IAM Risk Audit - Lead
About Northern Trust
As a global leader in innovative wealth management, asset servicing, asset management and banking services, Northern Trust (Nasdaq: NTRS) is proud to guide the world’s most successful individuals, families, corporations and institutions.
Since 1889, we have aligned our efforts with our three guiding Principles That Endure: Service, Expertise, and Integrity. Together, they reflect the three cornerstones of business conduct which we strive to instill in our employees, whom we call partners, and to provide to our clients and the communities we serve worldwide.
With more than 135 years of financial experience and over 24,000 partners, we serve the world’s most sophisticated clients using leading technology and exceptional service.
The Lead, Identity & Access Management (IAM) Risk & Audit, plays a key role in advancing the organization's IAM governance, risk, and compliance programs. This position partners with IAM engineering teams, risk management, internal audit, compliance functions, and business stakeholders to strengthen the IAM control environment and support regulatory, audit, and risk management activities.
The successful candidate will lead audit readiness, risk reporting, control monitoring, remediation efforts, and process improvement initiatives across key IAM capabilities, including Identity Governance & Administration (IGA), Privileged Access Management (PAM), Access Controls, Authentication, Authorization, and Directory Services. The role combines risk management, governance support, analytical reporting, and process improvement to strengthen the organization's IAM control environment.
Key Responsibilities
Audit & Compliance Leadership
- Lead internal and external audit activities related to IAM processes and controls.
- Coordinate the collection, validation, and delivery of audit evidence.
- Support regulatory examinations, risk assessments, and compliance reviews.
- Partner with control owners, auditors, and stakeholders to address audit requests and findings.
- Drive audit readiness activities and support remediation efforts through completion.
Risk & Control Management
- Lead execution and monitoring of IAM controls.
- Identify control gaps, process weaknesses, and opportunities for improvement.
- Track risk issues and remediation activities and provide status updates to stakeholders.
- Help ensure IAM processes align with regulatory requirements, security standards, and organizational policies.
- Support control testing and effectiveness reviews.
Reporting & Data Analysis
- Develop and maintain IAM risk, audit, and compliance reporting.
- Analyze IAM data to identify trends, control exceptions, and emerging risks.
- Create dashboards, scorecards, and metrics supporting management and leadership reporting.
- Develop KPI, KCI, and control effectiveness reporting.
- Provide insights and recommendations that support risk reduction and operational improvements.
Governance & Strategy Support
- Support IAM governance and risk management initiatives.
- Contribute to governance maturity, policy development, and process improvement efforts.
- Participate in governance forums, working groups, and control review discussions.
- Recommend improvements that strengthen compliance, audit readiness, and operational effectiveness.
- Support development of reporting and materials used for governance and leadership reviews.
Stakeholder Engagement & Leadership
- Partner with IAM engineers, risk teams, auditors, compliance partners, and business stakeholders.
- Communicate risk, audit, and remediation activities effectively across multiple audiences.
- Provide guidance to analysts and team members supporting IAM governance activities.
- Facilitate collaboration across teams to address control gaps and compliance requirements.
- Promote best practices that strengthen the IAM control environment.
Required Qualifications
- Bachelor's degree in Cyber Security, Information Technology, Business, Computer Science, or a related field.
- 5-8 years of experience in Cyber Security, IAM, Risk Management, Audit, Compliance, or related disciplines.
- Experience leading or supporting audit, compliance, and risk management activities.
- Strong understanding of Identity & Access Management concepts, controls, and governance practices.
- Experience working with control frameworks, audit activities, and regulatory requirements.
- Experience developing reports, dashboards, and management presentations.
- Strong analytical, organizational, and problem-solving skills.
- Excellent written, verbal, and stakeholder communication skills.
- Proficiency with Microsoft Office products including Excel, PowerPoint, and Word.
Salary Range:
$99,600 - 169,200 USDSalary range is a good faith estimate of base pay. Northern Trust provides a comprehensive benefits package including retirement benefits (401k and pension), health and welfare benefits (medical, dental, vision, spending accounts and disability), paid time off, parental and caregiver leave, life & accident insurance, and other voluntary and well-being benefits. Northern Trust also provides a discretionary bonus program that may include an equity component.
Work Authorization
Applicants must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future. Northern Trust will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa).
Working with Us
As a Northern Trust partner, you will be part of a flexible and collaborative work culture, which has a strong history of financial strength and stability. Movement within the organization is encouraged, senior leaders are accessible, and you can take pride in working for a company committed to an inclusive workplace and assisting the communities we serve.
Philanthropy is deeply rooted in Northern Trust’s history and is an essential element of our culture. Employees around the world give their time and talent to work for the greater good of their communities.
Reasonable Accommodation
Northern Trust is committed to working with and providing adjustments to individuals with health conditions and disabilities. If you need a reasonable accommodation for any part of the employment process, please email our HR Service Center at MyHRHelp@ntrs.com, or alternatively you can discuss your individual requirements with the recruiter you are working with.