Industry Consulting Manager
NTT DATA
NTT DATA
Join our dynamic team as a Cybersecurity Engineer, playing a crucial role in implementing and maintaining robust security measures across our digital products and platforms. This position focuses on embedding security and privacy-by-design principles throughout the software development lifecycle. You will collaborate with various teams to identify, assess, and mitigate cybersecurity risks, ensuring adherence to organizational and regulatory standards.
NTT DATA is a global leader in business and technology services, committed to accelerating client success and societal progress through responsible innovation. We are recognized for our capabilities in AI, cloud, security, and digital infrastructure.
Implement and maintain comprehensive cybersecurity controls and secure development practices for digital products and platforms. Partner with Information Security, Enterprise Architects, Software Engineers, and Project Managers to deliver secure solutions. Ensure alignment with enterprise security architecture, governance frameworks, and industry standards. Translate cybersecurity and privacy requirements into actionable product development roadmaps. Conduct technical security assessments, including code reviews, static and dynamic application security testing, and penetration testing. Perform threat modeling, vulnerability assessments, and cyber risk analysis, recommending and implementing mitigation strategies. Enforce security and data privacy regulations like GDPR, CPRA, SOX, and PCI-DSS. Investigate and resolve security incidents, monitor emerging threats, and provide secure coding awareness training to development teams.
A Bachelor’s degree in Information Technology, Cybersecurity, Computer Science, or a related field is required. A minimum of 5+ years of hands-on experience in Cybersecurity Engineering, Application Security, or Information Security is essential, along with at least 5 years of experience in implementing security controls and SSDLC practices. Proficiency in threat modeling, risk assessments, vulnerability management, penetration testing, and application security reviews (static/dynamic code analysis) is expected. Experience with security tools such as Qualys, SonarQube, Detectify, or GitHub Advanced Security is necessary. A strong understanding of information security frameworks, cloud environments, web applications, APIs, and regulatory compliance (GDPR, CPRA, SOX, PCI-DSS) is vital. Familiarity with secure software engineering principles, common programming languages, and Agile/Scrum environments is required. Excellent analytical, troubleshooting, risk assessment, and problem-solving skills, coupled with the ability to communicate technical security concepts effectively to diverse stakeholders, are crucial.
NTT DATA
IT Consulting