About The Position

Senior leadership role responsible for defining, scaling, and sustaining the enterprise WIAM governance function, ensuring strong alignment across policy, risk, controls, and operations. Drives proactive risk management, strengthens control effectiveness, and positions the organization for consistent audit readiness. Provides technical evaluation and analysis in a specific Security area. Supports activities, process, and tools needed to improve overall security posture of the organization. Primary responsibilities do not include Architect or Engineering responsibilities. Provides subject matter expertise. Applies security concepts, reviews information, executes defined tasks, analyzes requirements, reviews logs, creates documentation. Performs investigation and data loss prevention, data manipulation, coordination of activities. Performs actions to address or mitigate risks and vulnerabilities. Reviews and defines controls. Advises on more complex security procedures and products for clients, security administrators and network operations. Participates in enforcement of control security risks and threats; potential of one more controls subject to manager discretion. Shares knowledge with staff. Conducts security assessments and other information security routines consistently. Investigates and recommends corrective actions for data security related to established guidelines. Develops policies and procedures to standardize security functions and eliminate potential vulnerabilities and threats. Oversees that business needs are being met during development. Shares knowledge, leads and mentors are the discretion of management. Aligns the controls of a specific Security area to the enterprise framework. Devises control implementation strategy.

Requirements

  • 8+ years in IAM, cybersecurity governance, risk, controls, audit, or related security leadership roles.
  • Deep expertise in IAM governance, risk management, controls, and regulatory expectations
  • Proven experience designing and scaling enterprise governance frameworks
  • Strong understanding of control design, effectiveness testing, and audit defense
  • Ability to connect policy, risk, and control execution across complex environments
  • Advanced analytical skills, including trend analysis and risk-based decisioning
  • Strong leadership, influencing, and stakeholder engagement capabilities across all levels
  • Experience working in highly regulated environments (e.g., financial services preferred)
  • Bachelors degree
  • Customer Focused - Knowledgeable of the values and practices that align customer needs and satisfaction as primary considerations in all business decisions and able to leverage that information in creating customized customer solutions.
  • Managing Risk - Assessing and effectively managing all of the risks associated with their business objectives and activities to ensure they adhere to and support PNC's Enterprise Risk Management Framework.

Nice To Haves

  • Preferred Certifications: CISSP, CISM, CRISC, CGRC (or equivalent governance / risk credentials).
  • Access Control (AC), Building Architecture, Customer Solutions, Disaster Recovery Planning, Identity Access Management (IAM), Information Security, Network Security, Physical Security, Risk Assessments, Security Technologies

Responsibilities

  • Define and evolve the WIAM governance framework, including policy alignment, control design standards, and operating model
  • Establish and lead a centralized governance capability to ensure consistency across IAM domains and processes
  • Drive alignment of issues → risk → controls → policy, ensuring traceability, defensibility, and regulatory compliance
  • Lead enterprise-wide efforts to identify systemic risks, prioritize remediation, and improve control sustainability
  • Define and monitor governance KPIs, scorecards, and maturity metrics, driving continuous improvement
  • Provide strategic direction for audit readiness, regulatory alignment, and external/internal assessments
  • Partner with senior leaders across IAM engineering, operations, and business units to drive adoption of governance standards
  • Influence decision-making by translating complex risk and control concepts into clear, actionable insights for leadership
  • Establish scalable processes that reduce reliance on reactive issue management and enable proactive risk mitigation
  • Mentor and develop junior team members, promoting governance best practices and consistency
  • Applies security concepts, reviews information, executes defined tasks, analyzes requirements, reviews logs, creates documentation.
  • Performs investigation and data loss prevention, data manipulation, coordination of activities.
  • Performs actions to address or mitigate risks and vulnerabilities.
  • Reviews and defines controls.
  • Advises on more complex security procedures and products for clients, security administrators and network operations.
  • Participates in enforcement of control security risks and threats; potential of one more controls subject to manager discretion.
  • Conducts security assessments and other information security routines consistently.
  • Investigates and recommends corrective actions for data security related to established guidelines.
  • Develops policies and procedures to standardize security functions and eliminate potential vulnerabilities and threats.
  • Oversees that business needs are being met during development.
  • Aligns the controls of a specific Security area to the enterprise framework.
  • Devises control implementation strategy.

Benefits

  • medical/prescription drug coverage (with a Health Savings Account feature)
  • dental and vision options
  • employee and spouse/child life insurance
  • short and long-term disability protection
  • 401(k) with PNC match
  • pension and stock purchase plans
  • dependent care reimbursement account
  • back-up child/elder care
  • adoption, surrogacy, and doula reimbursement
  • educational assistance, including select programs fully paid
  • a robust wellness program with financial incentives
  • maternity and/or parental leave
  • up to 11 paid holidays each year
  • 9 occasional absence days each year, unless otherwise required by law
  • between 15 to 25 vacation days each year, depending on career level; and years of service.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service