activities and track remediation across security actions
  • Coordinate stakeholder participation in governance and reporting, and manage security-related communications
  • Champion security culture, awareness initiatives, and continuous improvement across the service lifecycle
  • Facilitate collaboration between business, delivery teams and security functions to ensure secure delivery and change

Key requirements

  • Minimum 5 years in information security, governance, risk, assurance, or related roles
  • Experience in complex enterprise or managed service environments
  • Experience working with senior business, operational and technology stakeholders
  • Experience supporting governance, audit and assurance activities
  • Experience translating security requirements into operational outcomes
  • Experience coordinating cross-functional activities with multiple stakeholders
  • Communication
  • Negotiation
  • Influencing skills
  • Security governance and risk management
  • Service management and operational delivery processes
  • Security reporting and performance metrics

Posted: September 14th, 2026