
Security Consultant, PCI QSA
Posted Jun 17

Posted Jun 17
This is a fully remote position, open to applicants in United Kingdom.
• The Security Consultant (PCI QSA) will oversee security consultancy and assessment projects and pre-sales activities with clients in the financial services and payment card sectors.
• This role emphasizes the delivery of Payment Compliance services, which encompass but are not limited to: PCI data security standard evaluations, assistance in PCI Specialized assessments (such as PCI PIN, PCI P2PE, etc.), SWIFT Gap Analysis, reviewing policies and procedures, and offering advisory support for audit preparation and remediation.
• Pre-Sales: Independently assess the effort needed to provide a security service, communicating the findings to the regional lead for approval.
• Direct customer interactions and deliver expert cyber security advice and services.
• Generate comprehensive analytical reports, internal reporting metrics, and manage programs.
• Offer leadership and mentorship to junior consultants.
• Prepare, organize, and assist in the delivery of engagements by team members both onsite and offsite.
• Evaluate compliance-related documentation, including policies, procedures, standards, and legislative directives.
• Provide support and guidance for remediation concerning security aspects of administration and maintenance of processes and documentation.
• Produce detailed reports adhering to Integrity360’s reporting best practices and templates.
• Ensure the QA process for Payments Compliance standards is implemented and maintained for relevant projects.
• Establish new standards and review existing documentation to ensure proper application of processes.
• Provide regular status updates to internal stakeholders.
• Relevant experience in the Fintech industry and consultancy services related to security standards and directives (e.g., PCI DSS, PSD2, ISO 27001, SWIFT, etc.).
• Proficient in cryptographic techniques, including algorithms, key management, and key lifecycle.
• Knowledge of physical security techniques for high-security areas.
• Familiarity with authentication methods and techniques.
• Understanding of security integrity controls.
• Expertise in computer networking (routing, switching, firewall network filtering).
• Competence in operating systems hardening and administration (Linux/Unix, Windows).
• Knowledge of public key infrastructure (PKI) and the roles and operations of a Certification Authority (CA) and Registration Authority (RA).
• Experience with hardware security modules (HSMs) operations, policies, and procedures.
• Familiarity with POI key-injection systems and techniques, including key-loading devices (KLDs) and key management methods, such as Master/Session or DUKPT.
• Opportunities for professional development.
• Options for remote work.
actago GmbH
Zscaler
Thomson Reuters
DSV - Global Transport and Logistics
Get handpicked remote jobs straight to your inbox weekly.