Enable job alerts via email!

PCI Compliance and Assurance Specialist

JR United Kingdom

City of Edinburgh

On-site

GBP 45,000 - 65,000

Full time

11 days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading fintech company in Edinburgh is seeking a PCI Compliance and Assurance Specialist to manage PCI DSS certification and ensure compliance with security requirements. The ideal candidate will possess strong technical skills and certifications, working collaboratively with various teams to support ISO and SOC certifications while driving security initiatives.

Benefits

Competitive compensation
Flexible work arrangements
Dynamic fintech culture

Qualifications

  • Certifications such as QSA or ISA are desirable.
  • Strong technical background with multiple stakeholder experience.
  • Proven ability to work effectively with senior leadership.

Responsibilities

  • Lead and manage PCI DSS certification process, including evidence collection.
  • Provide consultation on PCI requirements to various teams.
  • Conduct internal assessments, gap analysis, and risk assessments.

Skills

Strong understanding of PCI DSS requirements
Hands-on experience with security controls
Experience with ISO 27001
Strong written and verbal communication
Proactive mindset

Education

Certifications: QSA or ISA desirable
Other security certifications (CISSP, etc.)

Job description

Social network you want to login/join with:

PCI Compliance and Assurance Specialist, edinburgh

col-narrow-left

Client:

Paydock

Location:

edinburgh, United Kingdom

Job Category:

Other

-

EU work permit required:

Yes

col-narrow-right

Job Views:

3

Posted:

31.05.2025

Expiry Date:

15.07.2025

col-wide

Job Description:

DISCLAIMER: Applicants please apply direct to this post. We are not accepting resumes from agencies.

About Paydock

Paydock is a cutting-edge fintech company revolutionising the payments ecosystem. We enable businesses and financial institutions to streamline their payment operations, improve efficiency, and drive revenue growth through our innovative payment orchestration platform. As we expand our collaboration with financial institutions to deliver industry-leading financial products, we are seeking a Senior Client Executive to deepen our client relationships and accelerate the expansion of our market-leading product.

About the Role

We are seeking a PCI Compliance and Assurance Specialist to lead and manage our PCI DSS certification process, ensuring compliance with regulatory requirements and maintaining security controls throughout the year.

This role will be responsible for collecting evidence, assessing controls, and preparing for audits while also providing consultation on PCI requirements to Engineering, SecOps, and Architecture teams. Additionally, the role will support ISO 27001, SOC 2 Type 2, and other certification audits, assist with security assurance activities such as design reviews and client security questions, and collaborate with internal and external stakeholders to ensure compliance across the business.

The ideal candidate will have a strong technical background and experience working with multiple levels of stakeholders. A qualification as an ISA or QSA is desirable and would be beneficial in this role.

Report

The role will report into the Head of Information Security, Risk and Compliance

Responsibilities

  • Lead and manage the annual PCI DSS certification process, including preparation, evidence collection, and assessments.
  • Act as the primary point of contact for all PCI-related matters, working closely with both internal teams and external assessors.
  • Monitor and assess PCI DSS controls and requirements, ensuring they are effectively implemented and maintained throughout the year.
  • Work with Engineering, SecOps, and Architecture teams to provide PCI consultation and ensure security-by-design principles are followed.
  • Conduct internal PCI assessments, gap analysis, and risk assessments to identify areas of improvement.
  • Stay up to date with PCI DSS standard updates and ensure timely adaptation of new requirements.
  • Manage and support ISO 27001 and SOC 2 Type 2 certification processes, ensuring evidence gathering, control validation, and audit preparation.
  • Assist in responding to client security questionnaires and third-party risk assessments, design reviews, and due diligence requests related to security and compliance.
  • Collaborate with internal teams to ensure alignment between business operations and compliance obligations.
  • Provide ongoing assurance to the business regarding security controls and regulatory compliance.

Skills and Experience:

  • Certifications: QSA (Qualified Security Assessor) or ISA (Internal Security Assessor) desirable but not required. Other security certifications such as CISSP, CISM, CISA, or CRISC are advantageous.
  • Strong understanding of PCI DSS requirements, controls, and assessment processes.
  • Hands-on experience with security controls, cloud environments, and security architecture.
  • Experience with ISO 27001, SOC 2 Type 2, or other security frameworks.
  • Proven ability to work effectively with senior leadership, auditors, external partners, and cross-functional teams.
  • Experience with design reviews, risk assessments, and security best practices.
  • Strong written and verbal communication skills to effectively articulate compliance requirements and security risks.
  • Proactive mindset with the ability to identify gaps, drive remediation efforts, and enhance compliance posture.

Why Join Paydock?

  • Be part of a fast-growing, dynamic fintech space, innovating payment solutions with global banks.
  • Solve complex, innovative challenges in partnership with global teams
  • Enjoy a flexible and dynamic culture at Paydock, where collaboration across teams creates a varied and engaging workday.
  • Work closely with leading financial institutions on cutting-edge products.
  • Opportunity to own the product marketing strategy for high-impact product launches.
  • Competitive compensation, flexible work arrangements, and a collaborative culture.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.