About The Position

The Senior Lead, Security Engineer is an experienced individual contributor responsible for engineering and operationalizing enterprise security platforms across Northern Trust. This role combines hands-on platform delivery with technical ownership for reliable, auditable and scalable security capabilities. It suits an engineer who can work across architecture discussions, implementation planning, operational support and deep technical troubleshooting while partnering effectively with engineering, infrastructure, application and risk stakeholders.

Requirements

  • Typically 12+ years of experience in information technology, cybersecurity, cloud, infrastructure, network security or platform engineering, with hands-on experience supporting enterprise-scale security platforms.
  • Ability to operate as an experienced technical contributor: making sound tradeoffs across security, reliability, usability and compliance while helping drive alignment on technical decisions.
  • Deep hands-on experience with at least one SSE/SASE platform, including ZTNA, secure web gateway policy, segmentation, connector architecture and operating model design.
  • Working knowledge of IPS/next-gen firewall platforms and signature tuning.
  • Strong networking fundamentals: TCP/IP, routing, DNS, TLS/PKI, proxies and tunneling (IPsec/GRE), and segmentation.
  • Experience with vulnerability management tooling.
  • Familiarity with identity integration: SAML/OIDC, Entra ID, conditional access.
  • Scripting and API skills (Python, PowerShell, REST/JSON).
  • Experience integrating security tools with ServiceNow, SIEM platforms and enterprise reporting workflows.
  • Strong communication skills, including the ability to document technical decisions, support audit inquiries and collaborate with stakeholders across engineering, operations, risk and audit.
  • Experience working in a regulated environment with control evidence, operational resilience, risk acceptance, issue management and audit/regulatory response expectations.

Nice To Haves

  • Exposure to AI/LLM security controls: AI gateways
  • Prompt-injection defenses
  • OWASP Top 10 for LLM Applications
  • MITRE ATLAS
  • ServiceNow Vulnerability Response or USEM implementation experience.
  • Low-code automation or Terraform/IaC.

Responsibilities

  • Contribute technical expertise to security platform engineering decisions and operational governance.
  • Design, engineer and operate security tools spanning zero-trust, SASE/SSE, network, vulnerability & exposure management, AI guardrails, and SaaS.
  • Apply engineering patterns, implementation standards and operational runbooks that support consistent adoption across business units and technology teams.
  • Develop maturity models and metrics to measure assurance and compliance.
  • Partner with engineering, infrastructure and application teams on cross-functional security initiatives
  • Design, Engineer, Coordinate and Operate: Intrusion prevention(IPS) across next-gen firewalls
  • Vulnerability scanning platforms and unified vulnerability management(UVM) layer
  • Enterprise SASE / SSE security platforms
  • Secure web gateway, CASB, and cloud access protection
  • SaaS application protection and monitoring
  • Secure remote access and internet traffic inspection
  • Browser isolation and modern web threat prevention
  • AI gateway controls that govern how users and applications consume LLMs and AI services
  • ServiceNow integrations (Vulnerability Response, ITSM, CMDB)
  • Support technical outcomes for platform health, upgrades, capacity, resilience, lifecycle management and vendor escalations across the stack.
  • Define and publish metrics on coverage, control effectiveness, SLA adherence, tool health, control performance and measurable risk reduction.
  • Support audits and regulatory exams (PCI-DSS, SOX, GLBA, OCC/FFIEC) by ensuring controls are designed for evidence quality, traceability and repeatable operation.
  • Author runbooks and executive-ready documentation that can be used by engineering, operations, risk and audit stakeholders.
  • Evaluate new capabilities, proofs of concept and tool rationalization opportunities, with recommendations based on risk reduction, operational fit, cost and control outcomes.

Benefits

  • retirement benefits (401k and pension)
  • health and welfare benefits (medical, dental, vision, spending accounts and disability)
  • paid time off
  • parental and caregiver leave
  • life & accident insurance
  • other voluntary and well-being benefits
  • discretionary bonus program that may include an equity component
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service