Payment Security- PCI DSS

Sisainfosec

Mumbai

On-site

INR 1,800,000 - 2,400,000

Full time

13 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Sisainfosec in Mumbai, India, seeks a knowledgeable PCI DSS Auditor to plan, execute, and manage audits ensuring PCI DSS compliance. The role requires in-depth PCI DSS v4.0 knowledge and IT security expertise, with cross-department collaboration to gather evidence and validate compliance.

The ideal candidate will have 3–4 years in IT auditing or security assessment and experience coordinating with QSAs for PCI validation.

Qualifications

  • Bachelor’s degree in Information Security, Computer Science, Information Systems, or related field.
  • Minimum of 3–4 years of experience in IT auditing, security assessment, or compliance.
  • In-depth knowledge of PCI DSS v4.0 and prior PCI audit experience.
  • Familiarity with information security frameworks (NIST, ISO 27001).
  • Strong understanding of network security, encryption, access control, and vulnerability management.

Responsibilities

  • Plan, coordinate, and perform internal and external PCI DSS assessments.
  • Conduct risk assessments and gap analyses against PCI DSS requirements.
  • Work with stakeholders across departments to gather evidence and validate compliance.
  • Identify areas of non-compliance and develop recommendations for remediation.
  • Prepare formal audit reports and present findings to management.
  • Liaise with QSAs and support formal PCI DSS validation efforts.
  • Maintain documentation of security policies, procedures, and controls as they relate to PCI DSS.
  • Monitor changes to PCI DSS and related regulations to ensure ongoing compliance.
  • Provide training and guidance to internal teams on PCI DSS requirements and best practices.
  • Assist in the remediation of audit findings and track progress until closure.

Skills

PCI DSS
IT Auditing
Risk Assessment
NIST
ISO 27001
Network Security
Encryption
Access Control
Vulnerability Management
Regulatory Compliance

Education

Bachelor's degree in Information Security/CS/IS

Tools

GRC platforms
Audit tools
Compliance tracking systems

Job description

We are seeking a knowledgeable and detail-oriented PCI DSS Auditor to join our compliance and information security team. The auditor will be responsible for planning, executing, and managing audits to ensure compliance with the Payment Card Industry Data Security Standard (PCI DSS). The ideal candidate will have deep knowledge of PCI DSS requirements and a strong background in IT security, risk management, and regulatory compliance.

Key Responsibilities:
  • Plan, coordinate, and perform internal and external PCI DSS assessments.
  • Conduct risk assessments and gap analyses against PCI DSS requirements.
  • Work with stakeholders across departments to gather evidence and validate compliance.
  • Identify areas of non-compliance and develop recommendations for remediation.
  • Prepare formal audit reports and present findings to management.
  • Liaise with Qualified Security Assessors (QSAs) and support formal PCI DSS validation efforts.
  • Maintain documentation of security policies, procedures, and controls as they relate to PCI DSS.
  • Monitor changes to PCI DSS and related regulations to ensure ongoing compliance.
  • Provide training and guidance to internal teams on PCI DSS requirements and best practices.
  • Assist in the remediation of audit findings and track progress until closure.
Required Qualifications:
  • Bachelor’s degree in Information Security, Computer Science, Information Systems, or related field.
  • Minimum of 3–4 years of experience in IT auditing, security assessment, or compliance.
  • In-depth knowledge of PCI DSS v4.0 and prior experience conducting PCI audits.
  • Familiarity with information security frameworks (e.g., NIST, ISO 27001).
  • Strong understanding of network security, encryption, access control, and vulnerability management.
Preferred Qualifications:
  • Certification such as PCI ISA, PCI QSA, CISA, CISSP, or CISM.
  • Experience working in regulated industries (e.g., finance, healthcare, e-commerce).
  • Experience with audit tools, GRC platforms, or compliance tracking systems.
  • Excellent verbal and written communication skills.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Payment Security- PCI DSS
Payment Security- PCI DSS

SISA • Mumbai

On-site
INR 1,200,000 - 1,800,000
PCI DSS Auditor
PCI DSS Auditor

Sisainfosec • Bengaluru

On-site
INR 900,000 - 1,500,000
PCI DSS Auditor
PCI DSS Auditor

SISA • Bengaluru

On-site
INR 1,400,000 - 1,800,000
Senior Consultant
Senior Consultant

Sisainfosec • Bengaluru

On-site
INR 1,200,000 - 2,000,000
PCI DSS Auditor
PCI DSS Auditor

Keka Technologies • Bengaluru

On-site
INR 1,500,000 - 2,300,000
Technical Lead
Technical Lead

The Hartford India • Hyderabad

On-site
INR 1,500,000 - 2,000,000
Competitive salary
Comprehensive benefits
Continuous learning opportunities
+1
Qualified PIN Assessor (PCI QPA)
Qualified PIN Assessor (PCI QPA)

CyberCube Services • Gurugram District

Hybrid
INR 3,000,000 - 4,600,000
Flexible working arrangements
Health benefits
Learning & development
Cybersecurity GRC Consultant(PCI DSS)
Cybersecurity GRC Consultant(PCI DSS)

Atos SE • Mumbai

On-site
INR 1,500,000 - 2,200,000
Looking for PCI DSS Qualified Security Assessor (QSA) Consultant (Exp – 10+ years, CTC up to [...]
Looking for PCI DSS Qualified Security Assessor (QSA) Consultant (Exp – 10+ years, CTC up to [...]

Rankskills Knowledge International Pvt Ltd • Mumbai

On-site
INR 2,000,000 - 2,300,000
Infosec GRC Associate II
Infosec GRC Associate II

Zeta • Bengaluru

On-site
INR 800,000 - 1,200,000