drjobs Principal Cyber Security - Governance Risk and Controls GRC

Principal Cyber Security - Governance Risk and Controls GRC

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Chicago, IL - USA

Monthly Salary drjobs

$ 114700 - 194900

Vacancy

1 Vacancy

Job Description

About Northern Trust:

Northern Trust a Fortune 500 company is a globally recognized awardwinning financial institution that has been in continuous operation since 1889.

Northern Trust is proud to provide innovative financial services and guidance to the worlds most successful individuals families and institutions by remaining true to our enduring principles of service expertise and integrity. With more than 130 years of financial experience and over 22000 partners we serve the worlds most sophisticated clients using leading technology and exceptional service.

Principal Responsibilities/Requirements:

Primary candidate has technofunctional knowledge and experience in Information Security domain involving undertakings and projects focusing on data security activities. This includes prior contributions to the strategic direction of data security programs working knowledge of and experience with the development and enterprisewide implementation of endtoend processes as well as data security best practices.

  • Develop socialize maintain and interpret complex data security governance elements (e.g. policy standard TOM procedures and business continuity plans that define data security requirements.

  • Develop implement and execute governance and monitoring processes as required per internal/external standards and regulations (e.g.: FFIEC GDPR etc).

  • Responsible for of Data Protection Risk & Controls Self Assessments (RCSA) and the development of Process Risk & Controls Inventories (PRCI).

  • Responsible for monitoring KRI/KPI and conducting escalation activities for noncompliance to data protection policies standards and procedures to various levels of leadership

  • Contributes to the optimization and maintenance of a data security program elements especially those involving business processes repeatable methods automation and measurements needed for a viable riskbased data security program e.g.: KRI/KPI metrics).

  • Works with information security management frameworks (i.e. ISO 2700X NIST CSF SANS Top 20 Critical Security Controls etc.

  • Responds both verbally and in writing to complex inquiries and new periodic exams from both internal partners (e.g. legal compliance audit risk) and external partners (e.g. regulators external auditors thirdparties. This also includes prior experience in optimization and methods to improve future responses to such inquiries as well as prior experience providing peerreview of such responses.

  • Responsible for the management and tracking of internal and external issues or areas of concerns related to the Data Protection program (e.g.: audit responses etc)

  • Responsible for managing the content on the Enterprisewide knowledge and collaboration workspace specifically for the Data Protection program.

Minimum:

  • Bachelors degree or equivalent experience

  • Experience with Data Governance teams at both the Enterprise and various business levels level

  • Experience conducting or responding to IT Audits (FFIEC Handbook)

  • Experience with end to end strategic program roadmap development

  • Strong analytical and problemsolving skills

  • Expert experience with report visualization (Excel PowerPoint Tableau Power BI etc.

  • Excellent communication skills

  • Strong organizational and facilitation skills

  • Ability to work autonomously under pressure and to prioritize tasks

Preferred:

  • CISSP CISM or other information security certifications

  • Experience with computer languages (SQL Query Python etc.

  • Vast working knowledge of Business Process Management

  • Experience with KRI/KPI and dashboard reporting development and socialization

Salary Range:

$USD

Salary range is a good faith estimate of base pay. Northern Trust provides a comprehensive benefits package including retirement benefits 401k and pension) health and welfare benefits (medical dental vision spending accounts and disability) paid time off parental and caregiver leave life & accident insurance and other voluntary and wellbeing benefits. Northern Trust also provides a discretionary bonus program that may include an equity component.

Working with Us:

As a Northern Trust partner greater achievements await. You will be part of a flexible and collaborative work culture in an organization where financial strength and stability is an asset that emboldens us to explore new ideas.

Movement within the organization is encouraged senior leaders are accessible and you can take pride in working for a company committed to assisting the communities we serve!Join a workplace with a greater purpose.

Wed love to learn more about how your interests and experience could be a fit with one of the worlds most admired and sustainable companies! Build your career with us andapply today.#MadeForGreater

Reasonable accommodation

Northern Trust is committed to working with and providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation for any part of the employment process please email our HR Service Center at .


We hope youre excited about the role and the opportunity to work with us. We value an inclusive workplace and understand flexibility means different things to different people.

Apply today and talk to us about your flexible working requirements and together we can achieve greater.

Employment Type

Full-Time

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.