... regulatory compliance Lead enterprise-wide efforts to identify systemic risks, prioritize ... IAM, cybersecurity governance, risk, controls, audit, or related security leadership roles.
... regulatory compliance Lead enterprise-wide efforts to identify systemic risks, prioritize ... IAM, cybersecurity governance, risk, controls, audit, or related security leadership roles.
... cybersecurity governance, risk management, and compliance principles Experience supporting continuous monitoring programs and audit readiness initiatives Excellent written, verbal, organizational ...
... cybersecurity governance, risk management, and compliance principles Experience supporting continuous monitoring programs and audit readiness initiatives Excellent written, verbal, organizational ...
Integration Security & Governance * Conducting security architecture assessments across the ... Compliance & Risk * Working with leadership to ensure enterprise-wide compliance with FedRAMP, RMF ...
Integration Security & Governance * Conducting security architecture assessments across the ... Compliance & Risk * Working with leadership to ensure enterprise-wide compliance with FedRAMP, RMF ...
... regulatory compliance • Lead enterprise-wide efforts to identify systemic risks, prioritize ... IAM, cybersecurity governance, risk, controls, audit, or related security leadership roles.
... regulatory compliance • Lead enterprise-wide efforts to identify systemic risks, prioritize ... IAM, cybersecurity governance, risk, controls, audit, or related security leadership roles.
Cybersecurity Engineer
Albertville, AL · On-site
$88K - $160K/yr
... risk management, and compliance expectations. • Participate in continuous improvement activities to mature OT cybersecurity governance, standards, and monitoring capabilities across the enterprise.
Cybersecurity Engineer
Albertville, AL · On-site
$88K - $160K/yr
... risk management, and compliance expectations. • Participate in continuous improvement activities to mature OT cybersecurity governance, standards, and monitoring capabilities across the enterprise.
Cybersecurity Professional - Raleigh, NC; Reading, PA; Tanner, AL Primary Responsibilities for the ... Routinely publishes Governance, Risk, and Compliance (GRC) metrics. * Examines design and ...
Cybersecurity Professional - Raleigh, NC; Reading, PA; Tanner, AL Primary Responsibilities for the ... Routinely publishes Governance, Risk, and Compliance (GRC) metrics. * Examines design and ...
CHIEF FINANCIAL OFFICER
Florence, AL · On-site
Drive financial discipline and accountability across all functions. 2. Governance, Risk & Compliance (GRC) The CFO serves as the executive owner of Governance, Risk & Compliance, ensuring Martin Inc ...
CHIEF FINANCIAL OFFICER
Florence, AL · On-site
Drive financial discipline and accountability across all functions. 2. Governance, Risk & Compliance (GRC) The CFO serves as the executive owner of Governance, Risk & Compliance, ensuring Martin Inc ...
CHIEF FINANCIAL OFFICER
Florence, AL · On-site
Drive financial discipline and accountability across all functions. 2. Governance, Risk & Compliance (GRC) The CFO serves as the executive owner of Governance, Risk & Compliance, ensuring Martin Inc ...
CHIEF FINANCIAL OFFICER
Florence, AL · On-site
Drive financial discipline and accountability across all functions. 2. Governance, Risk & Compliance (GRC) The CFO serves as the executive owner of Governance, Risk & Compliance, ensuring Martin Inc ...
CHIEF FINANCIAL OFFICER
Florence, AL · On-site
Drive financial discipline and accountability across all functions. 2. Governance, Risk & Compliance (GRC) The CFO serves as the executive owner of Governance, Risk & Compliance, ensuring Martin Inc ...
Quick apply
CHIEF FINANCIAL OFFICER
Florence, AL · On-site
Drive financial discipline and accountability across all functions. 2. Governance, Risk & Compliance (GRC) The CFO serves as the executive owner of Governance, Risk & Compliance, ensuring Martin Inc ...
Cyber Security Engineer, Mid/Senior Overview SimTech, Inc., recognized as one of the 2026 Best ... Ensuring risk, compliance, and assurance efforts conform to Department of War (DoW) security ...
Cyber Security Engineer, Mid/Senior Overview SimTech, Inc., recognized as one of the 2026 Best ... Ensuring risk, compliance, and assurance efforts conform to Department of War (DoW) security ...
Cyber Security Engineer, Mid/Senior Overview SimTech, Inc., recognized as one of the 2026 Best ... Ensuring risk, compliance, and assurance efforts conform to Department of War (DoW) security ...
Cyber Security Engineer, Mid/Senior Overview SimTech, Inc., recognized as one of the 2026 Best ... Ensuring risk, compliance, and assurance efforts conform to Department of War (DoW) security ...
Lead, Service Management
Montgomery, AL · On-site
$15.75 - $20.75/hr
A distinctive part of this role is establishing and leading the cybersecurity services Pearson ... Governance, risk, and compliance is a separate, independent function and a close partner of this ...
Lead, Service Management
Montgomery, AL · On-site
$15.75 - $20.75/hr
A distinctive part of this role is establishing and leading the cybersecurity services Pearson ... Governance, risk, and compliance is a separate, independent function and a close partner of this ...
... audit and compliance. The security solution architect is responsible for designing security ... governance, risk management, PCI DSS control governance, application security, encryption, key ...
... audit and compliance. The security solution architect is responsible for designing security ... governance, risk management, PCI DSS control governance, application security, encryption, key ...
Cyber Security Engineer, Mid/Senior OverviewSimTech, Inc., recognized as one of the 2026 Best ... Ensuring risk, compliance, and assurance efforts conform to Department of War (DoW) security ...
Quick apply
Cyber Security Engineer, Mid/Senior OverviewSimTech, Inc., recognized as one of the 2026 Best ... Ensuring risk, compliance, and assurance efforts conform to Department of War (DoW) security ...
Leads initiatives to identify and proactively mitigate emerging risks (e.g., cyber security, ... Experience with Governance, Risk Management and Compliance (GRC) tools * Knowledge of data ...
Leads initiatives to identify and proactively mitigate emerging risks (e.g., cyber security, ... Experience with Governance, Risk Management and Compliance (GRC) tools * Knowledge of data ...
IT Senior Analyst: Vulnerability Management, Patching Governance & Compliance
Montevallo, AL · On-site
$44.25 - $59/hr
This role is instrumental in maintaining regulatory compliance, reducing cybersecurity risk, and ... Establish governance frameworks for patch deployment and vulnerability remediation activities.
Quick apply
IT Senior Analyst: Vulnerability Management, Patching Governance & Compliance
Montevallo, AL · On-site
$44.25 - $59/hr
This role is instrumental in maintaining regulatory compliance, reducing cybersecurity risk, and ... Establish governance frameworks for patch deployment and vulnerability remediation activities.
Governance, Risk & Compliance * Oversee compliance across mining, environmental, labor, employment, safety, and corporate regulations. * Monitor regulatory developments and mitigate enterprise risk.
Governance, Risk & Compliance * Oversee compliance across mining, environmental, labor, employment, safety, and corporate regulations. * Monitor regulatory developments and mitigate enterprise risk.
Vice President - Legal
Brookwood, AL · On-site
Governance, Risk & Compliance * Oversee compliance across mining, environmental, labor, employment, safety, and corporate regulations. * Monitor regulatory developments and mitigate enterprise risk.
Vice President - Legal
Brookwood, AL · On-site
Governance, Risk & Compliance * Oversee compliance across mining, environmental, labor, employment, safety, and corporate regulations. * Monitor regulatory developments and mitigate enterprise risk.
Enterprise Compliance and Operational Risk Analyst - Retail
Birmingham, AL · On-site
$81K - $118K/yr
Experience with Governance, Risk Management and Compliance (GRC) tools * Knowledge of data visualization and programming software * Knowledge of end-to-end banking processes (e.g., sales, account ...
Enterprise Compliance and Operational Risk Analyst - Retail
Birmingham, AL · On-site
$81K - $118K/yr
Experience with Governance, Risk Management and Compliance (GRC) tools * Knowledge of data visualization and programming software * Knowledge of end-to-end banking processes (e.g., sales, account ...
Cyber Security Analyst
$40K - $55K/yr
Compliance & Governance: Review, maintain, and update security policies, procedures, and controls ... Risk Assessment: Assist with cybersecurity risk assessments, identify potential vulnerabilities ...
Cyber Security Analyst
$40K - $55K/yr
Compliance & Governance: Review, maintain, and update security policies, procedures, and controls ... Risk Assessment: Assist with cybersecurity risk assessments, identify potential vulnerabilities ...
Cybersecurity Governance Risk Compliance information
What is the difference between Cybersecurity Governance Risk Compliance vs Cybersecurity Analyst?
| Aspect | Cybersecurity Governance Risk Compliance | Cybersecurity Analyst |
|---|---|---|
| Certifications | CISA, CISSP, CISM | CompTIA Security+, CISSP, CEH |
| Work Environment | Policy development, audits, compliance frameworks | Monitoring security systems, incident response |
| Employer & Industry Usage | Organizations with compliance needs, regulatory bodies | IT security teams, cybersecurity firms |
While Cybersecurity Governance Risk Compliance focuses on establishing policies, ensuring regulatory adherence, and managing risks, Cybersecurity Analysts primarily monitor security systems, analyze threats, and respond to incidents. Both roles are essential in a comprehensive cybersecurity strategy but differ in scope and daily responsibilities.
What are the key skills and qualifications needed to thrive as a cybersecurity governance, risk, and compliance (GRC) professional?
What are some typical challenges faced by professionals in cybersecurity governance, risk, and compliance (GRC) roles?
Is cybersecurity governance risk compliance a good career?
Is cybersecurity governance risk compliance a good job?
What is cybersecurity governance, risk, and compliance (GRC)?
Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Posted 20 days ago
PNC Bank rating
7.7
Based on 345 frontline employees who took The Breakroom Quiz
93rd of 171 rated banks
Job description
Role Summary
Senior leadership role responsible for defining, scaling, and sustaining the enterprise WIAM governance function, ensuring strong alignment across policy, risk, controls, and operations. Drives proactive risk management, strengthens control effectiveness, and positions the organization for consistent audit readiness.
Key Responsibilities
Define and evolve the WIAM governance framework, including policy alignment, control design standards, and operating model
Establish and lead a centralized governance capability to ensure consistency across IAM domains and processes
Drive alignment of issues risk controls policy, ensuring traceability, defensibility, and regulatory compliance
Lead enterprise-wide efforts to identify systemic risks, prioritize remediation, and improve control sustainability
Define and monitor governance KPIs, scorecards, and maturity metrics, driving continuous improvement
Provide strategic direction for audit readiness, regulatory alignment, and external/internal assessments
Partner with senior leaders across IAM engineering, operations, and business units to drive adoption of governance standards
Influence decision-making by translating complex risk and control concepts into clear, actionable insights for leadership
Establish scalable processes that reduce reliance on reactive issue management and enable proactive risk mitigation
Mentor and develop junior team members, promoting governance best practices and consistency
Required Experience
8+ years in IAM, cybersecurity governance, risk, controls, audit, or related security leadership roles.
Preferred Certifications: CISSP, CISM, CRISC, CGRC (or equivalent governance / risk credentials).
Deep expertise in IAM governance, risk management, controls, and regulatory expectations
Proven experience designing and scaling enterprise governance frameworks
Strong understanding of control design, effectiveness testing, and audit defense
Ability to connect policy, risk, and control execution across complex environments
Advanced analytical skills, including trend analysis and risk-based decisioning
Strong leadership, influencing, and stakeholder engagement capabilities across all levels
Experience working in highly regulated environments (e.g., financial services preferred)PNC is an in-office company that fosters a supportive culture where employees can thrive and achieve balance. We encourage candidates to connect with their recruiter and hiring manager to understand workplace expectations and ensure the role aligns with their goals.PNC will not provide sponsorship for employment visas or participate in STEM OPT for this position.Job Description
- Provides technical evaluation and analysis in a specific Security area. Supports activities, process, and tools needed to improve overall security posture of the organization. Primary responsibilities do not include Architect or Engineering responsibilities. Provides subject matter expertise.
- Applies security concepts, reviews information, executes defined tasks, analyzes requirements, reviews logs, creates documentation. Performs investigation and data loss prevention, data manipulation, coordination of activities. Performs actions to address or mitigate risks and vulnerabilities. Reviews and defines controls.
- Advises on more complex security procedures and products for clients, security administrators and network operations. Participates in enforcement of control security risks and threats; potential of one more controls subject to manager discretion. Shares knowledge with staff.
- Conducts security assessments and other information security routines consistently. Investigates and recommends corrective actions for data security related to established guidelines.
- Develops policies and procedures to standardize security functions and eliminate potential vulnerabilities and threats. Oversees that business needs are being met during development.
- Shares knowledge, leads and mentors are the discretion of management. Aligns the controls of a specific Security area to the enterprise framework. Devises control implementation strategy.
PNC Employees take pride in our reputation and to continue building upon that we expect our employees to be:
- Customer Focused - Knowledgeable of the values and practices that align customer needs and satisfaction as primary considerations in all business decisions and able to leverage that information in creating customized customer solutions.
- Managing Risk - Assessing and effectively managing all of the risks associated with their business objectives and activities to ensure they adhere to and support PNC's Enterprise Risk Management Framework.
Successful candidates must demonstrate appropriate knowledge, skills, and abilities for a role. Listed below are skills, competencies, work experience, education, and required certifications/licensures needed to be successful in this position.
Preferred SkillsAccess Control (AC), Building Architecture, Customer Solutions, Disaster Recovery Planning, Identity Access Management (IAM), Information Security, Network Security, Physical Security, Risk Assessments, Security TechnologiesCompetenciesAnalytical Thinking, Effective Communications, Information Assurance, Information Security Management, Information Security Technologies, IT Environment, IT Standards, Procedures & Policies, IT Systems Management, Knowledge of Organization, Problem Solving, Software Security AssuranceWork ExperienceRoles at this level typically require a university / college degree. Higher level education such as a Masters degree, PhD, or certifications is desirable. Industry relevant experience is typically 8+ years. Specific certifications are often required. In lieu of a degree, a comparable combination of education, job specific certification(s), and experience (including military service) may be considered.EducationBachelorsCertificationsNo Required Certification(s)LicensesNo Required License(s)Pay TransparencyBase Salary: $112,000.00 - $228,800.00Salaries may vary based on geographic location, market data and on individual skills, experience, and education. This role is incentive eligible with the payment based upon company, business and/or individual performance.Application WindowGenerally, this opening is expected to be posted for two business days from 07/22/2026, although it may be longer with business discretion.BenefitsPNC offers a comprehensive range of benefits to help meet your needs now and in the future. Depending on your eligibility, options for full-time employees include: medical/prescription drug coverage (with a Health Savings Account feature), dental and vision options; employee and spouse/child life insurance; short and long-term disability protection; 401(k) with PNC match, pension and stock purchase plans; dependent care reimbursement account; back-up child/elder care; adoption, surrogacy, and doula reimbursement; educational assistance, including select programs fully paid; a robust wellness program with financial incentives.In addition, PNC generally provides the following paid time off, depending on your eligibility: maternity and/or parental leave; up to 11 paid holidays each year; 9 occasional absence days each year, unless otherwise required by law; between 15 to 25 vacation days each year, depending on career level; and years of service.To learn more about these and other programs, including benefits for full time and part-time employees, visitpncthrive.com.
Disability Accommodations StatementIf an accommodation is required to participate in the application process, please contact us via email at AccommodationRequest@pnc.com. Please include "accommodation request" in the subject line title and be sure to include your name, the job ID, and your preferred method of contact in the body of the email. Emails not related to accommodation requests will not receive responses. Applicants may also call 877-968-7762 and say "Workday" for accommodation assistance. All information provided will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.
At PNC we foster an inclusive and accessible workplace. We provide reasonable accommodations to employment applicants and qualified individuals with a disability who need an accommodation to perform the essential functions of their positions.
PNC provides equal employment opportunity to qualified persons regardless of race, color, sex, religion, national origin, age, sexual orientation, gender identity, disability, veteran status, or other categories protected by law.
This position is subject to the requirements of Section 19 of the Federal Deposit Insurance Act (FDIA) and, for any registered role, the Secure and Fair Enforcement for Mortgage Licensing Act of 2008 (SAFE Act) and/or the Financial Industry Regulatory Authority (FINRA), which prohibit the hiring of individuals with certain criminal history.
California ResidentsRefer to the California Consumer Privacy Act Privacy Notice to gain understanding of how PNC may use or disclose your personal information in our hiring practices.
About PNC Bank
Sourced by ZipRecruiter
Industry
Banking and credit intermediation
Company size
10,000+ Employees
Headquarters location
Pittsburgh, PA, US
Year founded
1852