Northern Trust

Lead - ICG – IIS Application Vulnerability Assessment

Northern Trust
Pune
Not disclosed
Work from OfficeWork from Office
Full TimeFull Time
Min. 8 yearsMin. 8 years

Job Description

Lead - ICG – IIS Application Vulnerability Assessment

About Northern Trust


As a global leader in innovative wealth management, asset servicing, asset management and banking services, Northern Trust (Nasdaq: NTRS) is proud to guide the world’s most successful individuals, families, corporations and institutions.


Since 1889, we have aligned our efforts with our three guiding Principles That Endure: Service, Expertise, and Integrity. Together, they reflect the three cornerstones of business conduct which we strive to instill in our employees, whom we call partners, and to provide to our clients and the communities we serve worldwide.


With more than 135 years of financial experience and over 24,000 partners, we serve the world’s most sophisticated clients using leading technology and exceptional service.



Northern Trust is seeking a dynamic and experienced candidate to lead the Application Vulnerability Assessment function within the Infrastructure Control Governance (ICG) team. This role is critical to ensure the security, availability, and regulatory compliance of our Important Internal Services (IIS) applications. The ideal candidate will bring audit expertise, strong leadership capabilities, and a strategic mindset to identify and mitigate Single Points of Failure (SPOF) across our Mission Critical Assets (MCA). 

 

JOB RESPONSIBILITIES 

Team Leadership & Oversight  

  • Supervise day-to-day operations of the IIS Application Vulnerability Assessment team. 

  • Assign tasks, monitor performance, and ensure timely execution of activities. 

  • Provide coaching, mentoring, and training to staff to ensure consistent quality and compliance. 

 

Application Vulnerability & SPOF Assessment 

  • Oversee vulnerability assessments and architectural reviews of IIS-MCA applications to identify SPOFs and systemic risks. 

  • Ensure assessments are aligned with business-criticality, regulatory requirements. 

  • Drive the development and adoption of standardized assessment methodologies and tooling. 

 

Stakeholder Engagement 

  • Collaborate with product owners, practice leads, infrastructure, and compliance stakeholders to understand application dependencies and risk exposure. 

  • Communicate technical findings in business terms to senior leadership, regulators, and audit teams. 

  • Represent the function in governance forums, risk committees, and strategic planning sessions. 

 

Compliance & Regulatory Alignment 

  • Ensure all assessment and remediation activities align with relevant financial regulations and compliance frameworks such as: 

  • ISO 27001, NIST Cybersecurity Framework, PCI-DSS, SOC 2, GDPR, etc. 

  • Support internal and external audits with documentation, evidence, and remediation tracking. 

  • Maintain audit readiness and ensure timely closure of compliance gaps. 

 

Risk Management & Remediation Oversight 

  • Prioritize vulnerabilities and SPOFs based on business impact, regulatory exposure, and operational risk. 

  • Facilitate and support the cross-functional identification of application vulnerabilities to ensure compliance with service level agreements and established timelines. 

  • Establish robust governance mechanisms for the validation, tracking, reporting, and escalation of daily team activities. 

 

Innovation & Continuous Improvement 

  • Stay current with emerging threats, FinTech trends, and evolving regulatory landscapes. 

  • Identify opportunities for automation, process optimization, and proactive risk detection. 

 

Responsibilities and Ethical Conduct 

As a partner at Northern Trust, you must actively manage and mitigate risk and act with integrity. In accordance with our core values of service, integrity, and expertise, you are expected to:  

  • Adhere to all applicable risk management programs, policies, and procedures. 

  • Complete all mandatory training by the deadline.  

  • Understand how your behavior could expose Northern Trust, its clients, and financial markets to different types of risk.  

  • Ensure that Northern Trust or its clients are not exposed to inappropriate or excessive risk.  

  • Escalate any risk concerns, including those resulting from mistakes / errors to a manager or business unit risk officer. 

  • Exercise diligence regarding cyber-security  

  • Cooperate with internal control functions (including first-line Control, Risk, Compliance, Audit, self-assigned, etc.) and applicable regulatory bodies.  

  • Avoid conflicts of interest or behaviors that might produce unfair outcomes for Northern Trust or its clients or damage the integrity of financial markets 

 

Must Haves: 

  • Risk Assessment & IT Audit Expertise  

Proven experience in scheduling and performing risk assessments or IT audits across critical ITIL® and resiliency domains, including: 

  • Incident and Problem Management 

  • Change Management 

  • Disaster Recovery & Resiliency 

  • Availability and Capacity Management 

  • Infrastructure Security 

 

  • Leading team 

  • Proven experience in leading technical teams and managing cross-functional stakeholders and senior management. 

 

  • Communication & Collaboration 

  • Excellent written and verbal communication for crossfunctional stakeholder engagement. 

 

  • Technical Proficiency 

  • Experience with regulatory compliance and audit processes in financial environments. 

  • Hands on Experience on ITIL tool such as Service Now. 

  • Hands on Experience on MS Office tools. 

 

 

 

Good to Have: 

  • Certifications 

  • CISSP, CISM, CRISC, OSCP, or equivalent. 

  • ITIL, PMP, or Agile certifications. 

  • ISO/IEC 20000-1, 27001 and 22301 LI/LA certified. 

  • Framework Knowledge  

  • Familiarity with regulatory frameworks and FinTech compliance standards. 

Qualification: 

  • Bachelor’s or Master’s degree in Computer Science, Cybersecurity, or related field. 

  • 8+ years of experience in application security, IT risk management, or resilience engineering, preferably in FinTech or financial services. 


Working with Us


As a Northern Trust partner, you will be part of a flexible and collaborative work culture, which has a strong history of financial strength and stability. Movement within the organization is encouraged, senior leaders are accessible, and you can take pride in working for a company committed to an inclusive workplace and assisting the communities we serve.


Philanthropy is deeply rooted in Northern Trust’s history and is an essential element of our culture. Employees around the world give their time and talent to work for the greater good of their communities.


Reasonable Accommodation


Northern Trust is committed to working with and providing adjustments to individuals with health conditions and disabilities. If you need a reasonable accommodation for any part of the employment process, please email our HR Service Center at MyHRHelp@ntrs.com, or alternatively you can discuss your individual requirements with the recruiter you are working with.


About Our Pune Office


The Northern Trust Pune office, established in 2016, is now home to over 3,000 employees. The office handles various functions, including Operations for Asset Servicing and Wealth Management, as well as delivering critical technology solutions that support business operations across the globe.


Our Pune team takes our commitment to service to heart. In 2024, they volunteered more than 10,000+ hours into the communities where they live and work. Learn more.



Experience Level

Senior Level

Job role

Work location
Work locationPune, India
Department
DepartmentRisk Management & Compliance
Role / Category
Role / CategoryRisk Compliance
Employment type
Employment typeFull Time
Shift
ShiftDay Shift

Job requirements

Experience
ExperienceMin. 8 years

About company

Name
NameNorthern Trust
Job posted by Northern Trust

Similar jobs you can apply for

Software Quality Assurance and Testing
Betsol

Performance Test Engineer

Betsol
Pune
Work from Office
Full Time
Min. 10 years
Northern Trust

Network Security Engineer

Northern Trust
Pune
Work from Office
Full Time
Min. 4 years
Mastercard India Services Pvt Ltd

Network Security Engineer

Mastercard India Services Pvt Ltd
Pune
Work from Office
Full Time
Min. 7 years
Deutsche Bank

System Engineer

Deutsche Bank
Pune
Work from Office
Full Time
Min. 6 years
Wolters Kluwer

Network Security Engineer

Wolters Kluwer
Pune
Work from Office
Full Time
Min. 7 years
Accenture India Private Limited

Network Security Engineer

Accenture India Private Limited
Pune
Work from Office
Full Time
Min. 3 years

You can expect a minimum salary of 0 INR. The salary offered will depend on your skills, experience and performance in the interview.

The candidate should have completed the required education and people who have 8 to 31 years are eligible to apply for this job. You can apply for more jobs in Pune to get hired quickly.

The candidate should have sound communication skills and sound communication skills for this job.

Both Male and Female candidates can apply for this job.

No, it's not a work from home job and can't be done online. You can explore and apply for other work from home jobs in Pune at apna.

No work-related deposit needs to be made during your employment with the company.

Go to the apna app and apply for this job. Click on the apply button and call HR directly to schedule your interview.

The last date to apply for this job is . For more details, download apna app and find Full Time jobs in Pune . Through apna, you can find jobs in 64 cities across India. Join NOW!