This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
The NTT DATA Cloud Security & IAM Senior Specialist works closely with the Information Security Manager (ISM) to ensure the seamless delivery of all information security services that NTT DATA provides to the customer.
Job Responsibility
Identify and continually review and recommend cloud security leading practices
Obtain and review industry-recognized periodical bulletins regarding cloud security
Utilize native cloud security solutions or third-party solutions (e.g. CSPM, CNAPP, CIEM, CASB) to secure the cloud environment and individual applications
Utilize native cloud SIEM or integrate cloud monitoring events into SIEM or other operational solution
Monitor cloud network security based on best-practice and recommended standards and Customer’s security standards
Support and maintain familiarity with modern cloud network architectures, such as Software Defined Networking (SDN), virtual private clouds such as Virtual Subnets (VNETs), and Security Groups where needed
Maintain virtual private cloud network segregation (i.e., the separation of the VNETs, VPCs, and subnets for production and non-production )
Monitor cloud VPN gateway
ensure any external connections to the environment utilize secure connectivity methods (such as IPSEC Tunnels)
and disablement or blocking any unnecessary or unapproved ports and protocols for cloud workloads
Manage multi-factor authentication used for resource access to the cloud console and management network
Monitor firewall/security group Configurations
Detect and ensure cloud hosted data I encrypted as required
Monitor the security posture of the cloud supplier’s DNS / routing configurations and cloud resources
Continuously assess cloud network configurations against regulatory and organizational standards (e.g., CIS, NIST) and generate automated audit-ready reports
Monitor and secure administrative level and root account privileges through following recommended best practices
manage and administer the cloud environment role provisioning and de-provisioning based on least-privilege and need-to-know principles
associate and de-associate Cloud Services Resources within defined Tenants
collect and validate all Asset information for Customer Cloud Accounts
utilize Public Cloud Services to manage & maintain account standardization and compliance throughout the lifecycle of an Account
Cloud Services Identity and Access Management (IAM) - Management of Identity and Access Management to grant End Users the right to use a service and deny access to unauthorized users
Define, implement and operate access management protocols, tools and processes that enable access rights and identities to be established, controlled, authorized, administered, reported and audited in adherence with the Identity Management Policy standards
Develop and best practices and implement including -Least Privilege Access, Strong Authentication Mechanisms, Role-Based Access Control (RBAC) ,etc
Develop policies on privacy protection and protective security for access to data, including security, data and records management, and electronic records and data
Conduct periodic access reviews, detect procedure violations, and generate audit-ready reports (for regulatory standards like ISO 27001, SOC 2, and GDPR.)
User Management - Control User access to cloud resources by users for maintaining system security and the prevention of unauthorized use
Cloud VM and Storage Security - Monitor VM and storage encryption security requirements
provide, monitor and oversee OS, container, and workload instances to ensure hardening of workloads to comply with the CIS level 1 security standard that complies
monitor resiliency and recovery of cloud workloads to ensure sound backup management, scheduling, retention management