Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Security Expert (SOX & Cloud)

PNC Financial Services Group

Position Overview

At PNC, our people are our greatest differentiator and competitive advantage in the markets we serve. We are all united in delivering the best experience for our customers. We work together each day to foster an inclusive workplace culture where all of our employees feel respected, valued and have an opportunity to contribute to the company's success. As a Security Expert within PNC's Security Ops organization, you will be based in Pittsburgh, PA or Dallas, TX or Houston, TX or Phoenix, AZ.

Identity & Access Management (IAM) Governance Security Expert Lead - SOX & Cloud

Overview
The IAM Governance Security Expert Lead is responsible for executing and enforcing identity governance controls in a SOX-regulated, cloud-first environment. This role focuses on hands-on operation of Identity Governance and Administration (IGA) tooling, access certification execution, Separation of Duties (SoD) enforcement, and audit-ready evidence production across cloud platforms and critical financial applications. The position works closely with Audit, Finance IT, IAM Engineering, and application owners to ensure access controls are compliant, consistent, and defensible.

Key Responsibilities
Identity Governance & Administration (IGA) - Cloud-First
• Operate and administer the enterprise IGA platform integrated with cloud and SaaS systems.
• Execute and monitor joiner, mover, leaver processes with emphasis on audit traceability.
• Support automated provisioning and deprovisioning across Azure/Entra ID, AWS, GCP, and SaaS platforms.
• Maintain role-based and attribute-based access models for SOX in-scope applications.
• Conduct periodic access certifications for workforce, privileged, and service accounts.
• Validate identity and entitlement data accuracy across authoritative sources.
Separation of Duties (SoD) - SOX Focused
• Execute defined SoD rulesets for financial, ERP, and cloud administrative roles.
• Identify, analyze, and document SoD conflicts and violations.
• Track mitigations, compensating controls, and approved exceptions.
• Support proactive SoD reviews during role design, access requests, and onboarding.
• Partner with application owners to remediate recurring SoD issues.
SOX Controls, Audit & Compliance
• Execute IAM controls mapped to SOX IT General Controls (ITGCs).
• Produce audit-ready evidence for internal and external audits.
• Support audit walkthroughs, testing, and remediation activities.
• Maintain control narratives, procedures, and supporting documentation.
• Assist in annual SOX scoping and system coverage validation.
Cloud IAM & Privileged Access Governance
• Support governance of cloud administrative roles and high-risk entitlements.
• Validate alignment between IGA certifications and cloud IAM configurations.
• Assist with governance of non-human identities where in SOX scope.
• Monitor access changes affecting cloud-hosted financial systems.
Required Qualifications
• Bachelor's degree or equivalent experience in Information Security, IT, or related field.
• 5+ years of experience in IAM, Identity Governance, or ITGC execution.
• Hands-on experience with IGA platforms and access certifications.
• Strong understanding of SOX ITGC requirements related to user access and SoD.
• Experience supporting external audits and producing defensible evidence.
• Familiarity with cloud-based identity platforms and SaaS access models.
Preferred Qualifications
• Experience with ERP and financial systems (SAP, Oracle, Workday, NetSuite).
• IAM or security certifications (CISSP, CISM, CRISC, SailPoint, Saviynt).
• Exposure to privileged access governance in cloud environments.
• Understanding of zero trust and modern identity security principles.
Key Competencies
• SOX and audit discipline
• Attention to detail and execution rigor
• Clear documentation and evidence management
• Cross-functional collaboration
• Influence through subject-matter expertise

PNC is an in-office company that fosters a supportive culture where employees can thrive and achieve balance. We encourage candidates to connect with their recruiter and hiring manager to understand workplace expectations and ensure the role aligns with their goals.

PNC will not provide sponsorship for employment visas or participate in STEM OPT for this position.

Job Description
  • Provides technical and thought leadership, analysis, and guidance in multiple security disciplines. Supports activities, process, and tools needed to improve overall security posture of the organization. Provides unique subject matter expertise.
  • Reviews and defines controls, aligning the controls of a specific Security area to the enterprise framework. Devises control implementation strategy.
  • Advises on more complex security procedures and products for clients, security administrators and network operations. Participates in enforcement of control security risks and threats; potential of one more controls subject to manager discretion. Shares knowledge with staff.
  • Conducts security assessments and other information security routines consistently. Investigates and recommends corrective actions for data security related to established guidelines.
  • Develops policies and procedures to standardize security functions and eliminate potential vulnerabilities and threats. Oversees that business needs are being met during development.
  • Shares knowledge, leads and mentors are the discretion of management.
PNC Employees take pride in our reputation and to continue building upon that we expect our employees to be:
  • Customer Focused - Knowledgeable of the values and practices that align customer needs and satisfaction as primary considerations in all business decisions and able to leverage that information in creating customized customer solutions.
  • Managing Risk - Assessing and effectively managing all of the risks associated with their business objectives and activities to ensure they adhere to and support PNC's Enterprise Risk Management Framework.

Qualifications

Successful candidates must demonstrate appropriate knowledge, skills, and abilities for a role. Listed below are skills, competencies, work experience, education, and required certifications/licensures needed to be successful in this position.

Preferred Skills
Access Control (AC), AI Agents, Building Architecture, Cloud Security, Customer Solutions, Disaster Recovery Planning, Information Security, Network Security, Physical Security, Risk Assessments, Security Technologies

Competencies
Analytical Thinking, Effective Communications, Information Security Management, Information Security Technologies, IT Environment, IT Standards, Procedures & Policies, Knowledge of Organization, Problem Solving

Work Experience
Roles at this level typically require a university / college degree. Higher level education such as a Masters degree, or PhD is desirable. Industry experience is typically 8 + years. Specific certifications are often required. In lieu of a degree, a comparable combination of education, job specific certification(s), and experience (including military service) may be considered.

Education
Bachelors

Certifications
No Required Certification(s)

Licenses
No Required License(s)

Benefits

PNC offers a comprehensive range of benefits to help meet your needs now and in the future. Depending on your eligibility, options for full-time employees include: medical/prescription drug coverage (with a Health Savings Account feature), dental and vision options; employee and spouse/child life insurance; short and long-term disability protection; 401(k) with PNC match, pension and stock purchase plans; dependent care reimbursement account; back-up child/elder care; adoption, surrogacy, and doula reimbursement; educational assistance, including select programs fully paid; a robust wellness program with financial incentives.

In addition, PNC generally provides the following paid time off, depending on your eligibility: maternity and/or parental leave; up to 11 paid holidays each year; 9 occasional absence days each year, unless otherwise required by law; between 15 to 25 vacation days each year, depending on career level; and years of service.

To learn more about these and other programs, including benefits for full time and part-time employees, visit pncthrive.com.

Disability Accommodations Statement

If an accommodation is required to participate in the application process, please contact us via email at View email address on click.appcast.io. Please include "accommodation request" in the subject line title and be sure to include your name, the job ID, and your preferred method of contact in the body of the email. Emails not related to accommodation requests will not receive responses. Applicants may also call View phone number on click.appcast.io and say "Workday" for accommodation assistance. All information provided will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.


At PNC we foster an inclusive and accessible workplace. We provide reasonable accommodations to employment applicants and qualified individuals with a disability who need an accommodation to perform the essential functions of their positions.

Equal Employment Opportunity (EEO)

PNC provides equal employment opportunity to qualified persons regardless of race, color, sex, religion, national origin, age, sexual orientation, gender identity, disability, veteran status, or other categories protected by law.

This position is subject to the requirements of Section 19 of the Federal Deposit Insurance Act (FDIA) and, for any registered role, the Secure and Fair Enforcement for Mortgage Licensing Act of 2008 (SAFE Act) and/or the Financial Industry Regulatory Authority (FINRA), which prohibit the hiring of individuals with certain criminal history.

California Residents

Refer to the California Consumer Privacy Act Privacy Notice to gain understanding of how PNC may use or disclose your personal information in our hiring practices.
Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Security Expert (SOX & Cloud) in Phoenix, AZ vacancy
  •  ...Serco is seeking a Principal Information Security Systems Engineer in Phoenix, Arizona. The role involves supporting applications on DISA military cloud, maintaining security controls, and ensuring compliance with DoD requirements. Candidates must hold an active Secret... 
    Cloud

    Serco

    Phoenix, AZ
    8 days ago
  • $100k - $160k

     ...offices or yours. Job Summary The Security Solutions Advisor is responsible for the...  ...serve as a customer-facing subject matter expert to build a pipeline and close security deals...  ...toallow forsuccessful and scalable cloud adoption. Behaviors and Competencies... 
    Cloud
    Work experience placement
    Worldwide
    Flexible hours

    SHI GmbH

    Phoenix, AZ
    5 days ago
  • $80.2k - $111.3k

     ...responders, shapes incident response governance, and influences broader security architecture and operations based on emerging threats and...  ...and forensic analysis of endpoint, network, identity, and cloud data to understand attacker objectives, lateral movement, and persistence... 
    Cloud
    Contract work
    Work experience placement
    Work at office

    ASM Research, An Accenture Federal Services Company

    Phoenix, AZ
    2 days ago
  • $130k - $153.9k

     ...the future of digital business and a more secure world, visit stratascale.com.Job...  ...as appropriateServe as a subject matter expert in maintaining, optimizing, and delivering...  ...Cortex XSOAR and XSIAM.Understanding of cloud platforms (AWS, Azure, GCP) and their integration... 
    Cloud
    Work experience placement
    Remote work
    Home office
    Flexible hours

    SHI GmbH

    Phoenix, AZ
    5 days ago
  • $55 per hour

     ...OPEN FOR CURRENT ARIZONA RESIDENTS ONLYH Job Title: Kubernetes Security Analyst Client: AZ - Maricopa County Job ID: 2411 - (...  ...: Experience with Kubernetes security tools ( Falco, Prisma Cloud, Aqua, Sysdig, etc .) Familiarity with CIS Kubernetes Benchmark... 
    Cloud
    Hourly pay

    SR International

    Phoenix, AZ
    2 days ago
  • $80k - $100k

     ...Cloud Security Analyst Must Have Technical/Functional Skills 2+ years of experience in Information Security, Technology Risk, IT Controls, or related roles Familiarity with Cloud Control Matrix (CCM) and CIS benchmarks for basic gap assessments... 
    Cloud

    Tata Consultancy Services

    Phoenix, AZ
    8 days ago
  •  ...Info Security Analyst (SaaS) Role - Info Security Analyst (SaaS) Experience Required - 2+ Years Must Have Technical/Functional Skills...  ...Strong understanding of Multi-tenant SaaS environments Cloud shared responsibility model - IaaS / PaaS / SaaS differences... 
    Cloud

    ClifyX

    Phoenix, AZ
    3 days ago
  • $79k - $115k

     ...specializing in Azure and AI Governance. This role will engage enterprise clients, leading AI security initiatives and workshops. The ideal candidate has over 5 years of experience in cloud security within the Microsoft ecosystem, particularly in AI governance frameworks. Key... 
    Cloud
    Remote job

    Convergys

    Phoenix, AZ
    2 days ago
  •  ...Software Security Specialist Sr AI Security At PNC, our people are our greatest differentiator and competitive advantage in the markets...  ...classes relevant to AI systems Familiarity with cloud platforms (AWS, GCP, Azure) and related AI/ML services (e.g., Bedrock... 
    Cloud
    Work at office

    PNC

    Phoenix, AZ
    1 day ago
  •  ...Job Title: Architect III - Security Architect Location: Block...  ...(IAM, Network, Application, Cloud, Data, AI) with depth in at least...  ...(e.g., FFIEC, PCI DSS, SOX). ~ Familiarity with DevSecOps...  ...Microsoft Cybersecurity Architect Expert) ~ Previous leadership... 
    Cloud

    Western Alliance Bank

    Phoenix, AZ
    23 days ago
  •  ...critical safety and justice issues with our ecosystem of devices and cloud software. Like our products, we work better together. We...  ...mission that matters at a company where you matter. Your Impact The Security Program Analyst is a senior individual‑contributor role... 
    Cloud
    Work at office

    Axon

    Scottsdale, AZ
    1 day ago
  • $128.1k - $239.6k

     ...teams and take your career wherever you want it to go. Join EY and help to build a better working world. EY Infosec is seeking a Cloud Security consultant with expertise in cloud security architecture, configuration, and governance across the Microsoft Azure platform... 
    Cloud
    Summer holiday
    Flexible hours
    Shift work

    Ernst & Young Oman

    Phoenix, AZ
    4 days ago
  •  ...Info Security Analyst Location: Phoenix, AZ Pay Rate - $38 - $41/hr on W2 (all Inclusive) Job ID:64953-1 Duration: 6+ Months NO/OPT...  ...results in a timely manner. Provide security expertise to the Cloud Program, including Software as a Service (SaaS), and Cloud... 
    Cloud

    Artech

    Phoenix, AZ
    1 day ago
  •  ...Sr. IT Security Architect This position is based in our Phoenix,...  ...across infrastructure, network, cloud, and application teams, and carries...  ...CSF, ISO 27001, CIS Controls, SOX, PCI-DSS, and applicable...  ...Entra ID and Okta preferred. Expert-level experience with EDR/EPP... 
    Cloud
    Work experience placement
    Work at office

    Sprouts Farmers Market

    Phoenix, AZ
    1 day ago
  •  ...Overview: Role: Information Security Analyst (SaaS Security) Location: Phoenix, AZ Experience: 6+ Years Job Summary...  ...Information Security Analyst with strong experience in SaaS security, cloud risk assessment, and compliance frameworks . The ideal... 
    Cloud

    Purple Drive

    Phoenix, AZ
    2 days ago
  •  ...global professional services firm is looking for a Manager of Data Engineering to lead a team in designing and implementing complex cloud analytics solutions. The ideal candidate will have a strong background in data architecture, cloud technologies, and exceptional leadership... 
    Cloud

    Ernst & Young Oman

    Phoenix, AZ
    1 day ago
  •  ...of engineers, and engage with clients to deliver data-driven results. The role requires a strong background in data architecture and cloud technologies, particularly Databricks. Ideal candidates have 4-6 years of experience and are skilled in Python and SQL. A... 
    Cloud

    EY

    Phoenix, AZ
    6 days ago
  • $38 - $60 per hour

     ...Data Security & DLP Analyst $38-60/hr Remote Freelance CODING We partner with the world...  ...data security and DLP scenarios spanning cloud, SaaS, and enterprise environments...  ...variety, and collaboration with a global expert community Apply your security expertise... 
    Cloud
    Hourly pay
    Ongoing contract
    Contract work
    Freelance
    Remote work
    Flexible hours

    Alignerr

    Phoenix, AZ
    1 day ago
  • A distinguished online education provider in Arizona is offering a Microsoft Azure Cloud Architect Training Program. This course aims to equip learners with essential skills to design and manage cloud solutions. It includes live master classes and hands-on projects, ensuring... 
    Cloud

    Simplirise

    Phoenix, AZ
    1 day ago
  •  ...systems that millions of people and organizations will rely on for security? We're looking for Offensive Security Analysts to bring real-...  ...simulation frameworks (e.g., MITRE ATT&CK) Background in cloud security, Active Directory environments, or network architecture... 
    Cloud
    Hourly pay
    Ongoing contract
    Contract work
    Freelance
    Remote work
    Flexible hours

    Alignerr

    Phoenix, AZ
    4 days ago
  • $80k - $110k

    Tata Consultancy Services Limited is looking for a professional in Phoenix, Arizona with a strong background in cloud security to drive risk assessments on Third-Party SaaS providers. The candidate will ensure compliance with financial industry standards and regulations... 
    Cloud

    Tata Consultancy Services Limited

    Phoenix, AZ
    4 days ago
  •  ...Alignerr is seeking a Cloud Security Analyst for AI training projects focused on cloud security and infrastructure. This role involves analyzing security scenarios across AWS, GCP, and Azure, identifying risks, and improving AI-generated security reasoning. Candidates... 
    Cloud
    Freelance
    Remote work
    Flexible hours

    Alignerr

    Phoenix, AZ
    1 day ago
  •  ...Overview: Role: Cloud Security Analyst Location: Phoenix, AZ Experience Required: 3+ Years Job Summary We are looking for a Cloud Security Analyst to support cloud security governance, compliance monitoring, and risk management activities. The... 
    Cloud

    Purple Drive

    Phoenix, AZ
    2 days ago
  • A leading cloud data streaming company is seeking a skilled Software Engineer to join their Compute Platform team. This remote role involves building and evolving a multi-tenant cloud-native compute system and requires expertise in Kubernetes and Go. The ideal candidate... 
    Cloud
    Remote work

    Confluent

    Phoenix, AZ
    1 day ago
  •  ...heart, one who is curious, appreciates complexity, knows or wants to learn when to step back and when to dive deep. We call this role a Cloud Service Reliability Engineer. The Cloud Service Reliability Engineer will be responsible for effective design, execution, and... 
    Cloud

    forhyre.com

    Phoenix, AZ
    3 days ago
  • $178.3k - $407k

     ...tech consulting services in artificial intelligence, big data and cloud engineering. We always support and enable big ideas with the...  ...production. Familiarity with regulated-industry constraints (SOX, HIPAA, GDPR) and how AI design interacts with audit, retention,... 
    Cloud
    Summer holiday
    Flexible hours

    EY

    Phoenix, AZ
    4 days ago
  • $30 per hour

     ...broadest and deepest suite of AI-powered cloud applications. The following facts and figures...  ...and Federal Sales Teams. The Information Security Compliance Analyst is expected to work...  ...dental, and vision insurance, including expert medical opinion # Short term disability... 
    Cloud
    Hourly pay
    Temporary work
    Internship
    Flexible hours

    Oracle

    Phoenix, AZ
    4 days ago
  •  ...The ideal candidate will have extensive experience in data engineering, robust leadership skills, and a strong understanding of cloud security protocols. This role involves designing scalable architectures, optimizing data workflows, and mentoring engineering teams,... 
    Cloud
    Contract work

    Talascend, LLC

    Glendale, AZ
    4 days ago
  •  ...Vice President, Cloud Data Engineering About the Company Top-tier organization in the consumer services industry Industry Consumer Services Type Privately Held About the Role The Company is seeking a VP of Engineering to lead its dynamic and innovative... 
    Cloud

    Confidential

    Phoenix, AZ
    4 days ago
  • A global consulting firm is seeking a Manager of Data Engineering to lead the design and implementation of complex cloud analytics solutions. Candidates should have a blend of technical skills and leadership experience, particularly with Databricks and cloud technologies... 
    Cloud

    Ernst & Young Oman

    Phoenix, AZ
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Security Expert (SOX & Cloud). Be the first to apply!