Security Expert (SOX & Cloud)
PNC Financial Services Group
Position Overview At PNC, our people are our greatest differentiator and competitive advantage in the markets we serve. We are all united in delivering the best experience for our customers. We work together each day to foster an inclusive workplace culture where all of our employees feel respected, valued and have an opportunity to contribute to the company's success. As a Security Expert within PNC's Security Ops organization, you will be based in Pittsburgh, PA or Dallas, TX or Houston, TX or Phoenix, AZ. Identity & Access Management (IAM) Governance Security Expert Lead - SOX & Cloud Overview
The IAM Governance Security Expert Lead is responsible for executing and enforcing identity governance controls in a SOX-regulated, cloud-first environment. This role focuses on hands-on operation of Identity Governance and Administration (IGA) tooling, access certification execution, Separation of Duties (SoD) enforcement, and audit-ready evidence production across cloud platforms and critical financial applications. The position works closely with Audit, Finance IT, IAM Engineering, and application owners to ensure access controls are compliant, consistent, and defensible. Key Responsibilities
Identity Governance & Administration (IGA) - Cloud-First
• Operate and administer the enterprise IGA platform integrated with cloud and SaaS systems.
• Execute and monitor joiner, mover, leaver processes with emphasis on audit traceability.
• Support automated provisioning and deprovisioning across Azure/Entra ID, AWS, GCP, and SaaS platforms.
• Maintain role-based and attribute-based access models for SOX in-scope applications.
• Conduct periodic access certifications for workforce, privileged, and service accounts.
• Validate identity and entitlement data accuracy across authoritative sources.
Separation of Duties (SoD) - SOX Focused
• Execute defined SoD rulesets for financial, ERP, and cloud administrative roles.
• Identify, analyze, and document SoD conflicts and violations.
• Track mitigations, compensating controls, and approved exceptions.
• Support proactive SoD reviews during role design, access requests, and onboarding.
• Partner with application owners to remediate recurring SoD issues.
SOX Controls, Audit & Compliance
• Execute IAM controls mapped to SOX IT General Controls (ITGCs).
• Produce audit-ready evidence for internal and external audits.
• Support audit walkthroughs, testing, and remediation activities.
• Maintain control narratives, procedures, and supporting documentation.
• Assist in annual SOX scoping and system coverage validation.
Cloud IAM & Privileged Access Governance
• Support governance of cloud administrative roles and high-risk entitlements.
• Validate alignment between IGA certifications and cloud IAM configurations.
• Assist with governance of non-human identities where in SOX scope.
• Monitor access changes affecting cloud-hosted financial systems.
Required Qualifications
• Bachelor's degree or equivalent experience in Information Security, IT, or related field.
• 5+ years of experience in IAM, Identity Governance, or ITGC execution.
• Hands-on experience with IGA platforms and access certifications.
• Strong understanding of SOX ITGC requirements related to user access and SoD.
• Experience supporting external audits and producing defensible evidence.
• Familiarity with cloud-based identity platforms and SaaS access models.
Preferred Qualifications
• Experience with ERP and financial systems (SAP, Oracle, Workday, NetSuite).
• IAM or security certifications (CISSP, CISM, CRISC, SailPoint, Saviynt).
• Exposure to privileged access governance in cloud environments.
• Understanding of zero trust and modern identity security principles.
Key Competencies
• SOX and audit discipline
• Attention to detail and execution rigor
• Clear documentation and evidence management
• Cross-functional collaboration
• Influence through subject-matter expertise PNC is an in-office company that fosters a supportive culture where employees can thrive and achieve balance. We encourage candidates to connect with their recruiter and hiring manager to understand workplace expectations and ensure the role aligns with their goals. PNC will not provide sponsorship for employment visas or participate in STEM OPT for this position. Job Description
Access Control (AC), AI Agents, Building Architecture, Cloud Security, Customer Solutions, Disaster Recovery Planning, Information Security, Network Security, Physical Security, Risk Assessments, Security Technologies Competencies
Analytical Thinking, Effective Communications, Information Security Management, Information Security Technologies, IT Environment, IT Standards, Procedures & Policies, Knowledge of Organization, Problem Solving Work Experience
Roles at this level typically require a university / college degree. Higher level education such as a Masters degree, or PhD is desirable. Industry experience is typically 8 + years. Specific certifications are often required. In lieu of a degree, a comparable combination of education, job specific certification(s), and experience (including military service) may be considered. Education
Bachelors Certifications
No Required Certification(s) Licenses
No Required License(s) Benefits PNC offers a comprehensive range of benefits to help meet your needs now and in the future. Depending on your eligibility, options for full-time employees include: medical/prescription drug coverage (with a Health Savings Account feature), dental and vision options; employee and spouse/child life insurance; short and long-term disability protection; 401(k) with PNC match, pension and stock purchase plans; dependent care reimbursement account; back-up child/elder care; adoption, surrogacy, and doula reimbursement; educational assistance, including select programs fully paid; a robust wellness program with financial incentives. In addition, PNC generally provides the following paid time off, depending on your eligibility: maternity and/or parental leave; up to 11 paid holidays each year; 9 occasional absence days each year, unless otherwise required by law; between 15 to 25 vacation days each year, depending on career level; and years of service. To learn more about these and other programs, including benefits for full time and part-time employees, visit pncthrive.com. Disability Accommodations Statement If an accommodation is required to participate in the application process, please contact us via email at View email address on click.appcast.io. Please include "accommodation request" in the subject line title and be sure to include your name, the job ID, and your preferred method of contact in the body of the email. Emails not related to accommodation requests will not receive responses. Applicants may also call View phone number on click.appcast.io and say "Workday" for accommodation assistance. All information provided will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.
At PNC we foster an inclusive and accessible workplace. We provide reasonable accommodations to employment applicants and qualified individuals with a disability who need an accommodation to perform the essential functions of their positions. Equal Employment Opportunity (EEO) PNC provides equal employment opportunity to qualified persons regardless of race, color, sex, religion, national origin, age, sexual orientation, gender identity, disability, veteran status, or other categories protected by law. This position is subject to the requirements of Section 19 of the Federal Deposit Insurance Act (FDIA) and, for any registered role, the Secure and Fair Enforcement for Mortgage Licensing Act of 2008 (SAFE Act) and/or the Financial Industry Regulatory Authority (FINRA), which prohibit the hiring of individuals with certain criminal history. California Residents Refer to the California Consumer Privacy Act Privacy Notice to gain understanding of how PNC may use or disclose your personal information in our hiring practices.
The IAM Governance Security Expert Lead is responsible for executing and enforcing identity governance controls in a SOX-regulated, cloud-first environment. This role focuses on hands-on operation of Identity Governance and Administration (IGA) tooling, access certification execution, Separation of Duties (SoD) enforcement, and audit-ready evidence production across cloud platforms and critical financial applications. The position works closely with Audit, Finance IT, IAM Engineering, and application owners to ensure access controls are compliant, consistent, and defensible. Key Responsibilities
Identity Governance & Administration (IGA) - Cloud-First
• Operate and administer the enterprise IGA platform integrated with cloud and SaaS systems.
• Execute and monitor joiner, mover, leaver processes with emphasis on audit traceability.
• Support automated provisioning and deprovisioning across Azure/Entra ID, AWS, GCP, and SaaS platforms.
• Maintain role-based and attribute-based access models for SOX in-scope applications.
• Conduct periodic access certifications for workforce, privileged, and service accounts.
• Validate identity and entitlement data accuracy across authoritative sources.
Separation of Duties (SoD) - SOX Focused
• Execute defined SoD rulesets for financial, ERP, and cloud administrative roles.
• Identify, analyze, and document SoD conflicts and violations.
• Track mitigations, compensating controls, and approved exceptions.
• Support proactive SoD reviews during role design, access requests, and onboarding.
• Partner with application owners to remediate recurring SoD issues.
SOX Controls, Audit & Compliance
• Execute IAM controls mapped to SOX IT General Controls (ITGCs).
• Produce audit-ready evidence for internal and external audits.
• Support audit walkthroughs, testing, and remediation activities.
• Maintain control narratives, procedures, and supporting documentation.
• Assist in annual SOX scoping and system coverage validation.
Cloud IAM & Privileged Access Governance
• Support governance of cloud administrative roles and high-risk entitlements.
• Validate alignment between IGA certifications and cloud IAM configurations.
• Assist with governance of non-human identities where in SOX scope.
• Monitor access changes affecting cloud-hosted financial systems.
Required Qualifications
• Bachelor's degree or equivalent experience in Information Security, IT, or related field.
• 5+ years of experience in IAM, Identity Governance, or ITGC execution.
• Hands-on experience with IGA platforms and access certifications.
• Strong understanding of SOX ITGC requirements related to user access and SoD.
• Experience supporting external audits and producing defensible evidence.
• Familiarity with cloud-based identity platforms and SaaS access models.
Preferred Qualifications
• Experience with ERP and financial systems (SAP, Oracle, Workday, NetSuite).
• IAM or security certifications (CISSP, CISM, CRISC, SailPoint, Saviynt).
• Exposure to privileged access governance in cloud environments.
• Understanding of zero trust and modern identity security principles.
Key Competencies
• SOX and audit discipline
• Attention to detail and execution rigor
• Clear documentation and evidence management
• Cross-functional collaboration
• Influence through subject-matter expertise PNC is an in-office company that fosters a supportive culture where employees can thrive and achieve balance. We encourage candidates to connect with their recruiter and hiring manager to understand workplace expectations and ensure the role aligns with their goals. PNC will not provide sponsorship for employment visas or participate in STEM OPT for this position. Job Description
- Provides technical and thought leadership, analysis, and guidance in multiple security disciplines. Supports activities, process, and tools needed to improve overall security posture of the organization. Provides unique subject matter expertise.
- Reviews and defines controls, aligning the controls of a specific Security area to the enterprise framework. Devises control implementation strategy.
- Advises on more complex security procedures and products for clients, security administrators and network operations. Participates in enforcement of control security risks and threats; potential of one more controls subject to manager discretion. Shares knowledge with staff.
- Conducts security assessments and other information security routines consistently. Investigates and recommends corrective actions for data security related to established guidelines.
- Develops policies and procedures to standardize security functions and eliminate potential vulnerabilities and threats. Oversees that business needs are being met during development.
- Shares knowledge, leads and mentors are the discretion of management.
- Customer Focused - Knowledgeable of the values and practices that align customer needs and satisfaction as primary considerations in all business decisions and able to leverage that information in creating customized customer solutions.
- Managing Risk - Assessing and effectively managing all of the risks associated with their business objectives and activities to ensure they adhere to and support PNC's Enterprise Risk Management Framework.
Access Control (AC), AI Agents, Building Architecture, Cloud Security, Customer Solutions, Disaster Recovery Planning, Information Security, Network Security, Physical Security, Risk Assessments, Security Technologies Competencies
Analytical Thinking, Effective Communications, Information Security Management, Information Security Technologies, IT Environment, IT Standards, Procedures & Policies, Knowledge of Organization, Problem Solving Work Experience
Roles at this level typically require a university / college degree. Higher level education such as a Masters degree, or PhD is desirable. Industry experience is typically 8 + years. Specific certifications are often required. In lieu of a degree, a comparable combination of education, job specific certification(s), and experience (including military service) may be considered. Education
Bachelors Certifications
No Required Certification(s) Licenses
No Required License(s) Benefits PNC offers a comprehensive range of benefits to help meet your needs now and in the future. Depending on your eligibility, options for full-time employees include: medical/prescription drug coverage (with a Health Savings Account feature), dental and vision options; employee and spouse/child life insurance; short and long-term disability protection; 401(k) with PNC match, pension and stock purchase plans; dependent care reimbursement account; back-up child/elder care; adoption, surrogacy, and doula reimbursement; educational assistance, including select programs fully paid; a robust wellness program with financial incentives. In addition, PNC generally provides the following paid time off, depending on your eligibility: maternity and/or parental leave; up to 11 paid holidays each year; 9 occasional absence days each year, unless otherwise required by law; between 15 to 25 vacation days each year, depending on career level; and years of service. To learn more about these and other programs, including benefits for full time and part-time employees, visit pncthrive.com. Disability Accommodations Statement If an accommodation is required to participate in the application process, please contact us via email at View email address on click.appcast.io. Please include "accommodation request" in the subject line title and be sure to include your name, the job ID, and your preferred method of contact in the body of the email. Emails not related to accommodation requests will not receive responses. Applicants may also call View phone number on click.appcast.io and say "Workday" for accommodation assistance. All information provided will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.
At PNC we foster an inclusive and accessible workplace. We provide reasonable accommodations to employment applicants and qualified individuals with a disability who need an accommodation to perform the essential functions of their positions. Equal Employment Opportunity (EEO) PNC provides equal employment opportunity to qualified persons regardless of race, color, sex, religion, national origin, age, sexual orientation, gender identity, disability, veteran status, or other categories protected by law. This position is subject to the requirements of Section 19 of the Federal Deposit Insurance Act (FDIA) and, for any registered role, the Secure and Fair Enforcement for Mortgage Licensing Act of 2008 (SAFE Act) and/or the Financial Industry Regulatory Authority (FINRA), which prohibit the hiring of individuals with certain criminal history. California Residents Refer to the California Consumer Privacy Act Privacy Notice to gain understanding of how PNC may use or disclose your personal information in our hiring practices.
Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Security Expert (SOX & Cloud) in Dallas, TX vacancy
- ...Provider in the United States is seeking an experienced Compliance Manager to lead a significant cloud migration initiative. This role demands a strong background in SOX/SOC compliance and cloud technologies, particularly Azure. The ideal candidate will manage stakeholder...Cloud
$89k - $148.1k
...Manages and matures our identity security posture—executes continuously... ...ID/AD), SaaS applications, cloud environments, and critical business... ...audit and external auditors (SOX/ITGC/GITC reliance, regulator... ...security contract language. Expert knowledge of cyber and data...CloudContract workCasual workWork at office- A technology consulting firm is seeking a Senior Technical Project Manager to oversee SOX and SOC compliance for a large-scale cloud migration project involving over 60 applications. The successful candidate will have significant experience in IT project management and...Cloud
- ...experienced Compliance Manager with a strong background in SOX/SOC compliance and cloud migration to lead a high-impact enterprise initiative... ...with data center migrations to Azure. Knowledge of cloud security and governance frameworks. Prior experience in IT compliance...Cloud
- ...Risk and Controls Manager to improve risk management across its cloud-native products. The applicant should have at least 5 to 8... ...Responsibilities include assessing emerging threats, evaluating security measures, and collaborating closely with senior leadership. The...Cloud
- ...Senior Technical Project Manager to lead SOX and SOC compliance deliverables for a large... ...60+ applications transitioning to the cloud. This role requires strong project management... ...migrations to Azure. Knowledge of cloud security and governance frameworks. Familiarity...Cloud
- ...Security Consultant Primary Skill Set: Firewall, Proxy, NAC, IDS, IPS & VPN (Palo Alto, Checkpoint, Cisco ASA, Cisco Anyconnect) Secondary... ...perimeter security devices. Good Experience of Native cloud security on Azure / GCP. Engineer solutions for complex security...CloudWork experience placementRemote work
- ...Cybersecurity / Enterprise Security Specialist Location: AT&T, Dallas, TX, USA Years of Experience: 5-7 Years Job Summary: We... ...verbal and written. Preferred Skills: Experience with cloud security and securing applications in cloud environments....Cloud
- Exciting SOX Control Tester contract opportunity (Remote/Onsite). Requirements Expertise in technical Excel mastery with advanced Excel... ...test controls related to financial reporting and IT operations Cloud and DevOps Tools: Azure: understanding of Azure cloud services...CloudRemote jobContract work
- A leading global consulting firm seeks a Cloud Security Expert to advise clients on cloud security architecture and risk management. With a focus on AWS and Azure, you'll lead security assessments, work with IAM solutions like Okta, and mentor teams. The role offers a flexible...CloudFlexible hours
- ...Job Title: Oracle Fusion Security Specialist Location: Remote Engagement: Contract-to-Hire (No OPT/CPT) Interview... ...be responsible for ensuring a secure environment for Oracle Cloud HCM, ERP, SCM, and EPM systems. This role will involve designing...CloudContract workRemote work
$131.3k - $177.6k
...Are you ready to shape the future of secure artificial intelligence - not just from the... ...ProServe consulting, you'll be the security expert who ensures we deliver at the AWS... ...s most comprehensive and broadly adopted cloud platform. We pioneered cloud computing and...CloudFlexible hoursDay shift- ...remaining at the forefront of innovation. Every day, we work to secure what our clients value most, from their families to their assets... ...their reputation to their networks, and from their money to their cloud. As the 3rd largest security services provider, our 175k+ team...CloudTemporary workRemote workShift workWeekend work
$102.5k - $187.9k
...and Compliance (GRC), EY is seeking SAP Security and GRC professionals who understand risk... ...transformation initiatives, including S/4HANA and cloud‑based SAP solutions, under the guidance... ...or compliance frameworks (e.g., SOX, GDPR) Familiarity with tools such as ServiceNow...CloudSummer holidayFlexible hoursShift work- ...: Dallas TX Recruitment Manager: Sidhartha Arepally Job Title: Security Consultant - Identity & Access Management Services Required skills... ...utilize commercially available IAM tools such as ISIM/ISAM, Cloud Identity/Okta/Sailpoint/MS Entra, to provide Single Sign-On (SSO...CloudWork experience placement
$99.84k - $131.04k
Senior Security Consultant We are looking for a dynamic and energetic Senior Security Consultant for our Houston or... ...implementation plan and assist with configuration of cloud discovery Work as a subject matter expert to deliver projects from initiation through to successful...CloudFull timeTemporary workFlexible hours- Goldman Sachs Bank AG is seeking a Cloud Security Architecture Analyst/Associate in Dallas, TX. The role involves conducting cloud security assessments, identifying security risks, and collaborating with engineering teams to ensure secure application development. Candidates...Cloud
$128.1k - $239.6k
...help to build a better working world. EY Infosec is seeking a Cloud Security consultant with expertise in cloud security architecture,... ...management. Key responsibilities SME (subject matter expert) to mature/advance our cloud security posture using the Wiz CNAPP...CloudSummer holidayLocal areaFlexible hoursShift work- A cloud operations company based in Dallas is seeking a Cloud Operation Engineer to optimize cloud and compute costs across Azure, Databricks, and Snowflake. The ideal candidate will have 5-7 years of experience in FinOps or Cloud Cost Analysis, with strong analytical and...Cloud
- A technology consulting firm is seeking a Data Engineer specializing in Azure Databricks to oversee big data technologies and cloud computing projects. The candidate will engage with stakeholders to manage requirements and ensure adherence to best practices in data engineering...Cloud
- ...Description Enterprise Data Architecture & Cloud Strategy Architect modern... ...lifecycle governance. Data Governance, Security & Compliance Architect scalable governance... ...standards. Ensure compliance with SOX, privacy, and corporate data security...Cloud
- ...Python) experience, Kafka, PySpark, Azure cloud experience (EventHub, ADF, Databricks,... ...regulatory rules (PII, CPNI, DPI, GDPR, SOX) Data cataloging tools (Purview, Collibra... ...differences Flink/Spark Streaming Security, Privacy Compliance Data...CloudWork at office
- ...Job Title: Architect III - Security Architect Location: Block... ...(IAM, Network, Application, Cloud, Data, AI) with depth in at least... ...(e.g., FFIEC, PCI DSS, SOX). ~ Familiarity with DevSecOps... ...Microsoft Cybersecurity Architect Expert) ~ Previous leadership...Cloud
- ...Ping Security Analyst We are seeking a skilled and dedicated professional to join our team as a Developer specializing in Ping security... ...monitoring solutions, and dashboards Proficiency in Azure cloud and DevOps Programming knowledge in Java/Python Scripting...CloudWork experience placement
- ...Security Engineer Led by the Chief Information Security Officer (CISO), Technology Risk secures Goldman Sachs against hackers and other... ...Advanced understanding of Linux Operating Systems Designing Cloud architecture including security setup, and Incident response...Cloud
$43.46 per hour
...Job Description Job Description Job Title: Senior Security Analyst Location: Dallas, TX Job Type: Permanent | Full-Time... ...risk assessment Active Directory, Windows/Linux, encryption, cloud security Frameworks: NIST, HIPAA, PCI, HITRUST Requirements...CloudPermanent employmentFull timeShift work- ...Offensive Security Analyst (Structured / Non-Exploit) About the Role What if your red-team instincts and adversarial thinking... ...frameworks (MITRE ATT&CK, STRIDE, PASTA, etc.) Background in cloud security, Active Directory environments, or enterprise infrastructure...CloudHourly payOngoing contractContract workFreelanceRemote workFlexible hours
- Hearst Health is seeking a Security Administrator in Dallas to support security operations across cloud-based and on-premises environments. You will monitor security tools, investigate incidents, and maintain compliance with security policies. The ideal candidate will...Cloud
- Job Description: Position Overview As the Cloud Security Lead, you will lead customer engagement activities by advising leads and Executives... ...and other compliances with ISO27K, HIPAA, CCM4, NIST, CIS, SOX, and PCI-DSS standards. Travel to customer locations as required...CloudRelocation
- A leading media company in the US seeks a Security Administrator to ensure the safety and compliance of their IT environments. This role includes monitoring security systems, responding to incidents, and collaborating with teams to enhance security measures. The ideal...Cloud
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Expert (SOX & Cloud). Be the first to apply!
Related searches
- information security compliance analyst Dallas, TX
- application security analyst Dallas, TX
- senior security consultant Dallas, TX
- network security analyst Dallas, TX
- senior security specialist Dallas, TX
- network security consultant Dallas, TX
- security specialist Dallas, TX
- junior security analyst Dallas, TX
- national security analyst Dallas, TX
- physical security consultant Dallas, TX

