PCI QSA DSS Security Assessor
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
- PCI DSS Consulting & Assessment (Core Function)
Lead end-to-end PCI DSS compliance engagements, including:
Gap assessments and readiness assessments
Formal audits and validation activities
Conduct PCI DSS assessments and produce:
Reports on Compliance (RoC)
Attestations of Compliance (AoC)
Advise clients on:
PCI DSS scoping and segmentation strategies
Compensating controls and requirement interpretation
Perform impact assessments for PCI DSS version upgrades, including:
Resource planning (people, tools, time)
Required architecture and system changes
- GRC & Security Framework Assessments
Conduct compliance and maturity assessments across frameworks such as
Requirements
Experienced PCI Qualified Security Assessor (QSA) Consultant to lead and deliver end-to-end Payment Card Industry (PCI DSS) advisory, assessment, and validation services.
This role focuses on guiding clients through PCI DSS compliance journeys, conducting formal validations (RoC/AoC), and providing strategic security advisory across GRC, application security, and cloud risk domains.
The ideal candidate will bring deep expertise in PCI DSS standards, audit execution, compliance strategy, and executive advisory, with the ability to translate regulatory requirements into actionable security and business outcomes.
keywords
PCI DSS Consulting & Assessment.
GRC & Security Framework Assessments
Preferred Skills : Proven experience as a PCI QSA (Qualified Security Assessor)
Must Have*
Strong working knowledge of:
PCI DSS requirements (v3.x and v4.0)
Benefits & conditions
$70 - $75 an hour - Contract
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.indeed.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
7 Cloud Computing Trends Coming in 2025 for Developers
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Understanding and Mitigating Common Web Vulnerabilities
Why Upskilling And Reskilling is Important For Developers