Technical Security Analyst
Cluj, RO Iasi, RO Sibiu, RO Timisoara, RO Bucuresti, RO Remote, RO Brasov, RO
Who We Are
The BISO I&T team acts as the strategic bridge between the Office of Information Security (OIS), Global IT, and Global Assets, ensuring that enterprise infrastructure and platforms are secure by design, technically compliant, and operationally resilient. The function translates corporate security strategy into executable technical requirements, balancing risk, standards, and delivery at scale.
What You’ll Be Doing
In collaboration with your Business Information Security Officer, your main activities will be:
• Monitor, analyze, and prioritize vulnerabilities identified across corporate infrastructure, applications, and cloud environments, ensuring alignment with internal severity models and remediation SLAs.
• Validate vulnerability alerts, assess business impact, and coordinate triage activities with asset owners, BISOs, IT operations, and security teams to drive timely remediation.
• Oversee the end-to-end vulnerability lifecycle, from discovery and classification to remediation tracking, closure verification, and compliance reporting.
• Support security posture improvement initiatives by analyzing recurring weaknesses, identifying systemic gaps, and recommending corrective or preventive measures.
• Produce clear dashboards, reports, and metrics to communicate risk exposure, remediation progress, SLA adherence, and posture improvement trends to leadership.
• Collaborate with penetration testing, configuration, and threat intelligence functions to contextualize vulnerabilities and strengthen operational resilience.
• Ensure alignment with corporate vulnerability management standards, policies, and security controls, supporting audits and regulatory requirements.
• Provide expert guidance to technical teams on remediation strategies, compensating controls, and secure configuration improvements.
• Contribute to continuous improvement initiatives, unified workflows, and automation efforts that enhance the organization’s overall security posture.
• Undertake additional duties as needed.
What You’ll Bring Along
• A minimum of 3 years of experience in the information security field and the responsibilities described above, especially related to vulnerability management and SecOps teams.
• Experience in end-to-end vulnerability lifecycle management (discovery, classification, remediation, validation, and closure)
• Awareness of compensating controls and risk mitigation strategies
• Cross-functional collaboration with BISOs, asset owners, IT operations, and security teams experience
• Ability to provide expert security guidance to technical teams
• Continuous security improvement mindset
• Strong written and verbal communication skills for both technical and non-technical audiences
• Awareness of corporate security controls, policies, and standards
• Analytical and problem-solving skills
• Attention to detail and strong organizational skills
• Ability to manage multiple priorities and deadlines
• Adaptability and willingness to undertake additional duties as needed
• Excellent command of English language
What’s in it for you
✔ New beginnings can be a challenge. We promise a smooth integration and a supportive mentor
✔ Pick your working style: choose from Remote, Hybrid or Office work opportunities
✔ Early bird or night owl? Our projects have different working hours to suit your needs
✔ Nobody is born an expert. Sharpen your tech skills with our sponsored certifications, trainings and top e-learning platforms
✔ We want you to stay healthy! Enjoy our Private Health Insurance – it’s custom-made for you
✔ A clear mind is a healthy mind. Attend individual coaching sessions or go one step further by joining our accredited Coaching School
✔ Make the most of our epic parties or themed events – they’re lovingly designed for our people and their families
NTT DATA Romania is an equal opportunity employer and considers all applicants regardless to race, color, religion, citizenship, national origin, ancestry, age, sex, sexual orientation, gender identity, genetic information, physical or mental disability, veteran or marital status, or any other characteristic protected by law. We are committed to creating a diverse and inclusive environment for all employees.
Not the job for you? Perhaps you have a friend who would be a perfect fit. Send them this link!
Third parties fraudulently posing as NTT DATA recruiters
NTT DATA recruiters will never ask job seekers and candidates for payment or banking information during the recruitment process, for any reason. Please remain vigilant of third parties that may try to impersonate NTT DATA recruiters, either in writing or by phone, in an attempt to deceptively obtain personal data or money from you. All email communications from an NTT DATA recruiter will be associated with an @nttdata.com email address. NTT DATA will not use any non-NTT DATA or personal email domains (Gmail, Yahoo, etc.) or personal communication channels (WhatsApp, Facebook etc) at any time during the recruitment process. If you suspect any fraudulent activity, please contact us.
Job Segment:
Information Security, Corporate Security, Compliance, Law, Sales Consultant, Technology, Security, Legal, Sales