Principal, Cyber Security Engineering (SaaS)

Overview

On Site
USD 137,400.00 - 233,600.00 per year
Full Time

Skills

Financial Services
Regulatory Compliance
Reporting
Information Security
Vulnerability Management
Software Security
Service Delivery
Roadmaps
Data Security
ServiceNow
Authentication
Operational Efficiency
Collaboration
Enterprise Architecture
Cloud Computing
Documentation
Mapping
KPI
Vendor Management
Managed Services
Microsoft Windows NT
Leadership
Process Improvement
Cyber Security
FOCUS
Cloud Security
Management
API
SaaS
Communication
Stakeholder Management
CISSP
Cisco Certifications
Amazon Web Services
Microsoft Azure
Insurance
Finance

Job Details

About Northern Trust:

Northern Trust, a Fortune 500 company, is a globally recognized, award-winning financial institution that has been in continuous operation since 1889.

Northern Trust is proud to provide innovative financial services and guidance to the world's most successful individuals, families, and institutions by remaining true to our enduring principles of service, expertise, and integrity. With more than 130 years of financial experience and over 22,000 partners, we serve the world's most sophisticated clients using leading technology and exceptional service.

Northern Trust is seeking a seasoned Principal Cyber Security Engineer to lead the firm's Software as a Service (SaaS) security program, with a primary focus on implementing and operationalizing Obsidian Security. This role will be instrumental in shaping the security posture of Northern Trust's SaaS ecosystem, driving threat detection, posture management, and compliance across critical business applications.

Reporting to the Global Head of Attack Surface Management you will play a vital role within the firms Information Security program. This leader will be responsible for operating all of the technology in the remit of Attack Surface Management including Vulnerability Management, Secure Configuration, Application Security and External Attack Surface management. This position will lead a global team and work with internal service delivery units along with managed service providers to ensure that the NT is able to meets the needs of our partners, clients and regulators in this area.

Job Responsibilities:

SaaS Security Program Leadership:
  • Own and evolve Northern Trust's strategic SaaS security roadmap, aligning with enterprise risk appetite and regulatory expectations
  • Lead the deployment, configuration, and tuning of Obsidian Security across prioritized SaaS platforms
  • Define and enforce baseline security implementation guidelines for SaaS applications, including privileged access, identity governance, data protection, and logging/monitoring
Obsidian Security Implementation:
  • Stand up and manage Obsidian Security as Northern Trust's Software as a Service Posture Management (SSPM) solution
  • Integrate Obsidian with ServiceNow and other platforms, ensuring secure API connectivity and centralized authentication
  • Monitor and triage threat detection alerts, reduce false positives, and drive operational efficiency through governed engagement models
Technical Oversight & Governance:
  • Collaborate with Enterprise Architecture, Cloud Center of Excellence, and IAM teams to ensure consistent security patterns and governance
  • Develop and maintain control procedures and documentation in alignment with CTRM policies and standards
  • Support regulatory mapping and enablement of frameworks such as CIS benchmarks within Obsidian
  • Oversee effective KPIs / monitoring to ensure Attack Surface Management technologies are operating within defined standards and controls
Vendor Management:
  • Partners with key technology vendors (Software and Managed Services providers) to ensure NT is getting optimal value for spend.
Executive Briefing:
  • Brief senior leadership, business units and regulators on relevant threats, process improvements and readiness for change.
Qualifications:
  • 8+ years of experience in cybersecurity engineering, with a focus on SaaS or cloud security.
  • Proven experience implementing SSPM or CSPM tools; direct experience with Obsidian Security strongly preferred
  • Deep understanding of security configuration, identity federation, API security, and SaaS-to-SaaS data movement
  • Strong communication and stakeholder management skills.
  • Relevant certifications (e.g., CISSP, CCSP, AWS/Azure Security Engineer) are a plus
Salary Range:
$137,400 - 233,600 USD

Salary range is a good faith estimate of base pay. Northern Trust provides a comprehensive benefits package including retirement benefits (401k and pension), health and welfare benefits (medical, dental, vision, spending accounts and disability), paid time off, parental and caregiver leave, life & accident insurance, and other voluntary and well-being benefits. Northern Trust also provides a discretionary bonus program that may include an equity component.

Working with Us:

As a Northern Trust partner, greater achievements await. You will be part of a flexible and collaborative work culture in an organization where financial strength and stability is an asset that emboldens us to explore new ideas.

Movement within the organization is encouraged, senior leaders are accessible, and you can take pride in working for a company committed to assisting the communities we serve! Join a workplace with a greater purpose.

We'd love to learn more about how your interests and experience could be a fit with one of the world's most admired and sustainable companies! Build your career with us and apply today. #MadeForGreater

Reasonable accommodation

Northern Trust is committed to working with and providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation for any part of the employment process, please email our HR Service Center at .

We hope you're excited about the role and the opportunity to work with us. We value an inclusive workplace and understand flexibility means different things to different people.

Apply today and talk to us about your flexible working requirements and together we can achieve greater.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.