Jobs and Careers
PN
Security Specialist Sr - WIAM Policy and Controls
PNCPittsburgh, United Statesfull_timeVerifiedPosted 22 Jul 2026
💰 $228,800/yr($112,000/yr – $228,800/yr)
About the role
Position Overview
At PNC, our people are our greatest differentiator and competitive advantage in the markets we serve. We are all united in delivering the best experience for our customers. We work together each day to foster an inclusive workplace culture where all of our employees feel respected, valued and have an opportunity to contribute to the company’s success. As a Security Specialist Sr within PNC's Technology organization, you will be based in Pittsburgh, PA; Cleveland, OH; Birmingham, AL; Dallas, TX or Lakewood, CORole Summary
Senior leadership role responsible for defining, scaling, and sustaining the enterprise WIAM governance function, ensuring strong alignment across policy, risk, controls, and operations. Drives proactive risk management, strengthens control effectiveness, and positions the organization for consistent audit readiness.
Key Responsibilities
• Define and evolve the WIAM governance framework, including policy alignment, control design standards, and operating model
• Establish and lead a centralized governance capability to ensure consistency across IAM domains and processes
• Drive alignment of issues → risk → controls → policy, ensuring traceability, defensibility, and regulatory compliance
• Lead enterprise-wide efforts to identify systemic risks, prioritize remediation, and improve control sustainability
• Define and monitor governance KPIs, scorecards, and maturity metrics, driving continuous improvement
• Provide strategic direction for audit readiness, regulatory alignment, and external/internal assessments
• Partner with senior leaders across IAM engineering, operations, and business units to drive adoption of governance standards
• Influence decision-making by translating complex risk and control concepts into clear, actionable insights for leadership
• Establish scalable processes that reduce reliance on reactive issue management and enable proactive risk mitigation
• Mentor and develop junior team members, promoting governance best practices and consistency
Required Experience
8+ years in IAM, cybersecurity governance, risk, controls, audit, or related security leadership roles.
Preferred Certifications: CISSP, CISM, CRISC, CGRC (or equivalent governance / risk credentials).
• Deep expertise in IAM governance, risk management, controls, and regulatory expectations
• Proven experience designing and scaling enterprise governance frameworks
• Strong understanding of control design, effectiveness testing, and audit defense
• Ability to connect policy, risk, and control execution across complex environments
• Advanced analytical skills, including trend analysis and risk-based decisioning
• Strong leadership, influencing, and stakeholder engagement capabilities across all levels
• Experience working in highly regulated environments (e.g., financial services preferred)PNC is an in-office company that fosters a supportive culture where employees can thrive and achieve balance. We encourage candidates to connect with their recruiter and hiring manager to understand workplace expectations and ensure the role aligns with their goals.
PNC will not provide sponsorship for employment visas or participate in STEM OPT for this position.
Job Description
- Provides technical evaluation and analysis in a specific Security area. Supports activities, process, and tools needed to improve overall security posture of the organization. Primary responsibilities do not include Architect or Engineering responsibilities. Provides subject matter expertise.
- Applies security concepts, reviews information, executes defined tasks, analyzes requirements, reviews logs, creates documentation. Performs investigation and data loss prevention, data manipulation, coordination of activities. Performs actions to address or mitigate risks and vulnerabilities. Reviews and defines controls.
- Advises on more complex security procedures and products for clients, security administrators and network operations. Participates in enforcement of control security risks and threats; potential of one more controls subject to manager discretion. Shares knowledge with staff.
- Conducts security assessments and other information security routines consistently. Investigates and recommends corrective actions for data security related to established guidelines.
- Develops policies and procedures to standardize security functions and eliminate potential vulnerabilities and threats. Oversees that business needs are being met during development.
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s