Logo for NTT DATA

Cybersecurity Audit & Compliance Specialist

Role overview

Qualifications

  • 7 to 10 years of strong experience in cybersecurity audit, governance, risk, and compliance (GRC) activities
  • 3 to 5 years of working knowledge of ISO/IEC 27001
  • Familiarity with cybersecurity and information security frameworks
  • 5 years of strong experience with audit evidence collection and documentation

Responsibilities

  • Support cybersecurity audit, compliance, and certification projects
  • Prepare the organization for internal and external information security audits
  • Partner with cross-functional teams to collect and present audit evidence
  • Analyze cybersecurity requirements across applicable standards and provide guidance

Key facts

Other skills

  • Governance
  • Communication
  • Detail Oriented
  • Organizational Skills
  • Teamwork

About the company

NTT DATA logo

NTT DATA

IT Services & IT Consulting

NTT DATA – a part of NTT Group – is a trusted global innovator of IT and business services headquartered in Tokyo. We help clients transform through consulting, industry solutions, business process services, digital & IT modernization and managed services. NTT DATA enables them, as well as society, to move confidently into the digital future. We are committed to our clients’ long-term success and combine global reach with local client attention to serve them in over 50 countries around the globe.

Company details

Company typeXLarge
IndustryIT Services & IT Consulting
Company size10001

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Company Overview:

Req ID: 387326

NTT DATA strives to hire exceptional, innovative, and passionate individuals who want to grow with us. If you want to be part of an inclusive, adaptable, and forward-thinking organization, apply now. NTT DATA's Client is currently seeking a team member to join their team in Pittsburgh, Pennsylvania (US-PA), United States (US). REMOTE

Job Description:

Project Overview

The Policy, Audits, and Questionnaires (PAQ) team plays a critical role in maintaining enterprise compliance and strengthening customer and regulatory confidence. The team manages the lifecycle of information security policies, supports customer security inquiries, and coordinates internal and external cybersecurity audits and certification activities.

This role will support the organization's audit readiness and compliance efforts by coordinating evidence collection, maintaining accurate documentation, identifying compliance gaps, and working with cross-functional stakeholders to meet the requirements of global information security standards and certification frameworks, including ISO 27001, Cyber Essentials, SOC, ENS (Spain), and other applicable cybersecurity standards.

Key Responsibilities

  • Support cybersecurity audit, compliance, and certification projects, ensuring activities and deliverables are completed accurately and on schedule.
  • Support certification and compliance initiatives such as ISO 27001, ENS Spanish security requirements, Cyber Essentials, SOC, and other global information security frameworks and standards.
  • Prepare the organization for internal and external information security audits and coordinate various stages of the audit lifecycle.
  • Partner with cross-functional teams, external advisors, auditors, and vendors to collect, organize, review, validate, and present audit evidence.
  • Analyze cybersecurity requirements across applicable standards, regulations, and corporate policies and provide guidance to stakeholders on compliance expectations.
  • Perform requirements assessments and gap analyses to identify areas of non-compliance or control deficiencies.
  • Develop and recommend appropriate corrective and remediation actions and track identified issues through closure.
  • Evaluate information security provisions within vendor and customer contracts and provide guidance regarding alignment with corporate security policies and standards.
  • Maintain accurate, current, well-organized, and audit-ready compliance documentation, evidence repositories, policies, and supporting records.
  • Coordinate with control owners and business stakeholders to ensure required documentation and evidence are provided within established timelines.
  • Monitor remediation activities and follow up with stakeholders to ensure identified audit findings and compliance gaps are addressed.
  • Assist with initiatives focused on improving the efficiency, quality, consistency, and productivity of cybersecurity compliance, certification, and audit processes.
  • Communicate audit requirements, findings, risks, and remediation status clearly to technical and non-technical stakeholders.

Required Skills & Experience

  • 7 to 10 years of strong experience in cybersecurity audit, governance, risk, and compliance (GRC) activities.
  • 3 to 5 years of working knowledge of ISO/IEC 27001 and associated information security controls and certification requirements.
  • Familiarity with cybersecurity and information security frameworks and standards such as SOC, Cyber Essentials, ENS, NIST, or similar frameworks.
  • 3 to 5 years of experience supporting internal/external audits and security certification programs.
  • 5 years of strong experience with audit evidence collection, review, validation, and documentation.
  • Ability to interpret security standards and regulatory requirements and translate them into actionable compliance requirements.
  • Experience conducting requirements assessments, control assessments, and gap analyses.
  • Experience tracking audit findings, corrective actions, and remediation plans through completion.
  • Strong project coordination and organizational skills with the ability to manage multiple compliance activities and deadlines simultaneously.
  • Demonstrated ability to work effectively with cross-functional teams, control owners, auditors, vendors, and external advisors.
  • Excellent documentation skills with strong attention to detail and accuracy.
  • Strong written and verbal communication skills, including the ability to communicate cybersecurity and compliance requirements to diverse stakeholders.

Preferred Qualifications

  • Relevant cybersecurity, audit, risk, or compliance certifications such as CISA, CISSP, CRISC, ISO 27001 Lead Auditor/Lead Implementer, or equivalent are preferred.
  • Experience working within a large, global enterprise environment.
  • Experience supporting multiple cybersecurity certification or assurance programs concurrently.
  • Familiarity with reviewing cybersecurity requirements in customer and vendor contracts.
  • Experience using GRC, audit management, or compliance tracking platforms is an advantage.

Ideal Candidate Profile

The ideal candidate is a detail-oriented Cybersecurity Audit & Compliance professional with hands-on experience supporting ISO 27001 and other security certification programs. The candidate should be comfortable coordinating audits, gathering and validating evidence, performing compliance gap assessments, managing remediation activities, and collaborating with technical and business stakeholders across the organization.

About NTT DATA:

NTT DATA is a $30 billion trusted global innovator of business and technology services. We serve 75% of the Fortune Global 100 and are committed to helping clients innovate, optimize, and transform for long-term success. As a Global Top Employer, we have diverse experts in more than 50 countries and a robust partner ecosystem of established and start-up companies. Our services include business and technology consulting, data and artificial intelligence, industry solutions, as well as the development, implementation, and management of applications, infrastructure, and connectivity. We are one of the leading providers of digital and AI infrastructure in the world. NTT DATA is a part of NTT Group, which invests over $3.6 billion each year in R&D to help organizations and society move confidently and sustainably into the digital future. Visit us at us.nttdata.com

NTT DATA provides a reasonable range of compensation for U.S.-based positions. The starting pay range for this remote role is $50/Hr to $55/Hr. This range reflects the minimum and maximum target compensation for the position across all US locations. Actual compensation will depend on a number of factors, including the candidate’s actual work location, relevant experience, technical skills, and other qualifications. This position is eligible for company benefits including participation in medical, dental, and vision insurance, flexible spending or health savings account, and AD&D insurance, employee assistance, participation in a 401k program, and additional voluntary or legally-required benefits.

NTT DATA endeavors to make https://us.nttdata.com accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact us at https://us.nttdata.com/en/contact-us. This contact information is for accommodation requests only and cannot be used to inquire about the status of applications. NTT DATA is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or protected veteran status. For our EEO Policy Statement, please click here. If you'd like more information on your EEO rights under the law, please click here. For Pay Transparency information, please click here.

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
Β·

Cybersecurity Consultant Related jobs

Other jobs at NTT DATA

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.