Lead ICG – IIS Application Vulnerability Assessment

Northern Trust


Job Location:

Pune - India

Monthly Salary: Not Disclosed
Posted on: 5 hours ago
Vacancies: 1 Vacancy

Job Summary

About Northern Trust


As a global leader in innovative wealth management asset servicing asset management and banking services Northern Trust (Nasdaq: NTRS) is proud to guide the worlds most successful individuals families corporations and institutions.


Since 1889 we have aligned our efforts with our three guiding Principles That Endure: Service Expertise and Integrity. Together they reflect the three cornerstones of business conduct which we strive to instill in our employees whom we call partners and to provide to our clients and the communities we serve worldwide.


With more than 135 years of financial experience and over 24000 partners we serve the worlds most sophisticated clients using leading technology and exceptional service.



Northern Trust isseekinga dynamic and experiencedcandidateto lead the Application VulnerabilityAssessmentfunction withinthe Infrastructure Control Governance(ICG)team.This role is critical to ensurethe security availability and regulatory compliance of our Important InternalServices (IIS) applications. The ideal candidate will bringauditexpertise strong leadership capabilities and a strategic mindset toidentifyand mitigate Single Points of Failure (SPOF) across ourMission CriticalAssets (MCA).

JOB RESPONSIBILITIES

Team Leadership & Oversight

  • Supervise day-to-day operations of the IIS Application Vulnerability Assessment team.

  • Assign tasksmonitorperformance and ensuretimelyexecution of activities.

  • Provide coaching mentoring and training to staff to ensure consistent quality and compliance.

Application Vulnerability & SPOF Assessment

  • Oversee vulnerability assessments and architectural reviews ofIIS-MCAapplications toidentifySPOFs and systemic risks.

  • Ensure assessments are aligned with business-criticalityregulatory requirements.

  • Drive the development and adoption of standardized assessment methodologies and tooling.

Stakeholder Engagement

  • Collaborate with product ownerspractice leads infrastructure and compliance stakeholders to understand application dependencies and risk exposure.

  • Communicate technical findings in business terms to senior leadership regulators and audit teams.

  • Represent the function in governance forums risk committees and strategic planning sessions.

Compliance & Regulatory Alignment

  • Ensure all assessment and remediation activities align with relevant financial regulations and compliance frameworks such as:

  • ISO 27001 NIST Cybersecurity Framework PCI-DSS SOC 2 GDPRetc.

  • Support internal and external audits with documentation evidence and remediation tracking.

  • Maintain audit readiness and ensuretimelyclosure of compliance gaps.

Risk Management & Remediation Oversight

  • Prioritize vulnerabilities and SPOFs based on business impact regulatory exposure and operational risk.

  • Facilitate and support the cross-functional identification of application vulnerabilities to ensure compliance withservicelevel agreements and established timelines.

  • Establish robust governance mechanisms for the validation tracking reporting and escalation of daily team activities.

Innovation & Continuous Improvement

  • Stay current with emerging threats FinTech trends and evolving regulatory landscapes.

  • Identifyopportunities for automation process optimization and proactive risk detection.

Responsibilities and Ethical Conduct

As a partner at Northern Trust you must actively manage and mitigate risk and act with integrity.In accordance withour core values ofservice integrity andexpertise you are expected to:

  • Adhere to all applicable risk management programs policies and procedures.

  • Complete all mandatory training by the deadline.

  • Understand how your behavior could expose Northern Trust its clients and financial markets todifferent typesof risk.

  • Ensure that Northern Trust or its clients are not exposed to inappropriate or excessive risk.

  • Escalate any risk concerns including those resulting from mistakes / errors to a manager or business unit risk officer.

  • Exercise diligenceregardingcyber-security

  • Cooperate with internal control functions (including first-line Control Risk Compliance Audit self-assigned etc.) and applicable regulatory bodies.

  • Avoid conflicts of interest or behaviors that might produce unfair outcomes for Northern Trust or its clients or damage the integrity of financial markets

Must Haves:

  • Risk Assessment & IT Audit Expertise

Proven experience inscheduling andperforming risk assessments or IT audits across critical ITILand resiliency domains including:

  • Incidentand ProblemManagement

  • Change Management

  • Disaster Recovery & Resiliency

  • Availability andCapacity Management

  • Infrastructure Security

  • Leading team

  • Proven experience in leading technical teams and managing cross-functionalstakeholders and senior management.

  • Communication & Collaboration

  • Excellent written and verbal communication for crossfunctional stakeholder engagement.

  • Technical Proficiency

  • Experience with regulatory compliance and audit processes in financial environments.

  • Hands on Experience on ITILtoolsuch asServiceNow.

  • Hands on Experience on MS Office tools.

Good to Have:

  • Certifications

  • CISSP CISM CRISC OSCP or equivalent.

  • ITIL PMP or Agile certifications.

  • ISO/IEC 20000-1 27001 and22301LI/LA certified.

  • Framework Knowledge

  • Familiarity with regulatory frameworks and FinTech compliance standards.

Qualification:

  • Bachelors orMasters degree in Computer Science Cybersecurity or related field.

  • 8 years of experience in application security IT risk management or resilience engineering preferably in FinTech or financialservices.


Working with Us


As a Northern Trust partner you will be part of a flexible and collaborative work culture which has a strong history of financial strength and stability. Movement within the organization is encouraged senior leaders are accessible and you can take pride in working for a company committed to an inclusive workplace and assisting the communities we serve.


Philanthropy is deeply rooted in Northern Trusts history and is an essential element of our culture. Employees around the world give their time and talent to work for the greater good of their communities.


Reasonable Accommodation


Northern Trust is committed to working with and providing adjustments to individuals with health conditions and disabilities. If you need a reasonable accommodation for any part of the employment process please email our HR Service Center at or alternatively you can discuss your individual requirements with the recruiter you are working with.


About Our Pune Office


The Northern Trust Pune office established in 2016 is now home to over 3000 employees. The office handles various functions including Operations for Asset Servicing and Wealth Management as well as delivering critical technology solutions that support business operations across the globe.


Our Pune team takes our commitment to service to 2024 they volunteered more than 10000 hours into the communities where they live and work. Learn more.



About Northern TrustAs a global leader in innovative wealth management asset servicing asset management and banking services Northern Trust (Nasdaq: NTRS) is proud to guide the worlds most successful individuals families corporations and institutions. Since 1889 we have aligned our efforts with our ...

About Company

Company Logo

Helping investors navigate changing market environments.

View Profile View Profile