Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Security Expert (SOX & Cloud)

PNC Financial Services Group

Position Overview

At PNC, our people are our greatest differentiator and competitive advantage in the markets we serve. We are all united in delivering the best experience for our customers. We work together each day to foster an inclusive workplace culture where all of our employees feel respected, valued and have an opportunity to contribute to the company's success. As a Security Expert within PNC's Security Ops organization, you will be based in Pittsburgh, PA or Dallas, TX or Houston, TX or Phoenix, AZ.

Identity & Access Management (IAM) Governance Security Expert Lead - SOX & Cloud

Overview
The IAM Governance Security Expert Lead is responsible for executing and enforcing identity governance controls in a SOX-regulated, cloud-first environment. This role focuses on hands-on operation of Identity Governance and Administration (IGA) tooling, access certification execution, Separation of Duties (SoD) enforcement, and audit-ready evidence production across cloud platforms and critical financial applications. The position works closely with Audit, Finance IT, IAM Engineering, and application owners to ensure access controls are compliant, consistent, and defensible.

Key Responsibilities
Identity Governance & Administration (IGA) - Cloud-First
• Operate and administer the enterprise IGA platform integrated with cloud and SaaS systems.
• Execute and monitor joiner, mover, leaver processes with emphasis on audit traceability.
• Support automated provisioning and deprovisioning across Azure/Entra ID, AWS, GCP, and SaaS platforms.
• Maintain role-based and attribute-based access models for SOX in-scope applications.
• Conduct periodic access certifications for workforce, privileged, and service accounts.
• Validate identity and entitlement data accuracy across authoritative sources.
Separation of Duties (SoD) - SOX Focused
• Execute defined SoD rulesets for financial, ERP, and cloud administrative roles.
• Identify, analyze, and document SoD conflicts and violations.
• Track mitigations, compensating controls, and approved exceptions.
• Support proactive SoD reviews during role design, access requests, and onboarding.
• Partner with application owners to remediate recurring SoD issues.
SOX Controls, Audit & Compliance
• Execute IAM controls mapped to SOX IT General Controls (ITGCs).
• Produce audit-ready evidence for internal and external audits.
• Support audit walkthroughs, testing, and remediation activities.
• Maintain control narratives, procedures, and supporting documentation.
• Assist in annual SOX scoping and system coverage validation.
Cloud IAM & Privileged Access Governance
• Support governance of cloud administrative roles and high-risk entitlements.
• Validate alignment between IGA certifications and cloud IAM configurations.
• Assist with governance of non-human identities where in SOX scope.
• Monitor access changes affecting cloud-hosted financial systems.
Required Qualifications
• Bachelor's degree or equivalent experience in Information Security, IT, or related field.
• 5+ years of experience in IAM, Identity Governance, or ITGC execution.
• Hands-on experience with IGA platforms and access certifications.
• Strong understanding of SOX ITGC requirements related to user access and SoD.
• Experience supporting external audits and producing defensible evidence.
• Familiarity with cloud-based identity platforms and SaaS access models.
Preferred Qualifications
• Experience with ERP and financial systems (SAP, Oracle, Workday, NetSuite).
• IAM or security certifications (CISSP, CISM, CRISC, SailPoint, Saviynt).
• Exposure to privileged access governance in cloud environments.
• Understanding of zero trust and modern identity security principles.
Key Competencies
• SOX and audit discipline
• Attention to detail and execution rigor
• Clear documentation and evidence management
• Cross-functional collaboration
• Influence through subject-matter expertise

PNC is an in-office company that fosters a supportive culture where employees can thrive and achieve balance. We encourage candidates to connect with their recruiter and hiring manager to understand workplace expectations and ensure the role aligns with their goals.

PNC will not provide sponsorship for employment visas or participate in STEM OPT for this position.

Job Description
  • Provides technical and thought leadership, analysis, and guidance in multiple security disciplines. Supports activities, process, and tools needed to improve overall security posture of the organization. Provides unique subject matter expertise.
  • Reviews and defines controls, aligning the controls of a specific Security area to the enterprise framework. Devises control implementation strategy.
  • Advises on more complex security procedures and products for clients, security administrators and network operations. Participates in enforcement of control security risks and threats; potential of one more controls subject to manager discretion. Shares knowledge with staff.
  • Conducts security assessments and other information security routines consistently. Investigates and recommends corrective actions for data security related to established guidelines.
  • Develops policies and procedures to standardize security functions and eliminate potential vulnerabilities and threats. Oversees that business needs are being met during development.
  • Shares knowledge, leads and mentors are the discretion of management.
PNC Employees take pride in our reputation and to continue building upon that we expect our employees to be:
  • Customer Focused - Knowledgeable of the values and practices that align customer needs and satisfaction as primary considerations in all business decisions and able to leverage that information in creating customized customer solutions.
  • Managing Risk - Assessing and effectively managing all of the risks associated with their business objectives and activities to ensure they adhere to and support PNC's Enterprise Risk Management Framework.

Qualifications

Successful candidates must demonstrate appropriate knowledge, skills, and abilities for a role. Listed below are skills, competencies, work experience, education, and required certifications/licensures needed to be successful in this position.

Preferred Skills
Access Control (AC), AI Agents, Building Architecture, Cloud Security, Customer Solutions, Disaster Recovery Planning, Information Security, Network Security, Physical Security, Risk Assessments, Security Technologies

Competencies
Analytical Thinking, Effective Communications, Information Security Management, Information Security Technologies, IT Environment, IT Standards, Procedures & Policies, Knowledge of Organization, Problem Solving

Work Experience
Roles at this level typically require a university / college degree. Higher level education such as a Masters degree, or PhD is desirable. Industry experience is typically 8 + years. Specific certifications are often required. In lieu of a degree, a comparable combination of education, job specific certification(s), and experience (including military service) may be considered.

Education
Bachelors

Certifications
No Required Certification(s)

Licenses
No Required License(s)

Benefits

PNC offers a comprehensive range of benefits to help meet your needs now and in the future. Depending on your eligibility, options for full-time employees include: medical/prescription drug coverage (with a Health Savings Account feature), dental and vision options; employee and spouse/child life insurance; short and long-term disability protection; 401(k) with PNC match, pension and stock purchase plans; dependent care reimbursement account; back-up child/elder care; adoption, surrogacy, and doula reimbursement; educational assistance, including select programs fully paid; a robust wellness program with financial incentives.

In addition, PNC generally provides the following paid time off, depending on your eligibility: maternity and/or parental leave; up to 11 paid holidays each year; 9 occasional absence days each year, unless otherwise required by law; between 15 to 25 vacation days each year, depending on career level; and years of service.

To learn more about these and other programs, including benefits for full time and part-time employees, visit pncthrive.com.

Disability Accommodations Statement

If an accommodation is required to participate in the application process, please contact us via email at View email address on click.appcast.io. Please include "accommodation request" in the subject line title and be sure to include your name, the job ID, and your preferred method of contact in the body of the email. Emails not related to accommodation requests will not receive responses. Applicants may also call View phone number on click.appcast.io and say "Workday" for accommodation assistance. All information provided will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.


At PNC we foster an inclusive and accessible workplace. We provide reasonable accommodations to employment applicants and qualified individuals with a disability who need an accommodation to perform the essential functions of their positions.

Equal Employment Opportunity (EEO)

PNC provides equal employment opportunity to qualified persons regardless of race, color, sex, religion, national origin, age, sexual orientation, gender identity, disability, veteran status, or other categories protected by law.

This position is subject to the requirements of Section 19 of the Federal Deposit Insurance Act (FDIA) and, for any registered role, the Secure and Fair Enforcement for Mortgage Licensing Act of 2008 (SAFE Act) and/or the Financial Industry Regulatory Authority (FINRA), which prohibit the hiring of individuals with certain criminal history.

California Residents

Refer to the California Consumer Privacy Act Privacy Notice to gain understanding of how PNC may use or disclose your personal information in our hiring practices.
Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Security Expert (SOX & Cloud) in Dallas, TX vacancy
  •  ...Provider in the United States is seeking an experienced Compliance Manager to lead a significant cloud migration initiative. This role demands a strong background in SOX/SOC compliance and cloud technologies, particularly Azure. The ideal candidate will manage stakeholder... 
    Cloud

    Compunnel, Inc.

    Dallas, TX
    3 days ago
  • $89k - $148.1k

     ...Manages and matures our identity security posture—executes continuously...  ...ID/AD), SaaS applications, cloud environments, and critical business...  ...audit and external auditors (SOX/ITGC/GITC reliance, regulator...  ...security contract language. Expert knowledge of cyber and data... 
    Cloud
    Contract work
    Casual work
    Work at office

    Kemper

    Dallas, TX
    3 days ago
  • A technology consulting firm is seeking a Senior Technical Project Manager to oversee SOX and SOC compliance for a large-scale cloud migration project involving over 60 applications. The successful candidate will have significant experience in IT project management and... 
    Cloud

    Compunnel, Inc.

    Dallas, TX
    1 day ago
  •  ...experienced Compliance Manager with a strong background in SOX/SOC compliance and cloud migration to lead a high-impact enterprise initiative...  ...with data center migrations to Azure. Knowledge of cloud security and governance frameworks. Prior experience in IT compliance... 
    Cloud

    Compunnel, Inc.

    Dallas, TX
    3 days ago
  •  ...Risk and Controls Manager to improve risk management across its cloud-native products. The applicant should have at least 5 to 8...  ...Responsibilities include assessing emerging threats, evaluating security measures, and collaborating closely with senior leadership. The... 
    Cloud

    AppFolio

    Dallas, TX
    5 days ago
  •  ...Senior Technical Project Manager to lead SOX and SOC compliance deliverables for a large...  ...60+ applications transitioning to the cloud. This role requires strong project management...  ...migrations to Azure. Knowledge of cloud security and governance frameworks. Familiarity... 
    Cloud

    Compunnel, Inc.

    Dallas, TX
    1 day ago
  •  ...Security Consultant Primary Skill Set: Firewall, Proxy, NAC, IDS, IPS & VPN (Palo Alto, Checkpoint, Cisco ASA, Cisco Anyconnect) Secondary...  ...perimeter security devices. Good Experience of Native cloud security on Azure / GCP. Engineer solutions for complex security... 
    Cloud
    Work experience placement
    Remote work

    Omni Inclusive

    Dallas, TX
    5 days ago
  •  ...Cybersecurity / Enterprise Security Specialist Location: AT&T, Dallas, TX, USA Years of Experience: 5-7 Years Job Summary: We...  ...verbal and written. Preferred Skills: Experience with cloud security and securing applications in cloud environments.... 
    Cloud

    Yantran LLC

    Dallas, TX
    3 days ago
  • Exciting SOX Control Tester contract opportunity (Remote/Onsite). Requirements Expertise in technical Excel mastery with advanced Excel...  ...test controls related to financial reporting and IT operations Cloud and DevOps Tools: Azure: understanding of Azure cloud services... 
    Cloud
    Remote job
    Contract work

    WaveStrong, Inc.

    Dallas, TX
    1 day ago
  • A leading global consulting firm seeks a Cloud Security Expert to advise clients on cloud security architecture and risk management. With a focus on AWS and Azure, you'll lead security assessments, work with IAM solutions like Okta, and mentor teams. The role offers a flexible... 
    Cloud
    Flexible hours

    Cedera

    Dallas, TX
    2 days ago
  •  ...Job Title: Oracle Fusion Security Specialist Location: Remote Engagement: Contract-to-Hire (No OPT/CPT) Interview...  ...be responsible for ensuring a secure environment for Oracle Cloud HCM, ERP, SCM, and EPM systems. This role will involve designing... 
    Cloud
    Contract work
    Remote work

    Kaav Inc.

    Dallas, TX
    2 days ago
  • $131.3k - $177.6k

     ...Are you ready to shape the future of secure artificial intelligence - not just from the...  ...ProServe consulting, you'll be the security expert who ensures we deliver at the AWS...  ...s most comprehensive and broadly adopted cloud platform. We pioneered cloud computing and... 
    Cloud
    Flexible hours
    Day shift

    Amazon

    Dallas, TX
    1 day ago
  •  ...remaining at the forefront of innovation. Every day, we work to secure what our clients value most, from their families to their assets...  ...their reputation to their networks, and from their money to their cloud. As the 3rd largest security services provider, our 175k+ team... 
    Cloud
    Temporary work
    Remote work
    Shift work
    Weekend work

    Prosegur Security USA

    Irving, TX
    5 days ago
  • $102.5k - $187.9k

     ...and Compliance (GRC), EY is seeking SAP Security and GRC professionals who understand risk...  ...transformation initiatives, including S/4HANA and cloud‑based SAP solutions, under the guidance...  ...or compliance frameworks (e.g., SOX, GDPR) Familiarity with tools such as ServiceNow... 
    Cloud
    Summer holiday
    Flexible hours
    Shift work

    Ernst & Young Oman

    Dallas, TX
    1 day ago
  •  ...: Dallas TX Recruitment Manager: Sidhartha Arepally Job Title: Security Consultant - Identity & Access Management Services Required skills...  ...utilize commercially available IAM tools such as ISIM/ISAM, Cloud Identity/Okta/Sailpoint/MS Entra, to provide Single Sign-On (SSO... 
    Cloud
    Work experience placement

    Hallmark Global Solutions Ltd

    Dallas, TX
    2 days ago
  • $99.84k - $131.04k

    Senior Security Consultant We are looking for a dynamic and energetic Senior Security Consultant for our Houston or...  ...implementation plan and assist with configuration of cloud discovery Work as a subject matter expert to deliver projects from initiation through to successful... 
    Cloud
    Full time
    Temporary work
    Flexible hours

    Long View Systems

    Dallas, TX
    4 days ago
  • Goldman Sachs Bank AG is seeking a Cloud Security Architecture Analyst/Associate in Dallas, TX. The role involves conducting cloud security assessments, identifying security risks, and collaborating with engineering teams to ensure secure application development. Candidates... 
    Cloud

    Goldman Sachs Bank AG

    Dallas, TX
    1 day ago
  • $128.1k - $239.6k

     ...help to build a better working world. EY Infosec is seeking a Cloud Security consultant with expertise in cloud security architecture,...  ...management. Key responsibilities SME (subject matter expert) to mature/advance our cloud security posture using the Wiz CNAPP... 
    Cloud
    Summer holiday
    Local area
    Flexible hours
    Shift work

    EY

    Dallas, TX
    1 day ago
  • A cloud operations company based in Dallas is seeking a Cloud Operation Engineer to optimize cloud and compute costs across Azure, Databricks, and Snowflake. The ideal candidate will have 5-7 years of experience in FinOps or Cloud Cost Analysis, with strong analytical and... 
    Cloud

    Integratedcooling

    Dallas, TX
    5 days ago
  • A technology consulting firm is seeking a Data Engineer specializing in Azure Databricks to oversee big data technologies and cloud computing projects. The candidate will engage with stakeholders to manage requirements and ensure adherence to best practices in data engineering... 
    Cloud

    Cloud Analytics Technologies, LLC

    Dallas, TX
    1 day ago
  •  ...Description Enterprise Data Architecture & Cloud Strategy Architect modern...  ...lifecycle governance. Data Governance, Security & Compliance Architect scalable governance...  ...standards. Ensure compliance with SOX, privacy, and corporate data security... 
    Cloud

    BravoTECH

    Irving, TX
    2 days ago
  •  ...Python) experience, Kafka, PySpark, Azure cloud experience (EventHub, ADF, Databricks,...  ...regulatory rules (PII, CPNI, DPI, GDPR, SOX) Data cataloging tools (Purview, Collibra...  ...differences Flink/Spark Streaming Security, Privacy Compliance Data... 
    Cloud
    Work at office

    Yantran LLC

    Dallas, TX
    5 days ago
  •  ...Job Title: Architect III - Security Architect Location: Block...  ...(IAM, Network, Application, Cloud, Data, AI) with depth in at least...  ...(e.g., FFIEC, PCI DSS, SOX). ~ Familiarity with DevSecOps...  ...Microsoft Cybersecurity Architect Expert) ~ Previous leadership... 
    Cloud

    Western Alliance Bank

    Dallas, TX
    23 days ago
  •  ...Ping Security Analyst We are seeking a skilled and dedicated professional to join our team as a Developer specializing in Ping security...  ...monitoring solutions, and dashboards Proficiency in Azure cloud and DevOps Programming knowledge in Java/Python Scripting... 
    Cloud
    Work experience placement

    Artech

    Dallas, TX
    4 days ago
  •  ...Security Engineer Led by the Chief Information Security Officer (CISO), Technology Risk secures Goldman Sachs against hackers and other...  ...Advanced understanding of Linux Operating Systems Designing Cloud architecture including security setup, and Incident response... 
    Cloud

    The Goldman Sachs Group, Inc.

    Dallas, TX
    3 days ago
  • $43.46 per hour

     ...Job Description Job Description Job Title: Senior Security Analyst Location: Dallas, TX Job Type: Permanent | Full-Time...  ...risk assessment Active Directory, Windows/Linux, encryption, cloud security Frameworks: NIST, HIPAA, PCI, HITRUST Requirements... 
    Cloud
    Permanent employment
    Full time
    Shift work

    Lancesoft INC Careers

    Dallas, TX
    1 day ago
  •  ...Offensive Security Analyst (Structured / Non-Exploit) About the Role What if your red-team instincts and adversarial thinking...  ...frameworks (MITRE ATT&CK, STRIDE, PASTA, etc.) Background in cloud security, Active Directory environments, or enterprise infrastructure... 
    Cloud
    Hourly pay
    Ongoing contract
    Contract work
    Freelance
    Remote work
    Flexible hours

    Alignerr

    Dallas, TX
    3 days ago
  • Hearst Health is seeking a Security Administrator in Dallas to support security operations across cloud-based and on-premises environments. You will monitor security tools, investigate incidents, and maintain compliance with security policies. The ideal candidate will... 
    Cloud

    Hearst Health

    Dallas, TX
    3 days ago
  • Job Description: Position Overview As the Cloud Security Lead, you will lead customer engagement activities by advising leads and Executives...  ...and other compliances with ISO27K, HIPAA, CCM4, NIST, CIS, SOX, and PCI-DSS standards. Travel to customer locations as required... 
    Cloud
    Relocation

    TechDigital Group

    Dallas, TX
    2 days ago
  • A leading media company in the US seeks a Security Administrator to ensure the safety and compliance of their IT environments. This role includes monitoring security systems, responding to incidents, and collaborating with teams to enhance security measures. The ideal... 
    Cloud

    Hearst Communications, Inc.

    Dallas, TX
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Security Expert (SOX & Cloud). Be the first to apply!