
Sr Associate, Cyber Security IT Risk Management (P2)
- Chicago, IL
- $74,200-126,200 per year
- Permanent
- Full-time
- Conduct security risk assessment on new and existing Northern Trust’s third parties business partners. Ensure proper preventative and detective controls are in place and prepare recommendations to strengthen control weaknesses.
- Demonstrate some proven knowledge on some of the following domains:
- Information Security Governance and Risk Management
- Access Control
- Vulnerability and Penetration
- Network Security
- Application Security
- Cryptography
- Security Architecture and Design
- Operations Security
- Business Continuity and Disaster Recovery Planning
- Legal, Regulations, Investigations and Compliance
- Physical and Environmental Security
- Cloud Security
- Knowledge of regulatory requirements and guidelines relating to Cyber Security, Information Security, Business Resilience and Business Continuity Management.
- Knowledge on risk treatment and issues management functions and industry tools to support the program.
- Knowledge of security controls considering factors like data protection, access controls, network segmentation, digital technologies such as Artificial Intelligence (AI)
- Experience in securing the cloud networking and hybrid configurations
- Participate in cyber incident responses to provide guidance related to cyber security risks and control assurance
- Able to interact in a professional manner and develop relationships with individuals and teams at any level in Northern Trust.
- Foster a positive and collaborative environment.
- Flexibility, multi-tasking, good business judgment skills are required to meet competing priorities.
- Contribute to automation, analytics, and continuous improvements of processes
- Demonstrate ability to work well in both an individual contributor and team capacity.
- Rapidly and effectively adapt to a highly dynamic and fast-paced work environment
- Excellent written and verbal communication skills.
- Attention to detail.
- Experience working in global, cross-functional, collaborative teams.
- In-depth understanding of information security, network management, operating systems, software development, database systems and information technology.
- Knowledge and awareness on NIST Cyber Security Framework, Center for Internet Security (CIS), ISO etc. is a plus
- Knowledge of technology controls around Cloud Computing reviews.
- Advanced experience with MS Office, SharePoint, and Reporting tools