Security Expert; SOX & Cloud
Listed on 2026-06-18
-
IT/Tech
Cybersecurity, Information Security
Identity & Access Management (IAM) Governance Security Expert Lead - SOX & Cloud
The IAM Governance Security Expert Lead is responsible for executing and enforcing identity governance controls in a SOX-regulated, cloud-first environment. This role focuses on hands‑on operation of Identity Governance and Administration (IGA) tooling, access certification execution, Separation of Duties (SoD) enforcement, and audit‑ready evidence production across cloud platforms and critical financial applications. The position works closely with Audit, Finance IT, IAM Engineering, and application owners to ensure access controls are compliant, consistent, and defensible.
IdentityGovernance & Administration (IGA) - Cloud‑First
- Operate and administer the enterprise IGA platform integrated with cloud and SaaS systems.
- Execute and monitor joiner, mover, leaver processes with emphasis on audit traceability.
- Support automated provisioning and deprovisioning across Azure/Entra , AWS, GCP, and SaaS platforms.
- Maintain role‑based and attribute‑based access models for SOX in‑scope applications.
- Conduct periodic access certifications for workforce, privileged, and service accounts.
- Validate identity and entitlement data accuracy across authoritative sources.
- Execute defined SoD rulesets for financial, ERP, and cloud administrative roles.
- Identify, analyze, and document SoD conflicts and violations.
- Track mitigations, compensating controls and approved exceptions.
- Support proactive SoD reviews during role design, access requests, and onboarding.
- Partner with application owners to remediate recurring SoD issues.
- Execute IAM controls mapped to SOX IT General Controls (ITGCs).
- Produce audit‑ready evidence for internal and external audits.
- Support audit walkthroughs, testing, and remediation activities.
- Maintain control narratives, procedures, and supporting documentation.
- Assist in annual SOX scoping and system coverage validation.
- Support governance of cloud administrative roles and high‑risk entitlements.
- Validate alignment between IGA certifications and cloud IAM configurations.
- Assist with governance of non‑human identities where in SOX scope.
- Monitor access changes affecting cloud‑hosted financial systems.
- Bachelor's degree or equivalent experience in Information Security, IT, or related field.
- 5+ years of experience in IAM, Identity Governance, or ITGC execution.
- Hands‑on experience with IGA platforms and access certifications.
- Strong understanding of SOX ITGC requirements related to user access and SoD.
- Experience supporting external audits and producing defensible evidence.
- Familiarity with cloud‑based identity platforms and SaaS access models.
- Experience with ERP and financial systems (SAP, Oracle, Workday, Net Suite).
- IAM or security certifications (CISSP, CISM, CRISC, SailPoint, Saviynt).
- Exposure to privileged access governance in cloud environments.
- Understanding of zero trust and modern identity security principles.
- SOX and audit discipline.
- Attention to detail and execution rigor.
- Clear documentation and evidence management.
- Cross‑functional collaboration.
- Influence through subject‑matter expertise.
PNC will not provide sponsorship for employment visas or participate in STEM OPT for this position.
BenefitsPNC offers a comprehensive range of benefits to help meet your needs now and in the future. Options for full‑time employees include medical and prescription drug coverage with a Health Savings Account feature, dental and vision options, employee and spouse/child life insurance, short and long‑term disability protection, 401(k) with PNC match, pension and stock purchase plans, dependent care reimbursement account, backup child/elder care, adoption, surrogacy, and doula reimbursement, educational assistance, and a robust wellness program with financial incentives.
Paid time off includes maternity and/or parental leave; up to 11 paid holidays each year; 9 occasional absence days each year, unless otherwise required by law; between 15 to 25 vacation days each year,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).