PCI Compliance Analyst / Consultant
100% remote
$75.00-80.00 w2
$85.00 C/C
6-12 month contract
*** you will receive an encryption key card- No laptop will be supplied***
Overview:
Provide remote daily staff augmentation for the PCI ASV Analyst consultant role to the client. As a PCI ASV Analyst Consultant, you will be assigned to multiple customer-engaging efforts related to clients status as a PCI Approved Scanning Vendor. He or she will be responsible for assisting in the development, implementation, and maintenance of our company''s PCI DSS compliance program. You will work closely with cross-functional teams, including IT Networking, IT Service Desk, Cyber Security and Business Operations, to identify potential risks, assess controls, and ensure adherence to the current PCI DSS requirements. Your expertise will contribute to the protection of sensitive payment card data and the overall security posture of our organization.
Responsibilities:
1. Must have 5+ years of experience in security or compliance consulting or advisory work in in support of a highly technical environment.
2. Must have 5+ years of experience in performing and/or participating in technical assessments in direct support of PCI DSS standardization such as:
a. Reviews scans submitted through PCI Scanning Service for attestation.
b. Research validity of customer-submitted scan disputes through the review of all required evidence, independent analysis, and recreating specific scenarios in a lab environment
c. Help customers navigate the PCI ASV scan submission process.
d. Identify areas of workflow and process improvements within the PCI ASV duties
e. Maintain PCI ASV certification
3. Should have prior experience partnering with security teams to identify and analyze security requirements to align with PCI ASV compliance standards.
4. Should have prior experience ensuring ASV Scans and Pentesting are conducted quarterly and annually, respectively with all remediation activities being completed within expected timelines.
5. Educate and build awareness of PCI DSS compliance requirements.
6. Professional certification (CISSP, CISA, CSIM, CIA or similar) is highly desired.