Job offer

Senior Principal - Data Protection and Cyber Recovery Engineer

The Northern Trust is seeking a Senior Principal Data Protection and Cyber Recovery Engineer for Lynch, MA, who, with over 12 years of experience in IT security and GRC, will be responsible for data retention, classification, and deletion in the regulated financial sector.

Tasks

  • Leading the Data Protection Engineering Group, responsible for ensuring compliance with and raising awareness of all data protection matters and implementing appropriate measures to protect customer data.
  • Strategic team membership in a growing business unit.
  • Work in the field of information security, including data protection, privacy, and ensuring that policies and processes meet all customer, regulatory, and industry compliance standards.
  • Participation in a wide range of data storage, classification, and deletion implementations for customers and prospective clients.
  • Collaboration on program initiatives aimed at asset and regulated liquidity management.
  • Verification of documents by checking the visibility of new sources and activating features.
  • Recommending deletions and processing active tasks or requests as part of normal processes.

Requirements

  • 12+ years of professional IT experience, including 5 years in infrastructure or platform engineering with a focus on information security, risk, control, and compliance (GRC) for regulated industries or information risk and compliance.
  • Work experience in IT security, platform operations—networks, databases, log servers, development, asset inventory, and project management.
  • Practical expertise or experience with multiple information security tools, such as SIEM, Command, Server, and Network Team.
  • Extensive experience in supporting cyber resilience and resilience programs.
  • Experience monitoring network activities to ensure a secure IT environment—including networks, databases, logs, servers, development, asset inventory, and project management.
  • Understanding of security frameworks, including NIST, ISO, CIS, etc., as well as the ability to assess a security situation and to plan and implement corrective and detection measures in a timely manner.
  • Proactive knowledge of new, emerging, and evolving IT security standards, as well as the availability and use of applicable products.
  • Strong proficiency in Python. Experience with automation, monitoring tools, and tooling is a plus.

Preferred qualifications

  • Solid experience with cloud or common technology environments (I, II, etc.) and large on-premises systems, as well as hosted tools.
  • Experience with data classification, declassification, data usage, and data deletion for financial services clients.
  • Experience with compliance platforms, including GRC (e.g., Archer) and/or FISMA, Fed Rating, SOX, ISO, HIPAA, and/or other regulatory and/or commercial controls.
  • Experience in data management, controller, incident/case transfer, support, and customer data.
  • Experience in security compliance governance—including leading reviews, developing a high-level advocacy program, and fostering cross-organizational relationships.
  • Experience with data governance, incident/case transfer, data usage, and data deletion for financial services clients.

We offer

  • 401(k) with a 4.5% match; retirement plan.
  • Flexible benefits model; annual benefits selection; tax-free portions of salary; supplemental insurance, dependent coverage, college savings plan, EAP, life/disability insurance, AD&D, FMLA policies; retirement benefits, employee benefits.
  • Bonus eligibility criteria; health and other benefits; annual bonus; educational assistance; assistance with college tuition.
  • Employer-sponsored health plans in 2022.

Job details

© 2025 House of Skills by skillaware. All rights reserved.
Our website uses cookies to make navigation easier for you and to analyze the use of the site. You can find more information in our privacy policy.