Principal IT Control Assurance at Northern Trust

Chicago, Illinois, United States

Northern Trust Logo
Not SpecifiedCompensation
Senior (5 to 8 years), Expert & Leadership (9+ years)Experience Level
Full TimeJob Type
UnknownVisa
Financial ServicesIndustries

Requirements

  • 12+ years of technical or audit experience in Technology Risk, Information Security, or a related leadership role in a highly regulated industry
  • Expert knowledge of performing risk management based on IT risk frameworks (e.g., NIST 800-53)
  • Proven ability to influence senior technology and business leaders, with excellent written and verbal communication skills
  • Experience in determining vulnerability risk impact on key objectives and critical processes; ability to link risk management programs and initiatives to inform critical business strategies and processes
  • Strong analytical and strategic thinking skills with the ability to translate risk insights into action
  • Applicable industry standard certification(s) preferred
  • Bachelor degree in Computer Science or a related discipline and technical experience in the security aspects of multiple platforms, operating systems, software, communications and network protocols or an equivalent combination of education and work experience

Responsibilities

  • Partner with technology leadership to assess risk exposure, design effective controls, and guide remediation efforts for complex or emerging risk
  • Lead risk identification and material risk reviews, shaping the overall risk narrative for technology leadership reporting
  • Champion the implementation of sustainable risk practices through control design, lead control assessments for core cyber security domains, including vulnerability management, threat management, third-party security due diligence, identity and access management
  • Represent the first line in interaction with risk and audit, ensuring transparency and preparedness across all risk topics
  • Assist in development and implementation of technology risk and cyber security trainings for technical domains
  • Participate in incident responses to provide guidance related to technology and cyber security risks and control assurance
  • Influence behaviors to resolve conflicts, clarify goals and outcomes, and foster a strong technology risk management culture with information security organization

Skills

Risk Assessment
Control Design
Vulnerability Management
Threat Management
Identity and Access Management
Third-Party Security
Incident Response
Cyber Security

Northern Trust

About Northern Trust

N/AHeadquarters
N/AYear Founded
N/ACompany Stage

Land your dream remote job 3x faster with AI