IAM Risk Audit (CIAM) - Lead

Northern TrustChicago, IL
$99,600 - $169,200

About The Position

The Lead, Client Identity & Access Management (CIAM) Risk & Audit, plays a key role in supporting and advancing risk, audit, governance, and control activities across the organization's client identity ecosystem. This position partners with cyber security, risk management, audit, compliance, technology teams, and business stakeholders to ensure client identity services operate within established regulatory, security, privacy, and control requirements. The successful candidate will lead audit readiness activities, risk assessments, control reviews, remediation programs, and governance initiatives while helping strengthen the maturity of CIAM processes. The role combines risk management, analytical reporting, process improvement, and a strong understanding of client identity controls, authentication technologies, client access management, and regulatory expectations.

Requirements

  • Bachelor's degree in Cyber Security, Information Technology, Computer Science, Business, or a related field.
  • 5-8 years of experience in Cyber Security, Identity & Access Management, Risk Management, Audit, Compliance, or related disciplines.
  • Experience supporting or leading audit, compliance, and risk management activities.
  • Understanding of Client Identity & Access Management (CIAM) principles and controls.
  • Experience with client authentication, authorization, onboarding, identity proofing, or access management controls.
  • Ability to assess risks, analyze control effectiveness, and support remediation efforts.
  • Experience developing reports, dashboards, and management presentations.
  • Strong analytical, organizational, and problem-solving skills.
  • Excellent written, verbal, and stakeholder communication skills.
  • Applicants must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future. Northern Trust will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa).

Responsibilities

  • Lead execution and oversight of CIAM risk and control activities.
  • Evaluate identity-related risks and recommend mitigation strategies.
  • Support risk assessments, control reviews, and control effectiveness evaluations.
  • Identify control gaps and partner with stakeholders to develop remediation plans.
  • Monitor remediation activities and ensure timely resolution of identified issues.
  • Lead audit readiness efforts for CIAM platforms and processes.
  • Coordinate internal and external audit engagements, regulatory examinations, and compliance reviews.
  • Review and validate audit evidence prior to submission.
  • Partner with auditors and control owners to address inquiries and findings.
  • Track audit observations and drive remediation efforts through closure.
  • Support development and execution of CIAM governance programs.
  • Contribute to identity risk management strategies and maturity initiatives.
  • Assist with development and maintenance of policies, standards, procedures, and control documentation.
  • Participate in governance forums and working groups.
  • Recommend process improvements that strengthen compliance, security, privacy, and operational effectiveness.
  • Develop and maintain risk, compliance, and audit reporting.
  • Analyze identity data to identify trends, exceptions, and emerging risks.
  • Create dashboards and scorecards supporting management and leadership reporting.
  • Develop KPIs, KCIs, and control effectiveness metrics.
  • Present findings and recommendations to technology, risk, and business stakeholders.
  • Partner with CIAM and engineering teams to strengthen client identity controls.
  • Support governance processes related to client identity lifecycle management.
  • Assist in evaluating client authentication, authorization, onboarding, and identity proofing controls.
  • Review client access management practices for regulatory, privacy, and security compliance.
  • Promote security and privacy best practices across client identity services.

Benefits

  • retirement benefits (401k and pension)
  • health and welfare benefits (medical, dental, vision, spending accounts and disability)
  • paid time off
  • parental and caregiver leave
  • life & accident insurance
  • other voluntary and well-being benefits
  • discretionary bonus program that may include an equity component
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service