IAM Risk Audit (CIAM) - Lead
Northern Trust · Chicago, IL · 1 mo ago
Accounting$100k–$169k/yrFull-time
About Northern Trust
Northern Trust (Nasdaq: NTRS) is a global leader in innovative wealth management, asset servicing, asset management, and banking services. Founded in 1889, the company is known for its Principles That Endure: Service, Expertise, and Integrity. These principles guide the firm's business conduct, instilling them in employees, called partners, and provided to clients and communities worldwide.
Lead, Client Identity & Access Management (CIAM) Risk & Audit
- Risk & Control Management
- Lead execution and oversight of CIAM risk and control activities.
- Evaluate identity-related risks and recommend mitigation strategies.
- Support risk assessments, control reviews, and control effectiveness evaluations.
- Identify control gaps and partner with stakeholders to develop remediation plans.
- Monitor remediation activities and ensure timely resolution of identified issues.
- Audit & Compliance Leadership
- Lead audit readiness efforts for CIAM platforms and processes.
- Coordinate internal and external audit engagements, regulatory examinations, and compliance reviews.
- Review and validate audit evidence prior to submission.
- Partner with auditors and control owners to address inquiries and findings.
- Track audit observations and drive remediation efforts through closure.
- Governance & Strategy
- Support development and execution of CIAM governance programs.
- Contribute to identity risk management strategies and maturity initiatives.
- Assist with development and maintenance of policies, standards, procedures, and control documentation.
- Participate in governance forums and working groups.
- Recommend process improvements that strengthen compliance, security, privacy, and operational effectiveness.
- Reporting & Analytics
- Develop and maintain risk, compliance, and audit reporting.
- Analyze identity data to identify trends, exceptions, and emerging risks.
- Create dashboards and scorecards supporting management and leadership reporting.
- Develop KPIs, KCIs, and control effectiveness metrics.
- Present findings and recommendations to technology, risk, and business stakeholders.
- CIAM Governance & Identity Assurance
- Partner with CIAM and engineering teams to strengthen client identity controls.
- Assist in evaluating client authentication, authorization, onboarding, and identity proofing controls.
- Review client access management practices for regulatory, privacy, and security compliance.
- Promote security and privacy best practices across client identity services.