Sr Cloud Technology Risk Consultant

Tempe, Arizona, United States
27 May 2022
27 Jun 2022
Contract type
Full time
Experience level
Qualified accountant

This individual’s primary day to day responsibility will be in the execution of tasks to be used in support of the roles and responsibilities for the 2nd Line of Defense with respect to Cybersecurity and Technology Risk from a Cloud perspective. In particular, this individual will have a key role in the identification, assessment and risk reporting related to Northern Trust’s Cloud strategy, Cloud implementation and support. Position is an independent contributor and will work closely with peers and manager on leading strategic IT Risk and Information Security projects as assigned.

  1. Define and identify risks associated with the use of technology for internal systems and hosted external systems.
  2. Define requirements and plan for various information security and technology risk management programs.
  3. Ensure that programs meet relevant industry regulations, standards and compliance requirements.
  4. Ensure that risk management programs communicate security policies and requirements so people know, understand and can follow.
  5. Produce meaningful, measured metrics in regards to authored risk management programs.
  6. Plan, schedule and monitor project/program deliverables, goals and milestones.
  7. Review and assess controls through established frameworks.
  8. Capable of reviewing technology initiatives and identifying their respective impacts on the control environment
  9. Support training and awareness activities for assigned disciplines.
  10. Work with individuals to determine action plans to remediate identified risks.
  11. Complete peer reviews of risk assessment or other test results and findings within the team as assigned.
  12. Document and report findings and remediation plans to management.
  13. Collaborate with Information Security, Privacy, and Risk Management teams to provide continuous improvement to Information Security and Technology Risk Policies and frameworks.
  14. Support Regional Information Security Officers in Information Security activities as needed.
  15. Evaluate and opine on project risk for strategic company initiatives.
  16. Provide consulting to the business on IT Risk.
  17. Participate in cyber security incident response as required.
  18. Remain informed on trends and issues in the security industry, including current and emerging technologies and prices. Advise, counsel, and educate executive and management teams and others on their relative importance and financial impact.


  • Minimum of 7 years of IT risk management and or cloud practitioner experience.
  • Current CSA, CCSP, or similar IT certifications.
  • Bachelor’s degree in Accounting, Finance, Information Technology, Management Information Systems, Computer Science or a related discipline a plus.
  • Advanced Degree in IT related topics a plus.
  • Strong understanding of Cloud cybersecurity practices, information security, IT audit and IT risk management principles.
  • Experience with assessing IT related processes such as system and information security, system development and change management, computer operations and data protection.
  • Knowledge of Financial Services industry regulations, specifically those set forth in the Federal Financial Institutional Examination Council (FFIEC) handbooks and other country specific regulatory authorities.
  • Have applied industry accepted IT risk management and control frameworks such as COBIT 5, ISO 27001/27002, NIST 800-53, NIST 800-145.
  • Demonstrated ability to work well in both an individual contributor and team capacity, in particular multi-national teams.
  • Able to effectively manage projects and complete multiple tasks simultaneously and efficiently while maintaining a sense of urgency and attention to detail.
  • Able to evaluate and analyze complex data to assess risk and formulate sound decisions and justifications.
  • Possess excellent written and verbal communication skills. Able to prepare clearly written, organized documents, reports and communications that demonstrate proper justification and support for any conclusions and assessment results and contain correct grammar, punctuation and spelling.
  • Able to interact in a professional manner and develop relationships with individuals and teams at any level in Northern Trust or third party service provider.

For further information, and to apply, please visit our website via the “Apply” button below.

Similar jobs

Similar jobs