IAM Risk Audit (CIAM) - Lead
Summary
Leads risk, audit, and compliance activities for client identity and access management at a global wealth management firm, ensuring regulatory adherence and process maturity.
About Northern Trust
As a global leader in innovative wealth management, asset servicing, asset management and banking services, Northern Trust (Nasdaq: NTRS) is proud to guide the world’s most successful individuals, families, corporations and institutions.
Since 1889, we have aligned our efforts with our three guiding Principles That Endure: Service, Expertise, and Integrity. Together, they reflect the three cornerstones of business conduct which we strive to instill in our employees, whom we call partners, and to provide to our clients and the communities we serve worldwide.
With more than 135 years of financial experience and over 24,000 partners, we serve the world’s most sophisticated clients using leading technology and exceptional service.
The Lead, Client Identity & Access Management (CIAM) Risk & Audit, plays a key role in supporting and advancing risk, audit, governance, and control activities across the organization's client identity ecosystem. This position partners with cyber security, risk management, audit, compliance, technology teams, and business stakeholders to ensure client identity services operate within established regulatory, security, privacy, and control requirements.
The successful candidate will lead audit readiness activities, risk assessments, control reviews, remediation programs, and governance initiatives while helping strengthen the maturity of CIAM processes. The role combines risk management, analytical reporting, process improvement, and a strong understanding of client identity controls, authentication technologies, client access management, and regulatory expectations.
Key Responsibilities
Risk & Control Management
- Lead execution and oversight of CIAM risk and control activities.
- Evaluate identity-related risks and recommend mitigation strategies.
- Support risk assessments, control reviews, and control effectiveness evaluations.
- Identify control gaps and partner with stakeholders to develop remediation plans.
- Monitor remediation activities and ensure timely resolution of identified issues.
Audit & Compliance Leadership
- Lead audit readiness efforts for CIAM platforms and processes.
- Coordinate internal and external audit engagements, regulatory examinations, and compliance reviews.
- Review and validate audit evidence prior to submission.
- Partner with auditors and control owners to address inquiries and findings.
- Track audit observations and drive remediation efforts through closure.
Governance & Strategy Support
- Support development and execution of CIAM governance programs.
- Contribute to identity risk management strategies and maturity initiatives.
- Assist with development and maintenance of policies, standards, procedures, and control documentation.
- Participate in governance forums and working groups.
- Recommend process improvements that strengthen compliance, security, privacy, and operational effectiveness.
Reporting & Analytics
- Develop and maintain risk, compliance, and audit reporting.
- Analyze identity data to identify trends, exceptions, and emerging risks.
- Create dashboards and scorecards supporting management and leadership reporting.
- Develop KPIs, KCIs, and control effectiveness metrics.
- Present findings and recommendations to technology, risk, and business stakeholders.
CIAM Governance & Identity Assurance
- Partner with CIAM and engineering teams to strengthen client identity controls.
- Support governance processes related to client identity lifecycle management.
- Assist in evaluating client authentication, authorization, onboarding, and identity proofing controls.
- Review client access management practices for regulatory, privacy, and security compliance.
- Promote security and privacy best practices across client identity services.
Required Qualifications
- Bachelor's degree in Cyber Security, Information Technology, Computer Science, Business, or a related field.
- 5-8 years of experience in Cyber Security, Identity & Access Management, Risk Management, Audit, Compliance, or related disciplines.
- Experience supporting or leading audit, compliance, and risk management activities.
- Understanding of Client Identity & Access Management (CIAM) principles and controls.
- Experience with client authentication, authorization, onboarding, identity proofing, or access management controls.
- Ability to assess risks, analyze control effectiveness, and support remediation efforts.
- Experience developing reports, dashboards, and management presentations.
- Strong analytical, organizational, and problem-solving skills.
- Excellent written, verbal, and stakeholder communication skills.
Salary Range:
$99,600 - 169,200 USDSalary range is a good faith estimate of base pay. Northern Trust provides a comprehensive benefits package including retirement benefits (401k and pension), health and welfare benefits (medical, dental, vision, spending accounts and disability), paid time off, parental and caregiver leave, life & accident insurance, and other voluntary and well-being benefits. Northern Trust also provides a discretionary bonus program that may include an equity component.
Work Authorization
Applicants must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future. Northern Trust will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa).
Working with Us
As a Northern Trust partner, you will be part of a flexible and collaborative work culture, which has a strong history of financial strength and stability. Movement within the organization is encouraged, senior leaders are accessible, and you can take pride in working for a company committed to an inclusive workplace and assisting the communities we serve.
Philanthropy is deeply rooted in Northern Trust’s history and is an essential element of our culture. Employees around the world give their time and talent to work for the greater good of their communities.
Reasonable Accommodation
Northern Trust is committed to working with and providing adjustments to individuals with health conditions and disabilities. If you need a reasonable accommodation for any part of the employment process, please email our HR Service Center at MyHRHelp@ntrs.com, or alternatively you can discuss your individual requirements with the recruiter you are working with.