Northern Trust is proud to provide innovative financial services and guidance to the worlds most successful individuals, families, and institutions by remaining true to our enduring principles of service, expertise, and integrity. With more than 130 years of financial experience and over 22,000 partners, we serve the worlds most sophisticated clients using leading technology and exceptional service.
Overview
The Principal, SOD / RBAC (Segregation / Separation of Duties & Role-Based Access Control) is responsible for implementing and overseeing a governance framework for SOD and RBAC at Northern Trust. This role is pivotal in formulating and executing strategic roadmaps for first-line IAM (Identity & Access Management) practices.
The role will be responsible for developing and implementing SoD and RBAC policies and controls to ensure compliance with regulatory requirements, industry standards, and best practices. Additionally, this position will manage a team that will be responsible for implementing advanced IGA functions, include RBAC and SOD. As an IAM leader, the selected candidate will partner with IAM architecture, engineering, operations and program teams to ensure that identity governance and administration strategy and roadmaps are in alignment with other IAM capabilities and towers of work.
Key Responsibilities
- Implement the strategic technology and operational objectives for the identity governance and administration (IGA) tower of the Northern Trust (NT) IAM Organization
- Serve as a people manager for the IGA function, aligning its capabilities to business and technology team objectives
- Responsible for developing and implementing advanced IGA functions, including Role Based Access design and implementation and Segregation of Duties and Toxic Combination identification and remediation
- Responsible for defining, maintaining and enhancing rule-set ownership for SOD and RBAC
- Define and operationalize identification and remediation of toxic combinations for both centralized and de-centralized applications
- Define and operationalize process for creating new roles and on-going role verification
- Design and oversee the implementation of access control mechanisms to ensure secure, timely and controlled access to systems, applications and data
- Enforce IGA Tower standards and controls across NT, whether applications and platforms are centrally or de-centrally managed
- Establish sustainable model for SOD and RBAC processes and procedures
- Responsible for responding to audit and regulatory inquiries in partnership with other IAM, IT and Risk leadership teams
- Develop metrics and reports to measure and track effectiveness of SoD and RBAC policies and controls that are provided to all levels of NT leadership
- Work closely with IT security, compliance and audit teams to ensure IAM policies and controls meet regulatory requirements and industry standards
- Stay up-to-date with industry trends and emerging technologies related to IAM, SoD and RBAC, and apply best practices to improve the organization's IAM program
Leadership & Skills
Strong team management skills. Conducts performance management and career development processes, and staffing and disciplinary actions.Leads resource planning and metricsDevelops periodic goals, organizes the work, sets short-term priorities, monitors all activities, and ensures timely and accurate completion of the work.Operates independently; has in-depth knowledge of business unit / functionAs an IAM subject area expert, provides comprehensive, in-depth consulting and leadership to team and partners at a high technical levelCarries out activities that are large in scope, cross-functional and technically difficultRole is balanced between high level operational execution and development, and execution of strategic direction of business function activitiesResponsible for direct interaction with different committees and / or managementStrategic in developing, implementing and administering programs within functional areasQualifications
Broad understanding of identity and access management, with expert knowledge in identity governance and administrationUnderstanding of identity related regulatory requirements for all global regionsStrong aptitude to develop and maintain internal and external business relationships and to leverage those relationships in pursuit of day-to-day goals and responsibilitiesExcellent consultative skillsExcellent oral and written communication skills are requiredIn-depth Functional / Industry Knowledge is requiredKnowledge of information security, network management, operating systems, software development, database systems and information technology concepts needed to effectively manage the groupAnalytical and problem-solving skills are requiredLeadership and organizational skills are required to develop periodic goals and to manage and motivate team members towards the goals setA College or University degree and / or relevant proven work experience is requiredIndustry certification such as CISSP, CISM, CISA, Cisco, SANS, etc. is preferred