Lead Technology and Cyber Risk Management

ntrs

Tempe (AZ)

On-site

USD 79,000 - 134,000

Full time

4 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Northern Trust in the United States seeks an IT Risk Management professional to support regulatory interactions, risk assessments, information security initiatives, and management reporting.

You will develop technology and cybersecurity risk metrics, prepare materials for audits and senior management meetings, and assess risks across internal and externally hosted systems, ensuring programs align with regs and standards.

Qualifications

  • Strong experience in IT Risk Management, Technology Risk, or IT Audit.
  • Experience creating metrics and reporting using Power BI and PowerPoint.
  • Bachelor's degree in Accounting, Finance, Information Technology, MIS, Computer Science, or related discipline; advanced IT degree desirable.
  • Exposure to COBIT 5, ISO 27001/27002, and NIST 800-53.

Responsibilities

  • Develop and maintain technology and cybersecurity risk metrics and assessments.
  • Prepare materials for regulatory interactions, audit examinations, and senior management meetings.
  • Identify and assess risks associated with internal technologies and externally hosted systems.
  • Define requirements and execution plans for information security and technology risk management programs.
  • Ensure risk management programs align with applicable regulations, industry standards, and compliance requirements.
  • Communicate security policies and requirements clearly to stakeholders.
  • Produce meaningful, measurable metrics for owned risk management programs.
  • Review and assess technology and security controls using established frameworks.
  • Drive risk reduction through defined risk treatment and remediation processes.
  • Document, track, and report risk findings and remediation plans to management.
  • Collaborate with Information Security, Privacy, and Enterprise Risk teams to enhance policies and frameworks.
  • Stay current on industry trends, emerging threats, technologies, and regulatory developments.

Skills

IT risk management
IT audit
Power BI
Executive reporting
Analytical skills
Communication skills

Education

Bachelor's degree in IT/Finance/Accounting
Advanced IT-related degree desirable

Tools

COBIT 5
ISO 27001/27002
NIST 800-53

Job description

About Northern Trust

As a global leader in innovative wealth management, asset servicing, asset management and banking services, Northern Trust (Nasdaq: NTRS) is proud to guide the world's most successful individuals, families, corporations and institutions.

Since 1889, we have aligned our efforts with our three guiding Principles That Endure: Service, Expertise, and Integrity. Together, they reflect the three cornerstones of business conduct which we strive to instill in our employees, whom we call partners, and to provide to our clients and the communities we serve worldwide.

With more than 135 years of financial experience and over 24,000 partners, we serve the world's most sophisticated clients using leading technology and exceptional service.

The Role

This role is an individual contributor position responsible for the execution of activities supporting IT and Cybersecurity Risk Management, including regulatory interactions, IT risk and control assessments, information security initiatives, and management reporting.

The role plays a key part in the identification, assessment, management, and reporting of technology and information security risk, with direct responsibility for delivering work across one or more core practice areas within the Information Security and Technology Risk Management Program. The individual will work closely with peers and management and will contribute to strategic IT Risk and Information Security initiatives.

The key responsibilities of the role include;

  • Develop and maintain technology and cybersecurity risk metrics and assessments to inform the firm of its risk posture
  • Manage preparation and delivery of materials for key engagements, including regulatory interactions, audit examinations, and senior management meetings
  • Identify and assess risks associated with internal technologies and externally hosted systems
  • Define requirements and execution plans for information security and technology risk management programs
  • Ensure risk management programs align with applicable regulations, industry standards, and compliance requirements
  • Communicate security policies and requirements clearly to ensure organizational understanding and adoption
  • Produce meaningful, measurable metrics for owned risk management programs
  • Review and assess technology and security controls using established frameworks
  • Drive risk reduction through defined risk treatment and remediation processes
  • Document, track, and report risk findings and remediation plans to management
  • Collaborate with Information Security, Privacy, and Enterprise Risk teams to enhance policies, standards, and frameworks
  • Evaluate and provide risk advice on strategic business and technology initiatives
  • Participate in cybersecurity incident response activities as required
  • Stay current on industry trends, emerging threats, technologies, and regulatory developments and advise management on their potential business and financial impact
Skills and Experience

The successful candidate will benefit from having;

  • Strong experience in IT Risk Management, Technology Risk, or IT Audit
  • Experience creating metrics and reporting using tools such as Power BI and PowerPoint
  • Required certification: CISA, CISM, CRISC, CISSP, or equivalent
  • Bachelor's degree in Accounting, Finance, Information Technology, MIS, Computer Science, or related discipline
  • Advanced degree in an IT‑related field is desirable
  • Strong ability to develop effective technology and cybersecurity risk metrics, assessments, and executive‑level presentations
  • Experience assessing IT processes including information security, system development and change management, computer operations, and data protection
  • Working knowledge of Financial Services regulatory requirements, including FFIEC handbooks and relevant country‑specific regulatory bodies
  • Hands‑on experience applying industry frameworks such as COBIT 5, ISO 27001/27002, and NIST 800‑53
  • Exposure to one or more information security disciplines (e.g. forensics, secure development, threat intelligence, penetration testing)
  • Strong analytical skills with the ability to assess complex data and formulate sound, well‑justified risk decisions
  • Proven ability to manage multiple priorities with urgency and attention to detail
  • Excellent written and verbal communication skills, including the ability to produce clear, well‑structured documentation and reports
  • Ability to work effectively both independently and within global, multi‑national teams
  • Professional presence and ability to build strong working relationships across all organizational levels and with third‑party providers
Salary Range:

$78,945 - 134,235 USD

Salary range is a good faith estimate of base pay. Northern Trust provides a comprehensive benefits package including retirement benefits (401k and pension), health and welfare benefits (medical, dental, vision, spending accounts and disability), paid time off, parental and caregiver leave, life & accident insurance, and other voluntary and well

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Principal, Technology and Cyber Risk Management
Principal, Technology and Cyber Risk Management

ntrs • Tempe (AZ)

On-site
USD 109,000 - 185,000
401k and pension
Health and welfare benefits
Discretionary bonus program
Principal, Technology and Cyber Risk Management
Principal, Technology and Cyber Risk Management

Koitecc Solutions • Tempe (AZ), Northern (KY)

Hybrid
USD 109,000 - 185,000
Retirement benefits (401k/pension)
Health and welfare benefits
Paid time off and family leave
+2
Lead Technology and Cyber Risk Management
Lead Technology and Cyber Risk Management

Northern Trust Corp. • Tempe (AZ)

On-site
USD 79,000 - 134,000
Principal, Technology and Cyber Risk Management
Principal, Technology and Cyber Risk Management

Northern Trust Corp. • Tempe (AZ)

On-site
USD 109,000 - 185,000
Discretionary bonus program
401(k) and pension options
Senior Lead, Technology Risk and Control
Senior Lead, Technology Risk and Control

Koitecc Solutions • Chicago (IL), Northern (KY)

Hybrid
USD 96,000 - 162,000
401k and pension
Healthcare benefits
Paid time off
+1
Director – Cyber Third Party Risk Management (CTPRM)
Director – Cyber Third Party Risk Management (CTPRM)

3M HEALTHCARE • Chicago (IL)

Hybrid
USD 137,000 - 241,000
401(k) and pension
Health benefits
Paid time off
+3
Sr Principal, Tech Program Manager - Cybersecurity Portfolio Lead
Sr Principal, Tech Program Manager - Cybersecurity Portfolio Lead

Northern Trust • Chicago (IL)

On-site
USD 137,000 - 240,000
Senior Lead, Technology Risk and Control
Senior Lead, Technology Risk and Control

Northern Trust Corp • Chicago (IL), Northern (KY)

Hybrid
USD 96,000 - 162,000
401(k) plan and pension
Health care (medical, dental, vision)
Paid time off
+3
IAM Risk Audit (CIAM) - Lead
IAM Risk Audit (CIAM) - Lead

Northern Trust • Chicago (IL)

On-site
USD 99,000 - 170,000
401(k) plan
Health insurance
Paid time off
+1
Lead Cyber Sec Eng - Business Analyst
Lead Cyber Sec Eng - Business Analyst

Koitecc Solutions • Chicago (IL), Northern (KY)

Hybrid
USD 100,000 - 169,000