Security Expert (SOX & Cloud)
PNC Financial Services Group
Position Overview At PNC, our people are our greatest differentiator and competitive advantage in the markets we serve. We are all united in delivering the best experience for our customers. We work together each day to foster an inclusive workplace culture where all of our employees feel respected, valued and have an opportunity to contribute to the company's success. As a Security Expert within PNC's Security Ops organization, you will be based in Pittsburgh, PA or Dallas, TX or Houston, TX or Phoenix, AZ. Identity & Access Management (IAM) Governance Security Expert Lead - SOX & Cloud Overview
The IAM Governance Security Expert Lead is responsible for executing and enforcing identity governance controls in a SOX-regulated, cloud-first environment. This role focuses on hands-on operation of Identity Governance and Administration (IGA) tooling, access certification execution, Separation of Duties (SoD) enforcement, and audit-ready evidence production across cloud platforms and critical financial applications. The position works closely with Audit, Finance IT, IAM Engineering, and application owners to ensure access controls are compliant, consistent, and defensible. Key Responsibilities
Identity Governance & Administration (IGA) - Cloud-First
• Operate and administer the enterprise IGA platform integrated with cloud and SaaS systems.
• Execute and monitor joiner, mover, leaver processes with emphasis on audit traceability.
• Support automated provisioning and deprovisioning across Azure/Entra ID, AWS, GCP, and SaaS platforms.
• Maintain role-based and attribute-based access models for SOX in-scope applications.
• Conduct periodic access certifications for workforce, privileged, and service accounts.
• Validate identity and entitlement data accuracy across authoritative sources.
Separation of Duties (SoD) - SOX Focused
• Execute defined SoD rulesets for financial, ERP, and cloud administrative roles.
• Identify, analyze, and document SoD conflicts and violations.
• Track mitigations, compensating controls, and approved exceptions.
• Support proactive SoD reviews during role design, access requests, and onboarding.
• Partner with application owners to remediate recurring SoD issues.
SOX Controls, Audit & Compliance
• Execute IAM controls mapped to SOX IT General Controls (ITGCs).
• Produce audit-ready evidence for internal and external audits.
• Support audit walkthroughs, testing, and remediation activities.
• Maintain control narratives, procedures, and supporting documentation.
• Assist in annual SOX scoping and system coverage validation.
Cloud IAM & Privileged Access Governance
• Support governance of cloud administrative roles and high-risk entitlements.
• Validate alignment between IGA certifications and cloud IAM configurations.
• Assist with governance of non-human identities where in SOX scope.
• Monitor access changes affecting cloud-hosted financial systems.
Required Qualifications
• Bachelor's degree or equivalent experience in Information Security, IT, or related field.
• 5+ years of experience in IAM, Identity Governance, or ITGC execution.
• Hands-on experience with IGA platforms and access certifications.
• Strong understanding of SOX ITGC requirements related to user access and SoD.
• Experience supporting external audits and producing defensible evidence.
• Familiarity with cloud-based identity platforms and SaaS access models.
Preferred Qualifications
• Experience with ERP and financial systems (SAP, Oracle, Workday, NetSuite).
• IAM or security certifications (CISSP, CISM, CRISC, SailPoint, Saviynt).
• Exposure to privileged access governance in cloud environments.
• Understanding of zero trust and modern identity security principles.
Key Competencies
• SOX and audit discipline
• Attention to detail and execution rigor
• Clear documentation and evidence management
• Cross-functional collaboration
• Influence through subject-matter expertise PNC is an in-office company that fosters a supportive culture where employees can thrive and achieve balance. We encourage candidates to connect with their recruiter and hiring manager to understand workplace expectations and ensure the role aligns with their goals. PNC will not provide sponsorship for employment visas or participate in STEM OPT for this position. Job Description
Access Control (AC), AI Agents, Building Architecture, Cloud Security, Customer Solutions, Disaster Recovery Planning, Information Security, Network Security, Physical Security, Risk Assessments, Security Technologies Competencies
Analytical Thinking, Effective Communications, Information Security Management, Information Security Technologies, IT Environment, IT Standards, Procedures & Policies, Knowledge of Organization, Problem Solving Work Experience
Roles at this level typically require a university / college degree. Higher level education such as a Masters degree, or PhD is desirable. Industry experience is typically 8 + years. Specific certifications are often required. In lieu of a degree, a comparable combination of education, job specific certification(s), and experience (including military service) may be considered. Education
Bachelors Certifications
No Required Certification(s) Licenses
No Required License(s) Benefits PNC offers a comprehensive range of benefits to help meet your needs now and in the future. Depending on your eligibility, options for full-time employees include: medical/prescription drug coverage (with a Health Savings Account feature), dental and vision options; employee and spouse/child life insurance; short and long-term disability protection; 401(k) with PNC match, pension and stock purchase plans; dependent care reimbursement account; back-up child/elder care; adoption, surrogacy, and doula reimbursement; educational assistance, including select programs fully paid; a robust wellness program with financial incentives. In addition, PNC generally provides the following paid time off, depending on your eligibility: maternity and/or parental leave; up to 11 paid holidays each year; 9 occasional absence days each year, unless otherwise required by law; between 15 to 25 vacation days each year, depending on career level; and years of service. To learn more about these and other programs, including benefits for full time and part-time employees, visit pncthrive.com. Disability Accommodations Statement If an accommodation is required to participate in the application process, please contact us via email at View email address on click.appcast.io. Please include "accommodation request" in the subject line title and be sure to include your name, the job ID, and your preferred method of contact in the body of the email. Emails not related to accommodation requests will not receive responses. Applicants may also call View phone number on click.appcast.io and say "Workday" for accommodation assistance. All information provided will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.
At PNC we foster an inclusive and accessible workplace. We provide reasonable accommodations to employment applicants and qualified individuals with a disability who need an accommodation to perform the essential functions of their positions. Equal Employment Opportunity (EEO) PNC provides equal employment opportunity to qualified persons regardless of race, color, sex, religion, national origin, age, sexual orientation, gender identity, disability, veteran status, or other categories protected by law. This position is subject to the requirements of Section 19 of the Federal Deposit Insurance Act (FDIA) and, for any registered role, the Secure and Fair Enforcement for Mortgage Licensing Act of 2008 (SAFE Act) and/or the Financial Industry Regulatory Authority (FINRA), which prohibit the hiring of individuals with certain criminal history. California Residents Refer to the California Consumer Privacy Act Privacy Notice to gain understanding of how PNC may use or disclose your personal information in our hiring practices.
The IAM Governance Security Expert Lead is responsible for executing and enforcing identity governance controls in a SOX-regulated, cloud-first environment. This role focuses on hands-on operation of Identity Governance and Administration (IGA) tooling, access certification execution, Separation of Duties (SoD) enforcement, and audit-ready evidence production across cloud platforms and critical financial applications. The position works closely with Audit, Finance IT, IAM Engineering, and application owners to ensure access controls are compliant, consistent, and defensible. Key Responsibilities
Identity Governance & Administration (IGA) - Cloud-First
• Operate and administer the enterprise IGA platform integrated with cloud and SaaS systems.
• Execute and monitor joiner, mover, leaver processes with emphasis on audit traceability.
• Support automated provisioning and deprovisioning across Azure/Entra ID, AWS, GCP, and SaaS platforms.
• Maintain role-based and attribute-based access models for SOX in-scope applications.
• Conduct periodic access certifications for workforce, privileged, and service accounts.
• Validate identity and entitlement data accuracy across authoritative sources.
Separation of Duties (SoD) - SOX Focused
• Execute defined SoD rulesets for financial, ERP, and cloud administrative roles.
• Identify, analyze, and document SoD conflicts and violations.
• Track mitigations, compensating controls, and approved exceptions.
• Support proactive SoD reviews during role design, access requests, and onboarding.
• Partner with application owners to remediate recurring SoD issues.
SOX Controls, Audit & Compliance
• Execute IAM controls mapped to SOX IT General Controls (ITGCs).
• Produce audit-ready evidence for internal and external audits.
• Support audit walkthroughs, testing, and remediation activities.
• Maintain control narratives, procedures, and supporting documentation.
• Assist in annual SOX scoping and system coverage validation.
Cloud IAM & Privileged Access Governance
• Support governance of cloud administrative roles and high-risk entitlements.
• Validate alignment between IGA certifications and cloud IAM configurations.
• Assist with governance of non-human identities where in SOX scope.
• Monitor access changes affecting cloud-hosted financial systems.
Required Qualifications
• Bachelor's degree or equivalent experience in Information Security, IT, or related field.
• 5+ years of experience in IAM, Identity Governance, or ITGC execution.
• Hands-on experience with IGA platforms and access certifications.
• Strong understanding of SOX ITGC requirements related to user access and SoD.
• Experience supporting external audits and producing defensible evidence.
• Familiarity with cloud-based identity platforms and SaaS access models.
Preferred Qualifications
• Experience with ERP and financial systems (SAP, Oracle, Workday, NetSuite).
• IAM or security certifications (CISSP, CISM, CRISC, SailPoint, Saviynt).
• Exposure to privileged access governance in cloud environments.
• Understanding of zero trust and modern identity security principles.
Key Competencies
• SOX and audit discipline
• Attention to detail and execution rigor
• Clear documentation and evidence management
• Cross-functional collaboration
• Influence through subject-matter expertise PNC is an in-office company that fosters a supportive culture where employees can thrive and achieve balance. We encourage candidates to connect with their recruiter and hiring manager to understand workplace expectations and ensure the role aligns with their goals. PNC will not provide sponsorship for employment visas or participate in STEM OPT for this position. Job Description
- Provides technical and thought leadership, analysis, and guidance in multiple security disciplines. Supports activities, process, and tools needed to improve overall security posture of the organization. Provides unique subject matter expertise.
- Reviews and defines controls, aligning the controls of a specific Security area to the enterprise framework. Devises control implementation strategy.
- Advises on more complex security procedures and products for clients, security administrators and network operations. Participates in enforcement of control security risks and threats; potential of one more controls subject to manager discretion. Shares knowledge with staff.
- Conducts security assessments and other information security routines consistently. Investigates and recommends corrective actions for data security related to established guidelines.
- Develops policies and procedures to standardize security functions and eliminate potential vulnerabilities and threats. Oversees that business needs are being met during development.
- Shares knowledge, leads and mentors are the discretion of management.
- Customer Focused - Knowledgeable of the values and practices that align customer needs and satisfaction as primary considerations in all business decisions and able to leverage that information in creating customized customer solutions.
- Managing Risk - Assessing and effectively managing all of the risks associated with their business objectives and activities to ensure they adhere to and support PNC's Enterprise Risk Management Framework.
Access Control (AC), AI Agents, Building Architecture, Cloud Security, Customer Solutions, Disaster Recovery Planning, Information Security, Network Security, Physical Security, Risk Assessments, Security Technologies Competencies
Analytical Thinking, Effective Communications, Information Security Management, Information Security Technologies, IT Environment, IT Standards, Procedures & Policies, Knowledge of Organization, Problem Solving Work Experience
Roles at this level typically require a university / college degree. Higher level education such as a Masters degree, or PhD is desirable. Industry experience is typically 8 + years. Specific certifications are often required. In lieu of a degree, a comparable combination of education, job specific certification(s), and experience (including military service) may be considered. Education
Bachelors Certifications
No Required Certification(s) Licenses
No Required License(s) Benefits PNC offers a comprehensive range of benefits to help meet your needs now and in the future. Depending on your eligibility, options for full-time employees include: medical/prescription drug coverage (with a Health Savings Account feature), dental and vision options; employee and spouse/child life insurance; short and long-term disability protection; 401(k) with PNC match, pension and stock purchase plans; dependent care reimbursement account; back-up child/elder care; adoption, surrogacy, and doula reimbursement; educational assistance, including select programs fully paid; a robust wellness program with financial incentives. In addition, PNC generally provides the following paid time off, depending on your eligibility: maternity and/or parental leave; up to 11 paid holidays each year; 9 occasional absence days each year, unless otherwise required by law; between 15 to 25 vacation days each year, depending on career level; and years of service. To learn more about these and other programs, including benefits for full time and part-time employees, visit pncthrive.com. Disability Accommodations Statement If an accommodation is required to participate in the application process, please contact us via email at View email address on click.appcast.io. Please include "accommodation request" in the subject line title and be sure to include your name, the job ID, and your preferred method of contact in the body of the email. Emails not related to accommodation requests will not receive responses. Applicants may also call View phone number on click.appcast.io and say "Workday" for accommodation assistance. All information provided will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.
At PNC we foster an inclusive and accessible workplace. We provide reasonable accommodations to employment applicants and qualified individuals with a disability who need an accommodation to perform the essential functions of their positions. Equal Employment Opportunity (EEO) PNC provides equal employment opportunity to qualified persons regardless of race, color, sex, religion, national origin, age, sexual orientation, gender identity, disability, veteran status, or other categories protected by law. This position is subject to the requirements of Section 19 of the Federal Deposit Insurance Act (FDIA) and, for any registered role, the Secure and Fair Enforcement for Mortgage Licensing Act of 2008 (SAFE Act) and/or the Financial Industry Regulatory Authority (FINRA), which prohibit the hiring of individuals with certain criminal history. California Residents Refer to the California Consumer Privacy Act Privacy Notice to gain understanding of how PNC may use or disclose your personal information in our hiring practices.
Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Security Expert (SOX & Cloud) in Phoenix, AZ vacancy
- ...Serco is seeking a Principal Information Security Systems Engineer in Phoenix, Arizona. The role involves supporting applications on DISA military cloud, maintaining security controls, and ensuring compliance with DoD requirements. Candidates must hold an active Secret...Cloud
$100k - $160k
...offices or yours. Job Summary The Security Solutions Advisor is responsible for the... ...serve as a customer-facing subject matter expert to build a pipeline and close security deals... ...toallow forsuccessful and scalable cloud adoption. Behaviors and Competencies...CloudWork experience placementWorldwideFlexible hours$80.2k - $111.3k
...responders, shapes incident response governance, and influences broader security architecture and operations based on emerging threats and... ...and forensic analysis of endpoint, network, identity, and cloud data to understand attacker objectives, lateral movement, and persistence...CloudContract workWork experience placementWork at office$130k - $153.9k
...the future of digital business and a more secure world, visit stratascale.com.Job... ...as appropriateServe as a subject matter expert in maintaining, optimizing, and delivering... ...Cortex XSOAR and XSIAM.Understanding of cloud platforms (AWS, Azure, GCP) and their integration...CloudWork experience placementRemote workHome officeFlexible hours$55 per hour
...OPEN FOR CURRENT ARIZONA RESIDENTS ONLYH Job Title: Kubernetes Security Analyst Client: AZ - Maricopa County Job ID: 2411 - (... ...: Experience with Kubernetes security tools ( Falco, Prisma Cloud, Aqua, Sysdig, etc .) Familiarity with CIS Kubernetes Benchmark...CloudHourly pay$80k - $100k
...Cloud Security Analyst Must Have Technical/Functional Skills 2+ years of experience in Information Security, Technology Risk, IT Controls, or related roles Familiarity with Cloud Control Matrix (CCM) and CIS benchmarks for basic gap assessments...Cloud- ...Info Security Analyst (SaaS) Role - Info Security Analyst (SaaS) Experience Required - 2+ Years Must Have Technical/Functional Skills... ...Strong understanding of Multi-tenant SaaS environments Cloud shared responsibility model - IaaS / PaaS / SaaS differences...Cloud
$79k - $115k
...specializing in Azure and AI Governance. This role will engage enterprise clients, leading AI security initiatives and workshops. The ideal candidate has over 5 years of experience in cloud security within the Microsoft ecosystem, particularly in AI governance frameworks. Key...CloudRemote job- ...Software Security Specialist Sr AI Security At PNC, our people are our greatest differentiator and competitive advantage in the markets... ...classes relevant to AI systems Familiarity with cloud platforms (AWS, GCP, Azure) and related AI/ML services (e.g., Bedrock...CloudWork at office
- ...Job Title: Architect III - Security Architect Location: Block... ...(IAM, Network, Application, Cloud, Data, AI) with depth in at least... ...(e.g., FFIEC, PCI DSS, SOX). ~ Familiarity with DevSecOps... ...Microsoft Cybersecurity Architect Expert) ~ Previous leadership...Cloud
- ...critical safety and justice issues with our ecosystem of devices and cloud software. Like our products, we work better together. We... ...mission that matters at a company where you matter. Your Impact The Security Program Analyst is a senior individual‑contributor role...CloudWork at office
$128.1k - $239.6k
...teams and take your career wherever you want it to go. Join EY and help to build a better working world. EY Infosec is seeking a Cloud Security consultant with expertise in cloud security architecture, configuration, and governance across the Microsoft Azure platform...CloudSummer holidayFlexible hoursShift work- ...Info Security Analyst Location: Phoenix, AZ Pay Rate - $38 - $41/hr on W2 (all Inclusive) Job ID:64953-1 Duration: 6+ Months NO/OPT... ...results in a timely manner. Provide security expertise to the Cloud Program, including Software as a Service (SaaS), and Cloud...Cloud
- ...Sr. IT Security Architect This position is based in our Phoenix,... ...across infrastructure, network, cloud, and application teams, and carries... ...CSF, ISO 27001, CIS Controls, SOX, PCI-DSS, and applicable... ...Entra ID and Okta preferred. Expert-level experience with EDR/EPP...CloudWork experience placementWork at office
- ...Overview: Role: Information Security Analyst (SaaS Security) Location: Phoenix, AZ Experience: 6+ Years Job Summary... ...Information Security Analyst with strong experience in SaaS security, cloud risk assessment, and compliance frameworks . The ideal...Cloud
- ...global professional services firm is looking for a Manager of Data Engineering to lead a team in designing and implementing complex cloud analytics solutions. The ideal candidate will have a strong background in data architecture, cloud technologies, and exceptional leadership...Cloud
- ...of engineers, and engage with clients to deliver data-driven results. The role requires a strong background in data architecture and cloud technologies, particularly Databricks. Ideal candidates have 4-6 years of experience and are skilled in Python and SQL. A...Cloud
$38 - $60 per hour
...Data Security & DLP Analyst $38-60/hr Remote Freelance CODING We partner with the world... ...data security and DLP scenarios spanning cloud, SaaS, and enterprise environments... ...variety, and collaboration with a global expert community Apply your security expertise...CloudHourly payOngoing contractContract workFreelanceRemote workFlexible hours- A distinguished online education provider in Arizona is offering a Microsoft Azure Cloud Architect Training Program. This course aims to equip learners with essential skills to design and manage cloud solutions. It includes live master classes and hands-on projects, ensuring...Cloud
- ...systems that millions of people and organizations will rely on for security? We're looking for Offensive Security Analysts to bring real-... ...simulation frameworks (e.g., MITRE ATT&CK) Background in cloud security, Active Directory environments, or network architecture...CloudHourly payOngoing contractContract workFreelanceRemote workFlexible hours
$80k - $110k
Tata Consultancy Services Limited is looking for a professional in Phoenix, Arizona with a strong background in cloud security to drive risk assessments on Third-Party SaaS providers. The candidate will ensure compliance with financial industry standards and regulations...Cloud- ...Alignerr is seeking a Cloud Security Analyst for AI training projects focused on cloud security and infrastructure. This role involves analyzing security scenarios across AWS, GCP, and Azure, identifying risks, and improving AI-generated security reasoning. Candidates...CloudFreelanceRemote workFlexible hours
- ...Overview: Role: Cloud Security Analyst Location: Phoenix, AZ Experience Required: 3+ Years Job Summary We are looking for a Cloud Security Analyst to support cloud security governance, compliance monitoring, and risk management activities. The...Cloud
- A leading cloud data streaming company is seeking a skilled Software Engineer to join their Compute Platform team. This remote role involves building and evolving a multi-tenant cloud-native compute system and requires expertise in Kubernetes and Go. The ideal candidate...CloudRemote work
- ...heart, one who is curious, appreciates complexity, knows or wants to learn when to step back and when to dive deep. We call this role a Cloud Service Reliability Engineer. The Cloud Service Reliability Engineer will be responsible for effective design, execution, and...Cloud
$178.3k - $407k
...tech consulting services in artificial intelligence, big data and cloud engineering. We always support and enable big ideas with the... ...production. Familiarity with regulated-industry constraints (SOX, HIPAA, GDPR) and how AI design interacts with audit, retention,...CloudSummer holidayFlexible hours$30 per hour
...broadest and deepest suite of AI-powered cloud applications. The following facts and figures... ...and Federal Sales Teams. The Information Security Compliance Analyst is expected to work... ...dental, and vision insurance, including expert medical opinion # Short term disability...CloudHourly payTemporary workInternshipFlexible hours- ...The ideal candidate will have extensive experience in data engineering, robust leadership skills, and a strong understanding of cloud security protocols. This role involves designing scalable architectures, optimizing data workflows, and mentoring engineering teams,...CloudContract work
- ...Vice President, Cloud Data Engineering About the Company Top-tier organization in the consumer services industry Industry Consumer Services Type Privately Held About the Role The Company is seeking a VP of Engineering to lead its dynamic and innovative...Cloud
- A global consulting firm is seeking a Manager of Data Engineering to lead the design and implementation of complex cloud analytics solutions. Candidates should have a blend of technical skills and leadership experience, particularly with Databricks and cloud technologies...Cloud
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Expert (SOX & Cloud). Be the first to apply!
Related searches
- information security compliance analyst Phoenix, AZ
- application security analyst Phoenix, AZ
- network security analyst Phoenix, AZ
- network security consultant Phoenix, AZ
- security specialist Phoenix, AZ
- junior security analyst Phoenix, AZ
- physical security consultant Phoenix, AZ
- security systems specialist Phoenix, AZ
- security coordinator Phoenix, AZ
- security consultant Phoenix, AZ

