Lead Technology and Cyber Risk Management

001 The Northern Trust Company

Tempe (AZ)

On-site

USD 79,000 - 134,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

401k and pension
Medical, dental, vision benefits
Paid time off

Job summary

The Northern Trust Company is seeking an IT Risk Management professional to support cybersecurity risk initiatives, regulatory interactions, and risk reporting across core programs. You will work with cross-functional teams to identify, assess, and remediate technology risk, delivering clear metrics and executive-level insights.

Ideal candidates have certifications (CISA/CISM/CRISC/CISSP), a relevant degree, and strong experience with frameworks like COBIT 5 and NIST 800-53.

Qualifications

  • Required certification: CISA, CISM, CRISC, CISSP, or equivalent
  • Bachelor’s degree in Accounting, Finance, Information Technology, MIS, Computer Science, or related discipline
  • Advanced IT-related degree desirable
  • Strong ability to develop technology and cybersecurity risk metrics, assessments, and executive-level presentations
  • Experience with FFIEC handbooks and relevant regulatory bodies in Financial Services
  • Familiarity with COBIT 5, ISO 27001/27002, and NIST 800-53
  • Exposure to information security disciplines such as forensics, threat intelligence, or secure development

Responsibilities

  • Develop and maintain technology and cybersecurity risk metrics and assessments
  • Prepare materials for regulatory interactions, audits, and senior management meetings
  • Identify and assess risks in internal technologies and externally hosted systems
  • Define requirements and execution plans for information security and risk management programs
  • Align risk programs with regulations, standards, and compliance needs
  • Communicate security policies clearly to ensure understanding and adoption
  • Produce measurable metrics for risk management programs
  • Review controls using established frameworks and drive remediation
  • Report risk findings and remediation plans to management
  • Collaborate with Information Security, Privacy and Enterprise Risk teams to enhance policies and frameworks
  • Provide risk advice on strategic business and technology initiatives
  • Participate in cybersecurity incident response activities as required

Skills

IT Risk Management
IT Audit
Metrics & Reporting

Education

Bachelor’s degree in Accounting, Finance, IT, MIS, CS

Tools

Power BI
PowerPoint

Job description

About Northern Trust

As a global leader in innovative wealth management, asset servicing, asset management and banking services, Northern Trust (Nasdaq: NTRS) is proud to guide the world’s most successful individuals, families, corporations and institutions. Since 1889, we have aligned our efforts with our three guiding Principles That Endure: Service, Expertise, and Integrity. Together, they reflect the three cornerstones of business conduct which we strive to instill in our employees, whom we call partners, and to provide to our clients and the communities we serve worldwide. With more than 135 years of financial experience and over 24,000 partners, we serve the world’s most sophisticated clients using leading technology and exceptional service.

The Role

This role is an individual contributor position responsible for the execution of activities supporting IT and Cybersecurity Risk Management, including regulatory interactions, IT risk and control assessments, information security initiatives, and management reporting. The role plays a key part in the identification, assessment, management, and reporting of technology and information security risk, with direct responsibility for delivering work across one or more core practice areas within the Information Security and Technology Risk Management Program. The individual will work closely with peers and management and will contribute to strategic IT Risk and Information Security initiatives.

Key Responsibilities
  • Develop and maintain technology and cybersecurity risk metrics and assessments to inform the firm of its risk posture
  • Manage preparation and delivery of materials for key engagements, including regulatory interactions, audit examinations, and senior management meetings
  • Identify and assess risks associated with internal technologies and externally hosted systems
  • Define requirements and execution plans for information security and technology risk management programs
  • Ensure risk management programs align with applicable regulations, industry standards, and compliance requirements
  • Communicate security policies and requirements clearly to ensure organizational understanding and adoption
  • Produce meaningful, measurable metrics for owned risk management programs
  • Review and assess technology and security controls using established frameworks
  • Drive risk reduction through defined risk treatment and remediation processes
  • Document, track, and report risk findings and remediation plans to management
  • Collaborate with Information Security, Privacy, and Enterprise Risk teams to enhance policies, standards, and frameworks
  • Evaluate and provide risk advice on strategic business and technology initiatives
  • Participate in cybersecurity incident response activities as required
  • Stay current on industry trends, emerging threats, technologies, and regulatory developments and advise management on their potential business and financial impact
Skills and Experience

The successful candidate will benefit from having; Strong experience in IT Risk Management, Technology Risk, or IT Audit Experience creating metrics and reporting using tools such as Power BI and PowerPoint Required certification: CISA, CISM, CRISC, CISSP, or equivalent Bachelor’s degree in Accounting, Finance, Information Technology, MIS, Computer Science, or related discipline Advanced degree in an IT‑related field is desirable Strong ability to develop effective technology and cybersecurity risk metrics, assessments, and executive‑level presentations Experience assessing IT processes including information security, system development and change management, computer operations, and data protection Working knowledge of Financial Services regulatory requirements, including FFIEC handbooks and relevant country‑specific regulatory bodies Hands‑on experience applying industry frameworks such as COBIT 5, ISO 27001/27002, and NIST 800‑53 Exposure to one or more information security disciplines (e.g. forensics, secure development, threat intelligence, penetration testing) Strong analytical skills with the ability to assess complex data and formulate sound, well‑justified risk decisions Proven ability to manage multiple priorities with urgency and attention to detail Excellent written and verbal communication skills, including the ability to produce clear, well‑structured documentation and reports Ability to work effectively both independently and within global, multi‑national teams Professional presence and ability to build strong working relationships across all organizational levels and with third‑party providers

Salary Range

Salary Range: $78,945 - 134,235 USD Salary range is a good faith estimate of base pay.

Benefits

Northern Trust provides a comprehensive benefits package including retirement benefits (401k and pension), health and welfare benefits (medical, dental, vision, spending accounts and disability), paid time off, parental and caregiver leave, life & accident insurance, and other voluntary and well-being benefits. Northern Trust also provides a discretionary bonus program that may include an equity component.

Work Authorization

Applicants must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future. Northern Trust will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa).

Working with Us

As a Northern Trust partner, you will be part of a flexible and collaborative work culture, which has a strong history of financial strength and stability. Movement within the organization is encouraged, senior leaders are accessible, and you can take pride in working for a company committed to an inclusive workplace and assisting the communities we serve. Philanthropy is deeply rooted in Northern Trust’s history and is an essential element of our culture. Employees around the world give their time and talent to work for the greater good of their communities.

Reasonable Accommodation

Northern Trust is committed to working with and providing adjustments to individuals with health conditions and disabilities. If you need a reasonable accommodation for any part of the employment process, please email our HR Service Center at MyHRHelp@ntrs.com, or alternatively you can discuss your individual requirements with the recruiter you are working with.

Terms and Conditions

Candidate Privacy Notice California Applicant Privacy Notice Pay Transparency Nondiscrimination Provision (U.S) Transparency in Coverage Disclosure – North America Northern Trust is committed to working with and providing reasonable accommodations to individuals with disabilities. If, because of a medical condition or disability, you need a reasonable accommodation for any part of the employment process, please email our HR Service Center or call 1-800-807-0302 (North America), +630-276-5353 (Asia Pacific), 1800-425-0333 (India), +44(0)207 982 4357 (Europe, Middle East and Africa) and let us know the nature of your request and your contact information. APAC/INDIA EEO STATEMENT It is the policy and practice of Northern Trust to provide equal employment opportunities to all employees and applicants. Northern Trust does not discriminate on the basis of race, colour, religion or belief, nationality, ethnic or national origin, sex, marital status, sexual orientation, disability or age. All employment decisions will be made in a non-discriminatory manner in accordance with our obligations under the law and codes of practice. This includes human resources’ decisions relating to recruitment, terms and conditions of employment, transfers, promotions and access to learning and development. Canada EEO STATEMENT Northern Trust is an Equal Opportunity Employer. Hiring and other employment decisions at Northern Trust are made without regard to race, colour, religion, sex, ancestry, national origin, ethnic origin, age, disability, citizenship, veteran status, sexual orientation, record of offences, marital status, family status, or any other characteristic protected by federal, provincial, or local law, regulation, or ordinance. EMEA EEO STATEMENT It is the policy and practice of Northern Trust to provide equal employment opportunities to all employees and applicants. Northern Trust does not discriminate on the basis of race, colour, religion or belief, nationality, ethnic or national origin, sex, marital status, sexual orientation, disability or age. All employment decisions will be made in a non-discriminatory manner in accordance with our obligations under the law and codes of practice. This includes human resources’ decisions relating to recruitment, terms and conditions of employment, transfers, promotions and access to learning and development. USA EEO STATEMENT It is the policy of The Northern Trust Company to afford equal opportunity in all phases of employment without regard to an individual's age, race, color, religion, creed, gender, national origin, citizenship status, marital status, pregnancy, sexual orientation, gender identity, gender expression, genetic tests and information, physical or mental disability, protected veteran status or any other legally protected status. EEO Know Your Rights (U.S).

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Principal, Technology and Cyber Risk Management
Principal, Technology and Cyber Risk Management

001 The Northern Trust Company • Tempe (AZ)

On-site
USD 109,000 - 185,000
401k and pension
Health & welfare benefits
Paid time off
+3
Senior Lead, Technology Risk and Control
Senior Lead, Technology Risk and Control

001 The Northern Trust Company • Chicago (IL)

On-site
USD 96,000 - 162,000
401k and pension
Health & welfare benefits
Paid time off
+1
Senior Lead, Technology Risk and Control
Senior Lead, Technology Risk and Control

Northern Trust • Chicago (IL)

On-site
USD 96,000 - 162,000
Discretionary bonus
Equity component
Lead - Technology Risk and Control Self Assessment
Lead - Technology Risk and Control Self Assessment

Northern Trust • Chicago (IL)

On-site
USD 83,000 - 141,000
Discretionary bonus
Health benefits
Retirement plan
+3
Lead - Technology Risk and Control Self Assessment
Lead - Technology Risk and Control Self Assessment

001 The Northern Trust Company • Chicago (IL)

On-site
USD 83,000 - 141,000
401k & pension
Medical, dental, vision
Paid time off
+4
Manager, SW Engineering
Manager, SW Engineering

Northern Trust • Chicago (IL)

On-site
USD 115,000 - 195,000
401k and pension
Health and welfare benefits
Senior IT Auditor
Senior IT Auditor

001 The Northern Trust Company • Tempe (AZ)

Hybrid
USD 84,000 - 144,000
Hybrid work model
Senior Lead, Security Engineering and Operations
Senior Lead, Security Engineering and Operations

001 The Northern Trust Company • Chicago (IL)

On-site
USD 115,000 - 195,000
Retirement benefits (401k)
Health and welfare benefits
Paid time off
+2
Manager, SW Engineering
Manager, SW Engineering

001 The Northern Trust Company • Chicago (IL)

On-site
USD 115,000 - 195,000
401k and pension
Health and welfare benefits
Paid time off
+1
Azure Data Engineer
Azure Data Engineer

Northern Trust • Chicago (IL)

On-site
USD 89,000 - 151,000