Pci Internal Security Assessor

2 months ago


Remote, India TheHive Full time

**Job Description: PCI Internal Security Assessor (ISA)**

Department: Enterprise Security & Technology Risk Management Location: Regionwide

Reports To: Chief Information Security Officer (CISO)

Employment Type: Full-time

**Job Overview**

The PCI Internal Security Assessor (ISA) is responsible for ensuring that our client from banking industry complies with the Payment Card Industry Data Security Standard (PCI DSS). The ISA will assess, monitor, and enforce the security measures necessary to protect cardholder data and maintain PCI compliance across all systems and processes. This role works closely with internal stakeholders and external parties to maintain a secure environment, mitigate risks, and improve overall security posture.

**Key Responsibilities**:

- PCI DSS Compliance Management:

- Conduct regular internal assessments and audits to ensure the organization's compliance with PCI DSS.

Develop and implement PCI compliance policies, procedures, and controls.
- Serve as the internal point of contact for PCI DSS-related matters and ensure all applicable security controls are in place.
- Collaborate with the external Qualified Security Assessor (QSA) to facilitate annual PCI DSS certification audits.

Documentation and Reporting:

- Prepare and maintain comprehensive documentation, including policies, procedures, and reports required for PCI DSS compliance.
- Maintain comprehensive documentation of assessment findings, corrective actions, and compliance status.
- Manage the submission of the Self-Assessment Questionnaires (SAQs) and Attestation of Compliance documents (AOCs) as needed.

**Qualifications**:
**Education**:

- Bachelor’s degree in Information Security, Computer Science, or a related field (or

equivalent work experience).
- Experience:

- Minimum of 3-5 years of experience in information security, PCI compliance, or a related field.
- Previous experience as an ISA, QSA, or a similar role is highly desirable.
- Certifications:

- Certified PCI Internal Security Assessor (ISA) or Certified PCI Professional (PCIP) certifications preferred.

Additional certifications such as CISSP, CISM, CISA, or CEH are a plus.
- Skills and Competencies:

- Deep understanding of PCI DSS requirements and data security best practices.
- Familiarity with security frameworks (NIST, ISO 27001, CIS Controls) and security technologies (firewalls, IDS/IPS, encryption, etc.).
- Strong analytical, problem-solving, and project management skills.
- Excellent communication and interpersonal skills with the ability to work cross
- functionally.
- Proficiency in using security assessment tools and techniques (e.g., vulnerability scanners, SIEM).

**Other Requirements**:
Ability to work independently and handle sensitive information confidentially.
- Detail-oriented with strong organizational skills.
- Occasional travel may be required for audits or compliance reviews.
- Identify and assess potential risks to cardholder data environments and provide recommendations for risk mitigation.
- Implement and enforce necessary security controls to address gaps identified during assessments.
- Ensure vulnerability scanning, penetration testing, and security reviews are conducted to identify weaknesses and ensure continuous compliance.
- Conduct internal PCI DSS training for staff to ensure a deep understanding of the importance of compliance and security measures.
- Provide ongoing guidance and support to departments regarding security best practices related to PCI DSS.
- Work closely with projects, Enterprise Security, Technology, and other relevant departments to align PCI DSS compliance with overall security policies and practices.
- Proactively identify and/or promptly escalate risks and issues affecting PCI compliance status.
- Stay updated on changes in PCI DSS requirements and industry best practices to ensure our client from banking industry remains compliant.
- Present PCI DSS compliance status reports to senior management and external stakeholders.
- Act as a liaison where necessary between our client from banking industry and external vendors or service providers involved in processing or storing cardholder data.

**Job Types**: Full-time, Contractual / Temporary
Contract length: 24 months

Pay: ₹100,000.00 - ₹160,000.00 per month

Schedule:

- Night shift

**Education**:

- Bachelor's (preferred)

**Experience**:

- PCI: 4 years (required)
- Risk management: 4 years (required)

License/Certification:

- Certified PCI Internal Security Assessor (ISA) (required)
- Certified PCI Professional (PCIP) certifications (required)

Work Location: Remote


  • Cloud Security Intern

    8 months ago


    Remote, India Deltek, Inc. Full time

    **Business Summary** - The Deltek Engineering and Technology team builds best-in-class solutions to delight customers and meet their business needs. We are laser-focused on software design, development, innovation and quality. Our team of experts has the talent, skills and values to deliver products and services that are easy to use, reliable, sustainable...

  • Cyber Security Intern

    7 months ago


    Remote, India Myla Organics Full time

    We are seeking a highly motivated Cybersecurity Intern to join our team and gain hands-on experience in protecting our organization's digital assets and data. As a Cybersecurity Intern, you will work closely with our cybersecurity team to identify vulnerabilities, implement security measures, and respond to security incidents. This internship offers a unique...


  • Remote, India MNR Solutions Full time

    Job Description : We are seeking an experienced Data Security Consultant to join our team. The ideal candidate will have a strong background in data security practices and technologies, focusing on protecting sensitive information and ensuring compliance with industry regulations.Key Responsibilities :- Assess and analyze data security policies,...

  • Cyber Security Intern

    3 months ago


    Remote, India ESJ Asthra Edutech Pvt Ltd Full time

    **Cyber Security Intern (Tamil)** Are you passionate about protecting digital assets and intrigued by the ever-evolving landscape of cyber threats? We're seeking a talented and dedicated Cyber Security Intern to join our dynamic team. As a Cyber Security Intern, you will play a crucial role in safeguarding our organization's sensitive information and...


  • Remote, India Coinbase Full time

    At Coinbase, our mission is to increase economic freedom around the world, and we couldn’t do this without hiring the best people. We’re a group of hard-working overachievers who are deeply focused on building the future of finance and Web3 for our users across the globe, whether they’re trading, storing, staking or using crypto. Know those people who...


  • Remote, India Secureise Cyber Security Solutions Private Limited Full time

    **Responsibilities** - Conduct comprehensive VAPT assessments for IT and OT environments. - Identify and report vulnerabilities, including risk levels and potential impacts. - Develop actionable recommendations to mitigate identified risks. - Perform penetration testing on industrial control systems (ICS) and SCADA networks. - Ensure compliance with relevant...

  • Devsecops Architect

    1 week ago


    Remote, India Luxoft Full time

    **Project** Description**: DevSecOps Architect role will have a major role to help implementing shift left security in DevSecOps program and define the required security guardrails. In addition, the role will cover leading a team of DevSecOps Security members (Security Testers and Risk Assessors) as those members will be working with dedicated teams of...


  • Mumbai/Chennai/Remote, India Aastra technology Full time

    Salary : Description : Key Responsibilities : Cloud Infrastructure Security : - Design, implement, and manage security solutions for cloud infrastructure.- Secure cloud environments across AWS and other cloud service providers.- Develop and enforce cloud security policies, standards, and procedures.Microservices and Container Security : - Secure...


  • Remote, India Logs and Blocks Full time

    Investigating routine security related breeches and incidents. - Reporting on the latest threats and trends to colleagues and other interested parties via internal and external communication. - Monitoring security related tools, resources, equipment and functions. - Installing \ configuring firewalls, data encryption, Azure Security and other security...

  • Cyber Security

    7 months ago


    Remote, India Axel Johnson International Full time

    **Designation**:L1 - Cyber Security **Experience**:3-4 years **CTC**:7-8 LPA **Location**: Remote **Department**: AxInter IT **Reports to**: SOC Support Manager **Why should you look at this role?** SOC Support personnel aid cyber security risk mitigation and maintain the company’s’ IT Hardware, Software and Services up and running in secure...

  • Azure Security

    7 months ago


    Remote, India Donyati Full time

    **About Donyati** Donyati was founded as a challenge to the status quo of business and technology consulting. At Donyati we leverage technology to solve business challenges and deliver innovative solutions with expertise, hard work, and passion. We listen, advise, and deliver on a continuous basis to achieve our client’s desired outcomes. We always have...

  • Security Architect

    2 weeks ago


    Remote, India Maven Workforce Pvt. Ltd Full time

    **Skills: Cloud architecture, security architecture, IAM architecture, Scripting, AZURE** **Requisition**: **Your key responsibilities** - Design, build and implement enterprise-class security systems for a production environment including a continuous monitoring system - Align standards, frameworks and security with overall business and technology...

  • Security Researcher

    1 month ago


    Remote, India McAfee, LLC Full time

    **_Role Overview:_** ** About the role**: - You must have awareness of threats around the globe, regional threats and top adversaries / criminal groups focusing on malware including affiliate networks pertaining to Windows OSes. - Process incoming requests from customers and Support team regarding malware analysis and detection. - Provide static and...

  • Jira Administrator

    3 days ago


    Remote, India Doit Security, Inc. Full time

    **Company Description** Every industry and market segment are moving toward using the cloud and becoming more digital. Doit Security supports cloud security companies and has been running for years to help shape the emerging SASE category. We provide enterprise-level services to customers all around the world. Along with protecting against destructive...

  • Information Security

    1 month ago


    Remote, India MNR Solutions Full time

    As an Information Security and Privacy Specialist, you will be responsible for ensuring the security and privacy of our SaaS applications and data. You will develop, implement, and manage information security policies and procedures to protect sensitive information and ensure compliance with relevant regulations.Key Responsibilities : Security Policy...


  • Remote, India JP Techno Park Full time

    Job Details: **Role: Database administrator - SQL Server** **Location: Dubai - offshoreDuration: 12 Months Job Purpose** Ensure service stability, uptime of the systems under the portfolio as per the agreed SLA Provide **L2 support**in the respective support area and act on technical escalations Provide guidance and technical insights to the team for...


  • Remote, India Kes security pvt ltd Full time

    KES Security Pvt. Ltd. is looking for a creative and motivated **Graphic Design Intern** to join our team. This internship provides a hands-on opportunity to work on exciting projects, develop design skills, and contribute to real-world marketing campaigns. Exceptional performance during the internship may lead to a **Pre-Placement Offer (PPO)** with a...

  • Data Scientist

    7 months ago


    Remote, India Zoom Full time

    **What you can expect** As a Data Scientist in security, you will design and develop data-driven solutions to handle threat detection problems for Zoom’s corporate and production environments. You will partner with InfoSec to get the right security data sources in place, and build analytics models to reduce noise and identify anomalies. This is Zoom's...

  • Aws Intern

    7 months ago


    Remote, India Baoiam Full time

    **Job Title**: AWS Intern **Company**: BAOIAM INNOVATIONS Pvt Ltd **Location**: Remote **Job Type**: Internship **Company Description**: Baoiam Innovations Pvt Ltd is a fully certified education platform that has been helping students achieve their professional and personal goals since 2020. Our platform provides courses and opportunities in various...

  • SEO Intern

    2 months ago


    Remote, India Click Suggest Full time

    Company Description Click Suggest empowers businesses to secure more clients and foster sustainable growth through strategic marketing solutions. With a passion for efficiency and effectiveness, we aim to streamline processes, amplify impact, and fill calendars with meaningful calls Role Description This is an Internship remote role for a Copywriter...