Business Information Security officer (BISO)
Solutions Architecture, London
Business Information Security officer (BISO)
Solutions Architecture, London

The team you'll be working with:

The Business Information Security Officer (BISO) acts as the primary business-facing security lead, working under the direction of the Account Security Director (vCISO).

The role ensures that business objectives, security requirements and service delivery activities remain aligned. Acting as a trusted advisor to business and operational stakeholders, the BISO promotes the effective integration of security requirements into service delivery, operational processes and business change activities.

Working closely with service teams and specialist security functions, the BISO supports the implementation of security governance arrangements, facilitates stakeholder engagement and helps drive continual improvement in security maturity, operational resilience and control effectiveness.

The role provides leadership, guidance and coordination across business and service stakeholders, helping ensure security considerations are understood, embedded and effectively managed throughout the service lifecycle.

What you'll be doing:

Business Security Leadership

  • Act as the primary business-facing security representative for assigned services.
  • Build and maintain trusted relationships with business, technology and service stakeholders.
  • Promote understanding of security responsibilities, obligations and control ownership.
  • Support stakeholders in balancing business objectives, operational priorities and security requirements.
  • Facilitate effective collaboration between stakeholders and security functions.

Security Requirements & Service Alignment

  • Support the translation of business, contractual, regulatory and security requirements into operational activities.
  • Promote the integration of security requirements within service management processes and delivery practices.
  • Ensure security requirements remain understood and appropriately embedded throughout the service lifecycle.
  • Support assessment of the business impact arising from security risks, issues and significant service changes.
  • Facilitate engagement with specialist security functions where additional expertise is required.

Governance, Assurance & Improvement Support

  • Support operation of the Security Management Plan and associated governance activities.
  • Coordinate stakeholder participation in security governance, audit and assurance activities.
  • Support the tracking and reporting of security actions, findings and improvement initiatives.
  • Promote accountability for remediation activities and control improvements.
  • Contribute to the continual improvement of governance and assurance practices.

Stakeholder Engagement & Communication

  • Facilitate communication between business stakeholders, delivery teams and security functions.
  • Support the development and communication of security reporting and management information.
  • Promote awareness of security priorities, obligations and initiatives.
  • Support governance forums through stakeholder coordination and action management.

Security Culture & Continuous Improvement

  • Champion positive security behaviours and shared responsibility for security.
  • Support security awareness and engagement initiatives.
  • Coordinate Security Champion activities where established.
  • Encourage identification of improvement opportunities and lessons learned.
  • Support delivery of agreed security improvement initiatives.

Key Interfaces

  • Account Security Director (CISO)
  • Business Stakeholders
  • Technology Stakeholders
  • Service Owners
  • Service Delivery Managers
  • Information Security Managers
  • Security Architects
  • Security Operations Teams
  • Risk and Compliance Functions
  • Operational Resilience Functions
  • Audit Functions
  • Security Champions
  • Third-Party Suppliers and Partners

What experience you'll bring:

Essential Experience

  • Minimum 5 years' experience within information security, security governance, risk, assurance, compliance or business information security roles.
  • Experience operating within complex enterprise or managed service environments.
  • Experience working with senior business, operational and technology stakeholders.
  • Experience supporting governance, audit and assurance activities.
  • Experience translating security requirements into practical operational outcomes.
  • Experience coordinating cross-functional activities involving multiple stakeholders.

Knowledge & Skills

  • Security governance and risk management principles.
  • Security assurance and control management practices.
  • Service management and operational delivery processes.
  • Business relationship management and stakeholder engagement.
  • Security reporting, management information and performance metrics.
  • Operational resilience and business continuity principles.
  • Regulatory, contractual and policy compliance requirements.
  • Communication, negotiation and influencing skills.
  • Ability to communicate complex security matters in business terms.
  • Strong organisational, coordination and problem-solving capabilities.

Qualifications & Professional Membership

  • CISSP, CISM, CRISC, ISO/IEC 27001 or equivalent recognised security qualification.
  • Professional registration or accreditation desirable.
  • Membership of a recognised professional body.
  • Evidence of continuing professional development.

 

Who we are:

At NTT DATA, you have endless opportunities to think big, act bold and take ownership. As a $30+ billion business and technology services, AI and digital infrastructure leader, we co-innovate solutions with clients and partners globally for business and societal impact. Serving 75% of the Fortune Global 100, with experts in over 70 countries, we encourage experimentation and recognize great work. Proudly a Global Top Employer, NTT DATA is part of NTT Group, which invests over $3 billion annually in R&D. Make this the place where you belong, learn, and build your network. Make this the place where you grow.

what we'll offer you:

We offer a range of tailored benefits that support your physical, emotional, and financial wellbeing. Our Learning and Development team ensure that there are continuous growth and development opportunities for our people. We also offer the opportunity to have flexible work options.

You can find more information about NTT DATA UK & Ireland here: https://uk.nttdata.com/

We are an equal opportunities employer. We believe in the fair treatment of all our employees and commit to promoting equity and diversity in our employment practices. We are committed to creating a diverse and inclusive workforce. We actively collaborate with individuals who have disabilities and long-term health conditions which have an effect on their ability to do normal daily activities, ensuring that barriers are eliminated when it comes to employment opportunities. In line with our commitment, we guarantee an interview to applicants who declare to us, during the application process, that they have a disability and meet the minimum requirements for the role. If you require any reasonable adjustments during the recruitment process, please let us know. Join us in building a truly diverse and empowered team.

Back to search Email to a friend Apply now

Location
Epworth House, London

“Upon joining the NTT DATA UK family, you will experience a culturally diverse organisation living our values of Clients First, Teamwork and Foresight as we partner with our customers every day.

At NTT DATA UK, we are proud to support and invest in our people. We offer a variety of rewarding career paths and opportunities to develop professionally - with access to cutting edge innovation.”

Niccolo Spataro, CEO, NTT DATA UK

NTT DATA
#loveyourwork
Apply
Jobs at NTT DATA

Browse all