Description We are seeking an experienced
PCI Technical Engineer to help build, strengthen, and automate a PCI DSS compliance program within a highly regulated financial services environment.
This is a hands-on role for someone who understands PCI DSS at a deep level and has
built and matured a PCI program from the ground up. The ideal candidate will have experience defining PCI scope and boundaries, understanding the Cardholder Data Environment (CDE), establishing and validating controls, supporting audits, remediating findings, and continuously improving the program.
This role is also focused on
automation and process improvement. We are looking for someone who is a creator and problem solver-someone who sees a manual process and asks,
"How can we make this better and automate it?"What You'll Do
- Build, implement, and mature PCI DSS compliance programs from the ground up.
- Define and maintain PCI scope and boundaries, including identifying systems, applications, networks, processes, and people that fall within PCI requirements.
- Develop a strong understanding of the Cardholder Data Environment (CDE) and how payment card data moves through the environment.
- Establish, document, and validate technical and administrative controls required for PCI DSS compliance.
- Lead PCI audit preparation, evidence gathering, auditor coordination, remediation, and ongoing compliance activities.
- Gather and validate technical artifacts and evidence required to demonstrate compliance.
- Identify control gaps and partner with technical teams to develop and implement remediation plans.
- Continuously assess and mature the PCI program as the technology environment and business requirements evolve.
- Automate PCI evidence collection, control validation, reporting, and other repetitive compliance processes.
- Identify opportunities to automate manual GRC and Information Security processes beyond PCI.
- Develop repeatable processes and solutions that improve efficiency, accuracy, and audit readiness.
- Support internal audits and financial services regulatory examinations.
- Document technical processes and controls in a clear and accurate manner.
- Develop metrics and reporting that communicate compliance, control effectiveness, risk, and remediation status to leadership.
- Partner with Information Security, Infrastructure, Application, Risk, Audit, and other technical teams.
- Help establish and maintain security policies, standards, procedures, and controls related to PCI and Information Security.
Requirements What We're Looking For
- 5-8+ years of experience in PCI DSS, Information Security, GRC, IT Audit, Security Engineering, or a related discipline.
- Deep, hands-on PCI DSS expertise.
- Proven experience building a PCI compliance program from the ground up, rather than simply participating in an existing program.
- Experience defining PCI scope, boundaries, and the Cardholder Data Environment (CDE).
- Experience taking a PCI program through implementation, audit, remediation, and ongoing maturity.
- Strong understanding of security controls, control testing, evidence requirements, and audit processes.
- Experience gathering and validating technical artifacts for PCI audits and compliance requirements.
- Demonstrated ability to identify manual or inefficient processes and design and implement automation.
- Experience with GRC platforms such as ServiceNow IRM or LogicGate preferred.
- Understanding of security frameworks such as NIST, COBIT, MAR, and/or ISO 27001.
- Financial services or banking experience strongly preferred.
- Strong analytical and problem-solving skills with exceptional attention to detail.
- Ability to communicate complex technical and compliance requirements to both technical and non-technical stakeholders.
- Ability to work independently and take ownership of building solutions rather than simply maintaining existing processes.
- One or more of the following certifications preferred/required: CISSP, CISM, CRISC, CISA, or PCI-related certification.
- Bachelor's degree in Information Security, Computer Science, Risk Management, or a related field preferred.
Technology Doesn't Change the World, People Do.
Robert Half is the world's first and largest specialized talent solutions firm that connects highly qualified job seekers to opportunities at great companies. We offer contract, temporary and permanent placement solutions for finance and accounting, technology, marketing and creative, legal, and administrative and customer support roles.
Robert Half works to put you in the best position to succeed. We provide access to top jobs, competitive compensation and benefits, and free online training. Stay on top of every opportunity - whenever you choose - even on the go. Download the Robert Half app and get 1-tap apply, notifications of AI-matched jobs, and much more.
All applicants applying for U.S. job openings must be legally authorized to work in the United States. Benefits are available to contract/temporary professionals, including medical, vision, dental, and life and disability insurance. Hired contract/temporary professionals are also eligible to enroll in our company 401(k) plan. Visit roberthalf.gobenefits.net for more information.
2025 Robert Half. An Equal Opportunity Employer. M/F/Disability/Veterans. By clicking "Apply Now," you're agreeing to Robert Half's Terms of Use and Privacy Notice.