
Pci Internal Security Assessor
5 days ago
**Job Description: PCI Internal Security Assessor (ISA)**
Department: Enterprise Security & Technology Risk Management Location: Regionwide
Reports To: Chief Information Security Officer (CISO)
Employment Type: Full-time
**Job Overview**
The PCI Internal Security Assessor (ISA) is responsible for ensuring that our client from banking industry complies with the Payment Card Industry Data Security Standard (PCI DSS). The ISA will assess, monitor, and enforce the security measures necessary to protect cardholder data and maintain PCI compliance across all systems and processes. This role works closely with internal stakeholders and external parties to maintain a secure environment, mitigate risks, and improve overall security posture.
**Key Responsibilities**:
- PCI DSS Compliance Management:
- Conduct regular internal assessments and audits to ensure the organization's compliance with PCI DSS.
Develop and implement PCI compliance policies, procedures, and controls.
- Serve as the internal point of contact for PCI DSS-related matters and ensure all applicable security controls are in place.
- Collaborate with the external Qualified Security Assessor (QSA) to facilitate annual PCI DSS certification audits.
Documentation and Reporting:
- Prepare and maintain comprehensive documentation, including policies, procedures, and reports required for PCI DSS compliance.
- Maintain comprehensive documentation of assessment findings, corrective actions, and compliance status.
- Manage the submission of the Self-Assessment Questionnaires (SAQs) and Attestation of Compliance documents (AOCs) as needed.
**Qualifications**:
**Education**:
- Bachelor’s degree in Information Security, Computer Science, or a related field (or
equivalent work experience).
- Experience:
- Minimum of 3-5 years of experience in information security, PCI compliance, or a related field.
- Previous experience as an ISA, QSA, or a similar role is highly desirable.
- Certifications:
- Certified PCI Internal Security Assessor (ISA) or Certified PCI Professional (PCIP) certifications preferred.
Additional certifications such as CISSP, CISM, CISA, or CEH are a plus.
- Skills and Competencies:
- Deep understanding of PCI DSS requirements and data security best practices.
- Familiarity with security frameworks (NIST, ISO 27001, CIS Controls) and security technologies (firewalls, IDS/IPS, encryption, etc.).
- Strong analytical, problem-solving, and project management skills.
- Excellent communication and interpersonal skills with the ability to work cross
- functionally.
- Proficiency in using security assessment tools and techniques (e.g., vulnerability scanners, SIEM).
**Other Requirements**:
Ability to work independently and handle sensitive information confidentially.
- Detail-oriented with strong organizational skills.
- Occasional travel may be required for audits or compliance reviews.
- Identify and assess potential risks to cardholder data environments and provide recommendations for risk mitigation.
- Implement and enforce necessary security controls to address gaps identified during assessments.
- Ensure vulnerability scanning, penetration testing, and security reviews are conducted to identify weaknesses and ensure continuous compliance.
- Conduct internal PCI DSS training for staff to ensure a deep understanding of the importance of compliance and security measures.
- Provide ongoing guidance and support to departments regarding security best practices related to PCI DSS.
- Work closely with projects, Enterprise Security, Technology, and other relevant departments to align PCI DSS compliance with overall security policies and practices.
- Proactively identify and/or promptly escalate risks and issues affecting PCI compliance status.
- Stay updated on changes in PCI DSS requirements and industry best practices to ensure our client from banking industry remains compliant.
- Present PCI DSS compliance status reports to senior management and external stakeholders.
- Act as a liaison where necessary between our client from banking industry and external vendors or service providers involved in processing or storing cardholder data.
**Job Types**: Full-time, Contractual / Temporary
Contract length: 24 months
Pay: ₹100,000.00 - ₹160,000.00 per month
Schedule:
- Night shift
**Education**:
- Bachelor's (preferred)
**Experience**:
- PCI: 4 years (required)
- Risk management: 4 years (required)
License/Certification:
- Certified PCI Internal Security Assessor (ISA) (required)
- Certified PCI Professional (PCIP) certifications (required)
Work Location: Remote
-
Remote, India Rackspace Technology Full timeJob DescriptionRisk & Compliance Specialist - SOX & PCI Focus2-5 YearsLocation: RemoteDepartment: Risk Management / Compliance / GRCPosition SummaryWe are seeking a detail-oriented and proactive Risk & Compliance Specialist with 3-5 years of experience to support our organization's compliance initiatives related to SOX (Sarbanes-Oxley Act) and PCI DSS...
-
Cyber Security Auditor
5 days ago
Remote, India Etech Global Services Full time**What We Offer**: - Transportation allowance - Canteen Subsidy - Night Shift allowance as per process - Schedule Attendance Bonus - Health Insurance - Tuition Reimbursement - Incentive components campaign wise - Work Life Balance Initiatives - Rewards & Recognition - Internal movement through IJP **What You’ll Be Doing**: - Analyze overall enterprise...
-
Secure Information Compliance Specialist
9 hours ago
Remote, India beBeeCompliance Full time US$ 7,50,000 - US$ 10,00,000Security Assurance Analyst RoleAt the forefront of security and integrity, our operations prioritize safeguarding systems, data, and customer information against emerging threats. We seek a dedicated Security Assurance Analyst to lead compliance with industry standards and regulatory frameworks.Main ResponsibilitiesProvide expert guidance on PCI DSS, ISO...
-
Cyber Security Intern
5 days ago
Remote, India Myla Organics Full timeWe are seeking a highly motivated Cybersecurity Intern to join our team and gain hands-on experience in protecting our organization's digital assets and data. As a Cybersecurity Intern, you will work closely with our cybersecurity team to identify vulnerabilities, implement security measures, and respond to security incidents. This internship offers a unique...
-
Cyber Security Intern
2 days ago
Remote, India CyArt Full time**About Company**: CyArt is an innovative and emerging center which provides services of Cyber Security, Artificial Intelligence, Web Development, Cloud Solutions, and many more services related to the IT sector and for the enhancement of the community. **Job Overview**: We are seeking a motivated and security-minded individual to join our team as an...
-
Senior Security Assurance Specialist
2 days ago
Remote, India beBeeSecurity Full time US$ 1,84,200 - US$ 2,45,500Key Responsibilities:Lead and manage security assurance programs to ensure regulatory compliance.Oversee external audits, collaborate with auditors, and provide necessary documentation.Identify security gaps, develop remediation strategies, and implement improvements.Serve as a subject matter expert on security frameworks, influencing organizational...
-
It/ot Vapt Security Expert
4 days ago
Remote, India Secureise Cyber Security Solutions Private Limited Full time**Responsibilities** - Conduct comprehensive VAPT assessments for IT and OT environments. - Identify and report vulnerabilities, including risk levels and potential impacts. - Develop actionable recommendations to mitigate identified risks. - Perform penetration testing on industrial control systems (ICS) and SCADA networks. - Ensure compliance with relevant...
-
Devsec Ops
13 hours ago
Remote, India Wavicle Data Solutions Full timeResponsibilities - DevOps Automation: Puppet, Ansible, GitHub - CISM, CISSP or other Security Certifications. - Familiarity with API Security, Container Security, AWS Cloud Security - Knowledge of PCI-DSS, HIPPA, SOX, GDPR, and CCPA Standards and Policies and the associated certification and audit processes - Auditing and Compliance Certifications such as...
-
IT Security Officer
2 days ago
Remote, India Brain Quest Consultancy And Training Full timeInvestigating routine security related breeches and incidents. - Reporting on the latest threats and trends to colleagues and other interested parties via internal and external communication. - Monitoring security related tools, resources, equipment, and functions. - Installing \ configuring firewalls, data encryption, Azure Security, and other security...
-
Head of Cybersecurity Compliance
15 hours ago
Remote, India beBeeSecurity Full time ₹ 1,20,00,000 - ₹ 2,00,00,000Job Description:The Sr. Manager, Security Assurance will lead strategic security initiatives to ensure the integrity of sensitive data.This key role requires a comprehensive understanding of regulatory requirements, including HIPAA and GDPR.Lead and manage security assurance programs to ensure compliance with internal and external standards.Oversee and...