Business Information Security officer (BISO)

Company: NTT DATA
Apply for the Business Information Security officer (BISO)
Location: London
Job Description:

Overview

In this role you serve as the primary business-facing security lead, aligning security requirements with business objectives and service delivery. You partner with business and technology stakeholders to embed security into service lifecycles, governance, and change initiatives. You drive security maturity and operational resilience through cross-functional collaboration and continuous improvement, acting as a trusted security advisor. You shape governance and reporting to ensure clear accountability and impactful security outcomes.

Pay / Benefits

  • tailored benefits
  • Learning and Development opportunities
  • flexible work options

Responsibilities

  • Act as the primary security representative for assigned services and maintain trusted stakeholder relationships
  • Translate business, contractual, regulatory, and security requirements into operational activities
  • Embed security requirements into service management processes and delivery practices
  • Support assessment of business impact from security risks and significant service changes
  • Coordinate with specialist security functions for additional expertise
  • Support operation and governance of the Security Management Plan and related activities
  • Coordinate stakeholder participation in governance, audits and assurance activities
  • Track and report security actions, findings and improvement initiatives
  • Facilitate security reporting and management information to stakeholders
  • Promote security awareness and accountability; support continuous improvement initiatives
  • Coordinate security champion activities and governance forums
  • Foster positive security behaviours and cross-functional collaboration

Key requirements

  • Minimum 5 years in information security, governance, risk, assurance, compliance or business information security roles
  • Experience in complex enterprise or managed service environments
  • Experience working with senior business, operational and technology stakeholders
  • Experience supporting governance, audit and assurance activities
  • Experience translating security requirements into practical operational outcomes
  • Experience coordinating cross-functional activities with multiple stakeholders
  • Communication
  • Negotiation
  • Influencing skills
  • Security governance and risk management principles
  • Security assurance and control management
  • Service management and operational delivery processes

…

Posted: October 1st, 2026