15+ years of experience in technology risk management, with a focus on configuration management databases and IT asset management in highly regulated environments
In-depth knowledge of technology risk, including risk assessment methodologies and mitigation strategies
Strong analytical and problem-solving skills, with the ability to identify and address complex technology risks
Excellent communication and interpersonal skills, with the ability to collaborate effectively with cross-functional teams and executive audiences
Relevant certifications such as CRISC, CISM, or CISSP are highly desirable
Deep understanding of the principles of technology risk management in highly regulated organizations
Proven track record in identifying, managing, mitigating, and communicating technology risks consistent with best practices
Subject matter expertise in systems, principles, and processes that manage technology risk including IT asset management, technology resilience, IT Operations, and IT service management within on-prem and cloud architectures
Responsibilities
Develop and implement methods and processes consistent with Program strategy for managing technology risk
Conduct regular assessments to evaluate the effectiveness of IT management processes including completeness and accuracy and recommend appropriate corrective action
Collaborate with cross-functional teams to ensure compliance with technology risk management policies and procedures
Provide expert guidance on best practices for technology risk management and operational resiliency, with an emphasis on SDLC completeness and sustainability
Monitor and report on the effectiveness of risk management methods and processes and make recommendations for continuous improvement for the technology risk program
Establish and maintain key performance indicators for the operating effectiveness of the program
Provide expert guidance and support to business units on technology risk management best practices
Stay current with industry trends and emerging threats to ensure Northern Trust’s technology risk management practices remain effective and up to date
Identify, assess, and mitigate technology risks to ensure the operational resiliency of Northern Trust’s technology infrastructure
Ensure the operational resiliency of technology infrastructure, safeguarding the integrity and availability of critical data, business processes, and functions by ensuring the completeness and accuracy of its asset management capability, the effectiveness of the system development lifecycle and processes