Principal, GRC Cyber Risk Management
$108.97k - $185.16kNorthern Trust
About Northern TrustAs a global leader in innovative wealth management, asset servicing, asset management and banking services, Northern Trust (Nasdaq: NTRS) is proud to guide the world’s most successful individuals, families, corporations and institutions. Since 1889, we have aligned our efforts with our three guiding Principles That Endure: Service, Expertise, and Integrity. Together, they reflect the three cornerstones of business conduct which we strive to instill in our employees, whom we call partners, and to provide to our clients and the communities we serve worldwide. With more than 135 years of financial experience and over 24,000 partners, we serve the world’s most sophisticated clients using leading technology and exceptional service. Role/ Department: This role sits within Northern Trust’s Cybersecurity Governance, Risk and Compliance (GRC) organization, an integral part of the strategic evolution of cyber risk management capabilities across the enterprise. The Cyber Risk Principal will partner with peers to drive the modernization of cyber risk identification, intelligence integration, assessment methodologies, and executive risk reporting. The role requires a forward-looking team player who understands how cybersecurity, cyber threat intelligence, data analytics, automation, and artificial intelligence are reshaping enterprise risk management within global financial institutions. The ideal candidate combines strong cyber risk management expertise with the ability to leverage data-driven insights, threat intelligence, emerging technologies, and AI-enabled capabilities to improve risk visibility, prioritization, and decision-making. The key responsibilities of the role include: Lead the identification, assessment, prioritization, and reporting of cyber risks across the enterprise Drive the evolution of cyber risk management toward data driven decision making by integrating cyber threat intelligence, attack surface insights, vulnerability trends, and control effectiveness metrics into enterprise cyber risk reporting Conduct cyber risk assessments, thematic reviews, and cyber maturity assessments aligned to industry frameworks and regulatory expectations Develop forward-looking cyber risk reporting that provides actionable insights to executive leadership, risk committees, and regulators Partner with cyber domain experts (e.g., security operations, architecture) to improve risk reduction outcomes Enhance cyber risk intelligence capabilities through analytics, automation, and AI-enabled processes Drive continuous improvement in cyber risk methodologies, governance processes, and reporting capabilities Translate highly technical cyber risks into clear business impact narratives and strategic recommendations Evaluate emerging threats, including e.g., AI capabilities to determine enterprise cyber risk implications Contribute to the development of risk metrics, KRIs, KCIs, maturity indicators, and predictive cyber risk analytics Collaborate across Lines of Defense to strengthen enterprise cyber resilience and operational risk visibility Skills/ Qualifications: Bachelor’s degree in Information Security, Computer Science, or a related field; Master’s degree preferred Minimum of 10 years of experience in cybersecurity, with a focus on risk managementExtensive knowledge of cyber risk management frameworks and methodologies including NIST CSF, FAIR, MITRE ATT&CK, CRI, ISO 27001, and related industry practice Strong understanding of modern cyber threat landscapes, attack methodologies, adversary behaviors, and emerging technology risks Experience leveraging AI, analytics, automation, or data engineering capabilities to improve cyber risk management processes Understanding of cyber intelligence concepts including threat actor analysis, attack trends, external intelligence sources, and operational risk correlation Demonstrated ability to design and mature cyber risk reporting capabilities for executive leadership and regulatorsExceptional communication and presentation skills, capable of translating technical risk into business terms Excellent analytical, problem-solving, and decision-making skills Relevant certifications such as CISSP, CISM, CRISC or similar Salary Range:$108,965 - 185,155 USDSalary range is a good faith estimate of base pay. Northern Trust provides a comprehensive benefits package including retirement benefits (401k and pension), health and welfare benefits (medical, dental, vision, spending accounts and disability), paid time off, parental and caregiver leave, life & accident insurance, and other voluntary and well-being benefits. Northern Trust also provides a discretionary bonus program that may include an equity component.Work AuthorizationApplicants must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future. Northern Trust will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa). Working with UsAs a Northern Trust partner, you will be part of a flexible and collaborative work culture, which has a strong history of financial strength and stability. Movement within the organization is encouraged, senior leaders are accessible, and you can take pride in working for a company committed to an inclusive workplace and assisting the communities we serve.Philanthropy is deeply rooted in Northern Trust’s history and is an essential element of our culture. Employees around the world give their time and talent to work for the greater good of their communities. Reasonable Accommodation Northern Trust is committed to working with and providing adjustments to individuals with health conditions and disabilities. If you need a reasonable accommodation for any part of the employment process, please email our HR Service Center at View email address on click.appcast.io, or alternatively you can discuss your individual requirements with the recruiter you are working with. SummaryLocation: Tempe, AZType: Full time
$151k - $203k
...Enterprise Information Systems (EIS) Governance, Risk, and Compliance (GRC) team. The position requires a deep... ...disciplines including Cloud Security Governance, Policy Management, Cybersecurity Controls & Reporting, and Cyber Risk Quantification across hybrid (cloud and...CyberFull timeWork at officeLocal areaRemote work$164.6k - $288k
...leader in innovative wealth management, asset servicing, asset management... .... Position SummaryThe Senior Principal, Identity & Access Management... ...advisor, partnering with cyber security leadership, technology... ..., business stakeholders, risk, compliance, and audit functions...CyberPrincipalFull timeH1bWorldwideFlexible hours- Northern Trust seeks a Cyber Risk Principal within the Cyber security Governance, Risk and Compliance (GRC) organization to drive modernization of cyber risk identification, threat intelligence integration, and enterprise-level risk reporting. The role combines deep cyber...Cyber
$163.4k - $322.1k
Position Summary Our Deloitte Cyber team understands the unique... ...Through powerful solutions and managed services that simplify complexity... ...strategies for integrated risk management (IRM), governance, risk, and compliance (GRC), and Security Operations (SecOps...CyberLocal areaVisa sponsorship- ...District in Tempe, AZ is seeking a Capital Projects-Project Manager Principal to lead complex capital projects across campuses. You will direct... ...overseeing project scope, schedules, procurement, and risk management, with regular updates to the Governing Board. #J-...Principal
- ...based on this research to determine the risk to the organization and take appropriate... ...policies, standards, and procedures Strong time management skills to balance multiple activities and... ...Knowledge of the various types of cyber-attacks and their implementations A fundamental...CyberFull timeWork at officeLocal areaRemote work1 day per week
- ...heritage is rooted in financial empowerment and cyber safety for the first digital generations,... ...to protect consumers and help them grow, manage and secure their digital and financial... ...part of Gen. About the Role: As a Principal Engineer, Security Logging & Detection ,...CyberPrincipalFull timeFlexible hours
$114.1k - $268.18k
...Lead Specialist, Cloud Security to join our Managed Services practice.Responsibilities:Manage... ..., remediation, and reporting of security risks, misconfigurations, and compliance issues... ...management coordination and oversight of Cyber Managed Services delivery across multiple...CyberH1bLocal area- ...strategic goals while balancing agility, resiliency, security, risk management, operational excellence, and long-term sustainability.As our... ...withstand, recover from, and adapt to operational disruptions, cyber incidents, technology failures, and evolving business and regulatory...CyberTemporary workWork at officeFlexible hours
- ...Operations Execution Specialist plays a pivotal role in driving the execution of cybersecurity strategies and advancing a mature cyber risk management framework within the Global Security Operations Center. This position leads cross-functional initiatives, oversees...CyberFull timeWork at officeLocal areaRemote work
$126k - $180k
...analysis based on this research to determine the risk to the organization and take appropriate... ...potential cybersecurity events, and manage mitigation actions. Analyze security data... ...enterprise cybersecurity frameworks (MITRE ATT&CK, Cyber Kill Chain). Bachelor’s degree in Computer...CyberWork at officeLocal areaRemote work1 day per week- ...detections, alert quality, and response playbooksOversee budget planning, vendor management, and financial governance for global cyber operations tooling, services, and staffing; optimize spend to risk reduction and service performanceLead, mentor, and scale high-performing...CyberFull timeWork at officeLocal areaRemote work1 day per week
$145k - $185k
...in response to the established inherent risk profile CIA. This role is pivotal in defining... ...' experience in a combination of risk management, Cloud information security, secure coding... ...security, and IT roles. Audit and Cyber Risk Institute framework prior experience...CyberWork at officeRemote work- Position: Senior Manager, Enterprise Risk & Insurance - Full Time/Exempt Department: Accounting & Finance Reports to: Chief Financial Officer... ...Liability, Umbrella/Excess Liability, Workers' Compensation, Cyber Liability, Directors & Officers Liability, Builder's Risk,...CyberFull timeContract workFor contractorsH1bWork visaFlexible hoursWeekend workAfternoon shift
- ...Technical Analyst/ Disaster Recovery Manager Tempe, AZ- 3 days Must have Linkedin... ...Infrastructure team to allow for data-driven risk management and process improvements... ...conducting testing exercises for Disaster/BCP/Cyber Plans Well-versed in disaster security...CyberImmediate startFlexible hours
$125.3k - $187.9k
...spirit to our collaborative teams. As a Cyber Systems Engineer - Level 3/4 located in... ...) to architect, implement, and satisfy Risk Management Framework (RMF) CyberSecurity,... ...determined by the company.Basic Qualifications:Principal Cyber Systems Engineer: Bachelor’s degree...CyberPrincipalFull timeRemote workRelocation packageShift work$134.5k - $265.1k
Position Summary Deloitte’s Cyber Services help our clients to be secure, vigilant, and resilient in the... ...of cyber threats and vulnerabilities. Our Cyber Risk practice helps organizations with the management of information and technology risks by delivering end...CyberLocal areaVisa sponsorship$134.5k - $265.1k
Position Summary Cyber Manager - ServiceNow Our Deloitte Cyber team understands the unique challenges and opportunities businesses... ...through go-live and transition, including scope, schedule, budget, risks, assumptions, issues, dependencies, and quality...CyberLocal areaRemote workVisa sponsorship$148.2k - $292.3k
Position Summary Deloitte Cyber understands the unique challenges and opportunities... ...resilience, grow with confidence, and proactively manage their security posture.The Team:Deloitte’s... ..., estimation, capacity planning, and risk management across delivery teams.Oversee...CyberLocal area- ...About the role As a Account Principal within the Google Solution Line... ...growth, and complex account management. Key responsibilities include... ...profitability. Own delivery risk mitigation and handle executive... ...Job Segment Consulting, Cyber Security, Procurement, Strategic...CyberPrincipalLocal areaImmediate start
- ...Principal Program Manager Comtech Telecommunications Corp. is a leading global technology company providing terrestrial and wireless network... ...Approve and guide creation of integrated program schedules, risk registers, and technical execution plans across multiple workstreams...PrincipalWork experience placementFor subcontractor
- ...of that transformation.We are seeking a Manager, Product Security Governance to join our... ...Responsibilities1. Product Security Governance, Risk & Regulatory ReadinessDefine and guide... ...company-wide readiness for the EU Cyber Resilience Act and other applicable global...CyberFull timeWork at officeWorldwide
- Overview Principal Systems Security Administrator (Relocation Bonus) - Iridium Iridium is... ...Administrator, you’ll be responsible for managing multiple activities and projects, including... ...including STIG, IAVA, ACAS scanning, Cyber Security and how they apply to application...CyberPrincipalFull timeWork experience placementWork at officeRelocation packageShift work
- ...computing, artificial intelligence, cyber security as well as non-... ...compliance frameworks are designed, managed, and assessed for... ...to reduce overall compliance risk across the organization. This... ...and hands on experience with GRC tools Experience working with...CyberLocal area
$87k - $147k
...details.The Regulatory Reporting AVP, Incident Management will work within the Regulatory Reporting... ...with Regulatory Reporting, Finance, Risk, Data Governance, Technology, and... ...Office; experience with issue tracking or GRC tools (e.g., Archer, ServiceNow, JIRA) preferred...Full timeWork at officeLocal areaRemote work- ...people who work here.NTT DATA Services currently seeks a Program Manager to join our team in Tempe, Arizona (US-AZ), United States (US).... ...subject matter experts as needed. Maintains the project workbook (risks, issues, decision log, team contact list, calendar, etc)...For contractors
- ...DATA Services currently seeks a Microsoft Azure Migration Project Manager to join our team in Tempe, Arizona (US-AZ), United States (US).... ...matter experts as needed. Maintains the project workbook (risks, issues, decision log, team contact list, calendar, etc)Coordinates...For contractorsWork experience placementWork at officeNight shift
- ...continuous improvement.Senior Team Leaders operate with a high degree of autonomy, balancing people leadership, project execution, risk management, and decision-making responsibilities. They influence outcomes across the department, build strong stakeholder partnerships,...Temporary workInterim roleWork at officeHome officeFlexible hours
$149.52k - $175.9k
...discover what you excel at—all from Day One.Job DescriptionProduct Managers at U.S. Bank are customer obsessed in driving product visioning,... ...in conjunction with agile, experience design, technology and risk partners to achieve business and customer outcomes.In the case of...Full timeLocal areaShift work- ...Job code below to expand Job Title: Technical Project / Program Manager [Job Code: 260830] The main function of a Technical Project/Program... ...levels within the organization Strong ability to assess risk and apply management principles to technology applications/products...Flexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Principal, GRC Cyber Risk Management. Be the first to apply!


