Security Consultant / Operational Security & GRC
Technical Consultancy, London
Security Consultant / Operational Security & GRC
Technical Consultancy, London

The team you'll be working with:

Security Consultant / Operational Security & GRC

 

The team that you’ll be working with:

 

NTT DATA is one of the world’s largest global security service providers, partnering with some of the most recognized security technology brands. We’re looking for passionate, curious, and motivated individuals to join our team.

What you'll be doing:

 

Working in a client-facing consultancy role, you will provide operational security management, oversight and GRC advisory services. You will help clients translate business, threat and regulatory requirements into practical operational risk decisions and security improvements.

  • Security governance and oversight: Establish, operate and improve proportionate security governance, policies, standards, control frameworks, decision forums and reporting. Provide independent oversight of security performance, control ownership, risk treatment and remediation.
  • Operational security management: Oversee day-to-day security risks across technology and service environments, ensuring that vulnerabilities, threats, alerts, incidents and control weaknesses are assessed, prioritised, assigned and progressed to closure.
  • Vulnerability and exposure oversight: Review vulnerability and security testing outputs, challenge prioritisation using asset criticality, exploitability, threat intelligence and business impact, and monitor remediation, exceptions and risk acceptance.
  • Threat and alert oversight: Work with security operations, technology and service teams to interpret threat intelligence and material alerts, identify emerging exposure, confirm appropriate response and escalate risks requiring management action.
  • Risk management: Facilitate risk identification and assessment, maintain risk and issue records, define treatment plans, evaluate residual risk and support accountable risk acceptance. Ensure clear traceability from threats and vulnerabilities to risks, controls and actions.
  • Control assurance and compliance: Assess the design and operating effectiveness of security controls against contractual, legal, regulatory and recognised framework requirements, including ISO/IEC 27001, NIST CSF and applicable sector obligations.
  • Audit and remediation: Plan and support internal and external audits, coordinate evidence, respond to findings and maintain oversight of corrective actions. Challenge closure evidence and report overdue, systemic or material control gaps.
  • Security reporting: Produce concise management information covering risk exposure, vulnerabilities, threats, alerts, incidents, control performance, compliance and remediation. Use defined data sources, thresholds and trends to support risk-based decisions.
  • Stakeholder and client engagement: Act as a trusted adviser to client security leaders, service owners, technical teams, auditors and third parties. Translate complex operational and regulatory matters into clear decisions, ownership and action.
  • Consulting delivery: Lead or contribute to security assessments, governance reviews, operating model development, control improvement programmes and client deliverables. Shape pragmatic recommendations that are proportionate to the client’s risk appetite and operating context.
  • Continuous improvement: Identify recurring weaknesses and opportunities to simplify governance, strengthen controls, improve data quality and embed sustainable security practices.

What experience you'll bring:

What experience you’ll bring:

You will bring broad information security experience and be comfortable moving between governance, operational oversight and hands-on consultancy. Evidence should include a number of the following:

  • Five or more years’ experience in information security management, operational security, GRC, security consulting, risk, audit or compliance roles.
  • At least one of the following professional certification such as CISM, CISSP, CRISC, CISA or ISO/IEC 27001 Lead Auditor or Lead Implementer.
  • UK Cyber Security Council title advantageous (Practitioner)
  • Strong understanding of governance, risk and control frameworks such as ISO/IEC 27001, NIST CSF and NIST 800-53, together with relevant legal, regulatory, contractual and sector requirements.
  • Experience overseeing vulnerabilities, threats, alerts, incidents, security risks and remediation across enterprise technology or managed service environments.
  • Practical knowledge of vulnerability management and security operations, including risk-based prioritisation, escalation, exception management and closure assurance.
  • Experience completing security risk assessments, control assessments, compliance reviews or audits and translating findings into prioritised treatment plans.
  • Ability to define meaningful security measures, reporting and RAG thresholds using reliable data sources to support management oversight and risk-based decisions.
  • Consulting experience, including discovery, stakeholder interviews, analysis, report writing, presenting recommendations and supporting clients through implementation or remediation.
  • Credibility with senior stakeholders, technical teams, service providers, auditors and regulators, with the confidence to provide constructive challenge and escalate material concerns.
  • A practical leadership style that balances independent oversight with direct involvement in resolving security issues and improving controls.
  • Clear written and verbal communication, with the ability to explain technical, risk and compliance matters to both technical and non-technical audiences.
  • Strong attention to detail, sound judgement and the ability to manage competing priorities in a client-facing environment.
  • A valid right to work in the UK and eligibility to obtain UK Security Check clearance.

 

Who we are:

At NTT DATA, you have endless opportunities to think big, act bold and take ownership. As a $30+ billion business and technology services, AI and digital infrastructure leader, we co-innovate solutions with clients and partners globally for business and societal impact. Serving 75% of the Fortune Global 100, with experts in over 70 countries, we encourage experimentation and recognize great work. Proudly a Global Top Employer, NTT DATA is part of NTT Group, which invests over $3 billion annually in R&D. Make this the place where you belong, learn, and build your network. Make this the place where you grow.

what we'll offer you:

We offer a range of tailored benefits that support your physical, emotional, and financial wellbeing. Our Learning and Development team ensure that there are continuous growth and development opportunities for our people. We also offer the opportunity to have flexible work options.

You can find more information about NTT DATA UK & Ireland here: https://uk.nttdata.com/

We are an equal opportunities employer. We believe in the fair treatment of all our employees and commit to promoting equity and diversity in our employment practices. We are committed to creating a diverse and inclusive workforce. We actively collaborate with individuals who have disabilities and long-term health conditions which have an effect on their ability to do normal daily activities, ensuring that barriers are eliminated when it comes to employment opportunities. In line with our commitment, we guarantee an interview to applicants who declare to us, during the application process, that they have a disability and meet the minimum requirements for the role. If you require any reasonable adjustments during the recruitment process, please let us know. Join us in building a truly diverse and empowered team.

Back to search Email to a friend Apply now

Location
Epworth House, London

“Upon joining the NTT DATA UK family, you will experience a culturally diverse organisation living our values of Clients First, Teamwork and Foresight as we partner with our customers every day.

At NTT DATA UK, we are proud to support and invest in our people. We offer a variety of rewarding career paths and opportunities to develop professionally - with access to cutting edge innovation.”

Niccolo Spataro, CEO, NTT DATA UK

NTT DATA
#loveyourwork
Apply
Jobs at NTT DATA

Browse all