Cybersecurity GRC Compliance Principal at Northern Trust

Chicago, Illinois, United States

Northern Trust Logo
Not SpecifiedCompensation
Senior (5 to 8 years), Expert & Leadership (9+ years)Experience Level
Full TimeJob Type
UnknownVisa
Financial ServicesIndustries

Requirements

  • Bachelor’s or Master’s degree in Information Security, Computer Science, or a related field
  • Minimum of 10 years of experience in cybersecurity, with a focus on assurance or audit
  • Extensive knowledge of cyber regulations, risk management frameworks, and methodologies
  • Proven experience in technical leadership roles, influencing executive stakeholders
  • Strategic thinker with a strong understanding of cyber threats, vulnerabilities, and risk mitigation options
  • Innovative thinker and adaptable to change
  • Exceptional communication and presentation skills, capable of translating technical risk into business terms
  • Excellent analytical, problem-solving, and decision-making skills
  • Relevant certifications such as CISSP, CISM, CRISC, or similar

Responsibilities

  • Lead the technical direction and development of cyber compliance and assurance initiatives, providing expert guidance and support
  • Act as a central point of coordination and subject matter expert for cyber controls information and evidence requests, including SOC2 and SOX testing and reporting for all cyber controls
  • Interface with Internal Audit for all cyber audits, providing expertise, consolidation, and coordination
  • Facilitate the production of information and evidence on cyber controls for regulatory requests
  • Facilitate the production of information and evidence on cyber controls for client requests, supporting new client revenue generation and existing client retention
  • Oversee and ensure adherence to all cyber-related regulatory requirements in all jurisdictions globally in which Northern Trust operates, leading action to address new requirements
  • Provide oversight, tracking, analysis, and reporting of all cybersecurity issues and findings to ensure timely, complete, and compliant remediation
  • Proactively work with the broader Cybersecurity team to ensure new products, services, and processes are built and operated in a controlled and compliant manner
  • Engage with a range of senior stakeholders across Lines of Defense to ensure cybersecurity regulations and internal control requirements are well understood and embedded in business and technology practices

Skills

Cybersecurity
GRC
Compliance
SOC2
SOX
Internal Audit
Regulatory Reporting
Controls Assurance
Stakeholder Management
Risk Management

Northern Trust

About Northern Trust

N/AHeadquarters
N/AYear Founded
N/ACompany Stage

Land your dream remote job 3x faster with AI