Lead, Cyber Security & IT Risk Management

Northern Trust

About Northern Trust:

Northern Trust, a Fortune 500 company, is a globally recognized, award-winning financial institution that has been in continuous operation since 1889.

Northern Trust is proud to provide innovative financial services and guidance to the world’s most successful individuals, families, and institutions by remaining true to our enduring principles of service, expertise, and integrity. With more than 130 years of financial experience and over 22,000 partners, we serve the world’s most sophisticated clients using leading technology and exceptional service.

Summary

Northern Trust Technology Risk & Control function is responsible for enabling Global Information Technology to build a strong 1st Line of Defense, foster a control aware culture, deliver compliant and secure technology capabilities, protect customers, and meet regulatory requirements.

This Lead role is responsible for maintaining and driving the cyber security and technology risk control standards that dictate minimum requirements in line with regulatory and industry expectations, participating substantially in risk treatment for the global technology and information security department, and supporting the broader Technology Risk and Control team in their engagement with these processes. 

You will be part of a dedicated, outstanding, and growing team that focuses on promoting control awareness and properly managing risks within the global information technology organization.

Responsibilities, including but not limited to

Lead the upkeep, ongoing support, and continuous improvement of the cyber security and technology risk control standards. Provide leadership and effort in the buildout and maintenance of detailed mappings of control standards to various global regulatory and industry frameworks. Partner with relevant teams to increase awareness and adherence to standards in more effective and efficient ways (e.g., automation). Support the Technology risk treatment process by coordinating with control officers and control owners to identify, assess, and manage enterprise risks. Author thorough, well-informed, and thoughtful risk assessments to inform senior leadership and assist them in risk treatment decisions. Participate in ongoing risk treatment leadership meetings, ensuring efficiency and clarity to support risk decisioning. Drive enhancements to the Technology GRC solution to support and advance department and corporate objectives. Organize and prepare committee decks, ensure smooth execution of committee meetings, and communicate and track outcomes of those meetings. Support and train fellow team members as needed to enhance skills and knowledge. Proactively identify opportunities to improve team processes and knowledgebase, and lead efforts to implement. Influence behaviors to reduce risk and foster a strong technology risk management culture throughout the enterprise.

Knowledge/Skills

  • Self-starter, motivated, able to drive efforts and propose paths forward independently
  • Extensive knowledge of and experience with technology and security risks, controls, and related topics
  • Advanced knowledge of risk treatment methodologies and approaches (e.g., risk assessment, control effectiveness, etc.), and experience executing and leading associated activities
  • Audit and/or control testing skills a plus
  • Excellent written and verbal communication skills, with high attention to detail
  • Strong project management / organizational skills
  • Proficiency in preparing documents for review and presentation to management and leadership
  • Extensive and experience using them to guide risk management and control activities
  • Experience with cyber and technology policies and standards
  • Knowledge and experience with an enterprise GRC system (e.g., ServiceNow)
  • Strong collaboration and relationship management skills, preferably including experience with executive-level management
  • Thought leader with an eye towards identifying and process enhancements and seeing them through to implementation

Experience

  • Bachelor’s Degree in Information Systems or related discipline
  • 8+ years’ experience in Risk Management, Audit, Information Security, or Technology
  • Consulting firm experience a plus

Working with Us:

As a Northern Trust partner, greater achievements await. You will be part of a flexible and collaborative work culture in an organization where financial strength and stability is an asset that emboldens us to explore new ideas.

Movement within the organization is encouraged, senior leaders are accessible, and you can take pride in working for a company committed to assisting the communities we serve! Join a workplace with a greater purpose.

We’d love to learn more about how your interests and experience could be a fit with one of the world’s most admired and sustainable companies! Build your career with us and apply today. #MadeForGreater

Reasonable accommodation

Northern Trust is committed to working with and providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation for any part of the employment process, please email our HR Service Center at MyHRHelp@ntrs.com.

We hope you’re excited about the role and the opportunity to work with us. We value an inclusive workplace and understand flexibility means different things to different people.

Apply today and talk to us about your flexible working requirements and together we can achieve greater.

Read Full Description
Confirmed 6 hours ago. Posted 30+ days ago.

Discover Similar Jobs

Suggested Articles