IT Security Business Analyst
Pubblicato il 14-09-2026 - NTT America in Roma
ph3Who We Are /h3 pWe believe that clarity turns complexity into meaningful outcomes. We are a department within NTT DATA Romania, known as the Agile Transformation Office, your gateway to creating real impact in software projects by keeping the focus on value and alignment. /p pIf you can bridge business and technology, translating needs into solutions and ensuring team alignment, we look forward to your application for the IT Security Business Analyst role. We are looking for candidates to join a strategic project within the insurance sector, focused on developing and enhancing enterprise software solutions and integrations. /p h3What you’ll be doing /h3 ul liConduct end-to-end analysis of existing secret and credential management practices across applications, infrastructure, platforms and operational processes. /li liIdentify, classify and document technical and workforce secrets, including ownership, usage, storage location, criticality, lifecycle stage, access model and associated risks. /li liAssess current-state control weaknesses such as unmanaged SSH keys, hardcoded credentials, shared accounts, undocumented secret usage, insufficient rotation and weak auditability. /li liDefine and document detailed functional and non-functional requirements for centralized secrets management capabilities. /li liSupport the design of compliant lifecycle processes for creation, storage, access, usage, rotation, revocation, emergency access and decommissioning of secrets. /li liAnalyze dependencies across systems, applications, service accounts, technical users and operational teams to support onboarding and migration planning. /li liPrepare clear and defensible security analysis deliverables, including gap assessments, process documentation, risk assessments, control requirements and remediation recommendations. /li liFacilitate and document workshops with technical, operational and business stakeholders to gather requirements, validate findings and resolve ambiguities.
/li liContribute to tool evaluation activities by translating operational and security needs into concrete assessment criteria and use cases. /li liValidate whether proposed solution approaches meet defined security, compliance and operational expectations. /li liSupport reporting and governance activities by maintaining traceability of findings, risks, requirements, remediation items and implementation dependencies. /li liEnsure analysis outputs are audit-ready, internally consistent and suitable for decision-making at project and stakeholder governance level. /li /ul h3What you’ll bring along /h3 ul liBachelor's degree in Informatics or similar field of study or equivalent working experience is required /li liStrong experience in IT security analysis, security requirements engineering, control assessment or security governance in complex enterprise environments. /li liProven knowledge of secrets and credential types, including passwords, SSH keys, API keys, tokens, certificates, service accounts and privileged credentials. /li liExperience in analyzing IT processes, identifying control gaps and translating findings into implementable security requirements. /li liStrong understanding of IAM, PAM, least privilege, segregation of duties, auditability and secure access governance. /li liAbility to work across technical and non-technical stakeholder groups and drive structured analysis in ambiguous environments. /li liExperience in regulated, global or highly controlled environments. /li liExperience with CyberArk, HashiCorp Vault, Azure Key Vault, AWS Secrets Manager, GCP Secret Manager or similar platforms.
/li liKnowledge of ISO 27001, NIST, CIS Controls or enterprise security governance frameworks. /li liExperience in transformation or migration projects involving credential centralization and legacy cleanup. /li liStrong documentation, workshop facilitation and communication skills in English. /li liExcellent command of both spoken and written English /li /ul h3What’s in it for you /h3 ul liNew beginnings can be a challenge. We promise a smooth integration and a supportive mentor /li liPick your working style: choose from Remote, Hybrid or Office work opportunities /li liEarly bird or night owl? Our projects have different working hours to suit your needs /li liNobody is born an expert. Sharpen your tech skills with our sponsored certifications, trainings and top e-learning platforms /li liWe want you to stay healthy! Enjoy our Private Health Insurance - it's custom-made for you /li liA clear mind is a healthy mind. Attend individual coaching sessions or go one step further by joining our accredited Coaching School /li liMake the most of our epic parties or themed events - they're lovingly designed for our people and their families /li /ul pNTT DATA Romania is an equal opportunity employer and considers all applicants regardless to race, color, religion, citizenship, national origin, ancestry, age, sex, sexual orientation, gender identity, genetic information, physical or mental disability, veteran or marital status, or any other characteristic protected by law. We are committed to creating a diverse and inclusive environment for all employees. /p h3Make this the place you grow /h3 pYour unique talent is what matters. NTT DATA Romania is an equal opportunity employer and considers all applicants regardless to race, color, religion, citizenship, national origin, ethnicity, age, gender, sexual orientation, gender identity, genetic information, physical or mental disability, veteran or marital status, or any other characteristic. /p /p #J-18808-Ljbffr
