Stellenangebot

Principal, GRC Cyber Risk Management

Northern Trust sucht einen Principal für GRC Cyber Risk Management, der die Identifizierung, Bewertung und Berichterstattung von Cyberrisiken im Unternehmen leitet. Die hybride Position in Tempe, AZ, erfordert mindestens fünf Jahre Erfahrung im Cyber-Risikomanagement sowie Kenntnisse in Frameworks wie NIST CSF und ISO 27001.

Aufgaben

  • Lead the identification, assessment, prioritization, and reporting of critical risk data across the enterprise to inform management decisions, support risk appetite management, and demonstrate management-level alignment of cyber risk assessments, remedial reviews, and other maturity assessments aligned to industry frameworks and regulatory expectations.
  • Develop frameworks to key reporting that provides solid controls insights to executive leadership, risk committees, and regulators.
  • Partner with risk domain experts (i.e., security, operations, architecture) to improve risk reduction outcomes.
  • Enhance cyber risk intelligence capabilities through automated outputs and re-invested process automation.
  • Translates highly technical risk data into core business owner needs, actions, and strategic priorities.
  • Evolution aligns targets, including 4, 1st, and 3rd parties in enterprises expose cyber risk implications.
  • Participant in our development of GRC capabilities such as automation, third party risk, and cyber-related risk.

Anforderungen

  • Bachelor's degree in Information Security, Computer Science, or a related field. Master's degree preferred.
  • Minimum of 5 years of experience in cyber security, with a focus on risk management and development of cyber risk management frameworks for methodologies including NIST CSF, CMMI FOR PSM, ISO 27001, and vetted risk assessments.
  • Strong understanding of modern threat risk trends, risk methodologies, risk assessment environments, technology, and emerging AI implications.
  • Experience leveraging analytics, automation, or data engineering capabilities to improve cyber risk discovery and outcomes.
  • Demonstrated ability to translate complex risk data requirements into meaningful information in technical and regulatory environments: communication and presentation skills, capable of dismantling technical risk for both technical and non-technical audiences.
  • Excellent analytical, problem-solving, and decision-making skills.
  • Numerous certifications such as CISSP, CISM, CRISC, or similar.

Wir bieten

  • Salary Range: $124,500 - $183,000
  • Salary range is a good faith estimate of base pay.
  • Northern Trust provides a comprehensive benefits package including unlimited personal days (PTO), and health and wellness benefits (medical, dental, vision, depending on role/department).

Jobdetails

© 2025 House of Skills by skillaware. Alle Rechte vorbehalten.
Unsere Website nutzt Cookies, um dir die Navigation zu erleichtern und die Nutzung der Seite zu analysieren. Mehr Informationen findest du in unserer Datenschutzrichtlinie.