Principal, Technology and Cyber Risk Management

ntrs

Tempe (AZ)

On-site

USD 109,000 - 185,000

Full time

4 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

401k and pension
Health and welfare benefits
Discretionary bonus program

Job summary

Northern Trust is seeking an Information Security Risk professional to drive the risk program with deep technical expertise. You will identify emerging cybersecurity risks, assess and reduce risk, and influence strategic program outcomes.

You will conduct assessments, design testing tools, and partner with stakeholders to create practical remediation plans while reporting progress to management and executives. This role emphasizes mentorship and cross-functional collaboration.

Qualifications

  • Several years of experience in a highly regulated technical or security-related field.
  • Current professional certification required (CISA, CISM, CRISC, CISSP, or equivalent).
  • Bachelor's degree in Accounting, Finance, Information Technology, MIS, Computer Science, or related discipline (or equivalent practical experience).
  • Advanced degree in IT or related field is a plus.

Responsibilities

  • Identify emerging technology and cybersecurity risks and lead risk reduction through expert assessment.
  • Review and challenge significant technology strategies, initiatives, and architectures.
  • Conduct technology and cybersecurity risk assessments, deep dives, testing activities, and exercises.
  • Research, design, and develop risk assessment frameworks for enterprise use.
  • Partner with stakeholders to define remediation action plans for identified risks.
  • Document assessment results and remediation plans; report to management.
  • Plan and monitor deliverables across initiatives; produce risk metrics and dashboards.
  • Provide cross-training and mentorship to junior team members.
  • Support training and education activities related to technology risk management.
  • Stay current on industry trends and threats; advise executives on business impact.
  • Participate in strategically important initiatives across information security and technology risk.

Skills

Risk assessments
Stakeholder management
Project management
Communication
Independent work

Education

CISA
CISM
CRISC
CISSP
Bachelor's degree in IT/CS/Finance
Advanced IT degree (preferred)

Tools

Security frameworks

Job description

About Northern Trust

As a global leader in innovative wealth management, asset servicing, asset management and banking services, Northern Trust (Nasdaq: NTRS) is proud to guide the world's most successful individuals, families, corporations and institutions.

Since 1889, we have aligned our efforts with our three guiding Principles That Endure: Service, Expertise, and Integrity. Together, they reflect the three cornerstones of business conduct which we strive to instill in our employees, whom we call partners, and to provide to our clients and the communities we serve worldwide.

With more than 135 years of financial experience and over 24,000 partners, we serve the world's most sophisticated clients using leading technology and exceptional service.

Position Overview

This role supports delivery of Northern Trust's Information Security and Technology Risk Program objectives through deep industry and technical expertise. The position is an individual contributor role, working closely with peers and management to identify, assess, and reduce significant technology and cybersecurity risks, while positively influencing strategic program outcomes.

Key Responsibilities
  • Identify emerging technology and cybersecurity risks (e.g., Artificial Intelligence, Digital Assets, Quantum Computing, Cloud/SaaS, Identity & Access Management) and lead risk reduction through expert assessment and advisory.
  • Review, challenge, and provide independent risk perspective on significant technology strategies, initiatives, and architectures.
  • Conduct technology and cybersecurity risk assessments, deep dives, testing activities, and operational exercises.
  • Research, design, and develop testing tools and risk assessment frameworks for enterprise use.
  • Partner with stakeholders to define practical remediation action plans for identified risks.
  • Document assessment results, findings, and remediation plans; report clearly to management and senior stakeholders.
  • Plan, schedule, and monitor deliverables, milestones, and outcomes across assigned initiatives or programs.
  • Produce meaningful risk metrics, dashboards, and deep-dive assessment reporting.
  • Provide cross-training and mentorship to junior team members.
  • Support training, awareness, and education activities related to technology and cybersecurity risk management.
  • Remain current on industry trends, emerging threats, technologies, and pricing; advise management and executives on business and financial impact.
  • Support strategically important initiatives across information security and technology risk management.
  • Participate in technology and cybersecurity incident response activities as required.
Skills and Experience
  • Several years experience in a highly regulated technical or security-related field.
  • Current professional certification required (CISA, CISM, CRISC, CISSP, or equivalent).
  • Bachelor's degree in Accounting, Finance, Information Technology, Management Information Systems, Computer Science, or related discipline (or equivalent practical experience).
  • Advanced degree in IT or related field is a plus.
  • Expert knowledge of emerging cybersecurity and technology risks, including AI, Digital Assets, Quantum Computing, Cloud/SaaS, and IAM.
  • Strong experience performing application security, infrastructure, and technology risk assessments.
  • Proven ability to review and challenge first line of defense technology teams within large, highly regulated financial services organizations.
  • Background in security consulting or senior advisory roles, providing risk guidance to senior management.
  • Experience scoping engagements and developing technical or risk-focused proposals.
  • Strong project management skills with the ability to manage multiple priorities simultaneously.
  • Excellent written and verbal communication skills, with demonstrated ability to produce clear, well-structured, and well-justified documentation and reports.
  • Ability to work effectively both independently and within diverse, multi-national teams.
  • Strong stakeholder management skills, with the ability to build trusted relationships at all organizational levels and with third-party providers.
Salary Range

$108,965 - 185,155 USD

Salary range is a good faith estimate of base pay. Northern Trust provides a comprehensive benefits package including retirement benefits (401k and pension), health and welfare benefits (medical, dental, vision, spending accounts and disability), paid time off, parental and caregiver leave, life & accident insurance, and other voluntary and well-being benefits. Northern Trust also provides a discretionary bonus program that may include an equity component.

Work Authorization

Applicants must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future. Northern Trust will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1,

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Principal, Technology and Cyber Risk Management
Principal, Technology and Cyber Risk Management

Koitecc Solutions • Tempe (AZ), Northern (KY)

Hybrid
USD 109,000 - 185,000
Retirement benefits (401k/pension)
Health and welfare benefits
Paid time off and family leave
+2
Principal, Technology and Cyber Risk Management
Principal, Technology and Cyber Risk Management

Northern Trust Corp. • Tempe (AZ)

On-site
USD 109,000 - 185,000
Discretionary bonus program
401(k) and pension options
Lead Technology and Cyber Risk Management
Lead Technology and Cyber Risk Management

ntrs • Tempe (AZ)

On-site
USD 79,000 - 134,000
Lead Technology and Cyber Risk Management
Lead Technology and Cyber Risk Management

Northern Trust Corp. • Tempe (AZ)

On-site
USD 79,000 - 134,000
Senior Lead, Technology Risk and Control
Senior Lead, Technology Risk and Control

Koitecc Solutions • Chicago (IL), Northern (KY)

Hybrid
USD 96,000 - 162,000
401k and pension
Healthcare benefits
Paid time off
+1
Sr Principal, Tech Program Manager - Cybersecurity Portfolio Lead
Sr Principal, Tech Program Manager - Cybersecurity Portfolio Lead

Northern Trust • Chicago (IL)

On-site
USD 137,000 - 240,000
Sr Principal Software Engineer, AI Security Platform
Sr Principal Software Engineer, AI Security Platform

ntrs • Chicago (IL)

On-site
USD 165,000 - 288,000
401k
Pension
Health, dental, vision benefits
+7
Director – Cyber Third Party Risk Management (CTPRM)
Director – Cyber Third Party Risk Management (CTPRM)

3M HEALTHCARE • Chicago (IL)

Hybrid
USD 137,000 - 241,000
401(k) and pension
Health benefits
Paid time off
+3
Technology Intern – Information Security
Technology Intern – Information Security

Northern Trust Corp. • Chicago (IL)

On-site
USD 40,000 - 57,000
Mentorship programs
Networking opportunities
Professional development workshops
+2
Principal, Solution Architect
Principal, Solution Architect

Northern Trust Corp • Chicago (IL), Northern (KY)

Hybrid
USD 137,000 - 234,000
401k and pension
Medical, dental, vision
Paid time off
+3