Principal GRC Cyber Risk Management

Northern Trust

Confirmed live 2 days ago High trust

Quick summary

Work type
On-site
Location
Tempe, AZ
Salary
$108,965–$185,155 / yr
Posted
63 days ago
Freshness
Confirmed live 2 days ago

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $181k
This role $147k
$96k most similar roles pay here $233k

This role pays less than 77% of similar roles. Most pay $151,487–$209,622 — the shaded band above. At the midpoint, this role pays about $147k versus about $181k for comparable roles.

Based on 239 similar postings.

Employer

About Northern Trust

Northern Trust is a leading provider of wealth management, asset servicing, asset management, and banking services to corporations, institutions, and high-net-worth individuals. Industry: Financial Services & Asset Management

Northern Trust currently has 48 open roles on FindRole.

Listed pay typically runs $114,500–$194,700 across 43 roles with salary data.

Most-posted roles

View all roles at Northern Trust

At a glance

TL;DR · Principal GRC Cyber Risk Management

Principal, GRC Cyber Risk Management joins the Cybersecurity Governance, Risk and Compliance organization to drive the modernization of cyber risk identification, intelligence integration, assessment methodologies, and executive reporting. This role involves identifying, assessing, and prioritizing enterprise-wide cyber risks while translating technical threats into clear business impact narratives for leadership and regulators. The individual will integrate cyber threat intelligence, attack surface insights, and vulnerability trends into data-driven decision-making processes. Key responsibilities include conducting maturity assessments aligned with industry frameworks, enhancing risk capabilities through automation and AI, and developing predictive analytics like KRIs and KCIs. Required expertise includes deep knowledge of NIST CSF, FAIR, MITRE ATT&CK, CRI, and ISO 27001. The role requires proficiency in cyber intelligence concepts, data engineering, and the ability to navigate complex threat landscapes within a global financial institution environment.

What you'll do

  • Identify, assess, prioritize, and report cyber risks across the entire enterprise.
  • Integrate threat intelligence, vulnerability trends, and control metrics into data-driven risk reporting.
  • Conduct cyber risk assessments and maturity reviews aligned with industry frameworks and regulatory requirements.
  • Develop actionable cyber risk reports for executive leadership, risk committees, and regulators.
  • Enhance risk intelligence capabilities through analytics, automation, and AI-enabled processes.
  • Translate complex technical cyber risks into clear business impact narratives and strategic recommendations.
  • Evaluate emerging threats and the implications of new technologies like AI on enterprise risk.
  • Develop risk metrics, KRIs, and predictive analytics to improve decision-making.

What we're looking for

  • Bachelor’s degree in Information Security, Computer Science, or a related field is required; a Master's degree is preferred.
  • Minimum of 10 years of experience in cybersecurity with a focus on risk management.
  • Extensive knowledge of cyber risk management frameworks including NIST CSF, FAIR, MITRE ATT&CK, CRI, and ISO 27001.
  • Experience leveraging AI, analytics, automation, or data engineering to improve cyber risk management processes.
  • Understanding of cyber intelligence concepts including threat actor analysis, attack trends, and operational risk correlation.
  • Demonstrated ability to design and mature cyber risk reporting for executive leadership and regulators.
  • Exceptional communication skills to translate technical risks into clear business impact narratives.
  • Work Authorization.

More like this

Similar roles

Principal Cyber Risk & Strategy Advisor

Proofpoint

Remote 23 days ago $200,300$293,810
DSPM Enterprise DLP CASB Insider Threat Management Incident Response NIST HIPAA PCI-DSS GDPR DORA NIS2 Threat Intelligence Risk Management
6+ yrs exp Remote

Manager, Cyber Risk & Analysis

Capital One Financial

McLean, VA +1 32 days ago $164,800$188,100
NIST 800-53 NIST CSF ISO COBIT Cybersecurity Risk Management Audit System Transformation Software Engineering
4+ yrs exp

Principal Cyber Threat Intelligence Specialist

University of Miami

Miami, FL 8 days ago
Cyber Threat Intelligence Artificial Intelligence Security Automation Threat Hunting Incident Response Vulnerability Management Risk Mitigation Runbooks Playbooks
10+ yrs exp

Principal Associate, Cyber Risk & Analysis

Capital One Financial

McLean, VA 2 days ago $131,300$149,800
AI Prompt Engineering Multi-agent Systems Databricks Spark AWS GCP Azure CI/CD APIs Containers NIST CSF PCI DSS SOX ITGC FFIEC SIEM SOAR
3+ yrs exp

Principal Cyber Security Architect

Leidos

Gaithersburg, MD +2 24 days ago $131,300$237,350
Cybersecurity Architecture FedRAMP NIST 800-53 Zero Trust DevSecOps CI/CD Risk Management Framework AWS Azure Threat Modeling Vulnerability Assessment SBOM SLSA API Gateway SIEM Penetration Testing
10+ yrs exp Hybrid