PCI-DSS Consultant

Riskpro India Ventures

Bengaluru

On-site

INR 1,000,000 - 1,500,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

A specialized Risk Management consulting firm in Bengaluru is seeking an Information Security professional with 2-5 years of experience. The role involves assessing IT architecture for PCI compliance, conducting risk assessments, and managing vendor risk. Candidates should have a strong background in information security, knowledge of PCI DSS standards, and experience in the banking or payment sector. Ideal for those with strong communication skills and technical documentation capabilities. Competitive salary and benefits offered.

Qualifications

  • 2 - 5 years of experience in Information Security and Compliance.
  • Good understanding of PCI DSS Standard and various compliance.
  • Hands-on experience with audits like ISO 27001, NIST Risk framework.

Responsibilities

  • Assess IT architecture solutions for PCI risk areas.
  • Validate network architecture against PCI control requirements.
  • Conduct PCI DSS scoping engagements and assessments.

Skills

Experience in Information Security and Compliance
Technology Risk Assessment Frameworks
PCI DSS Standard
Experience in Banking or Payment sector
Vendor Risk Assessment
Excellent written and oral communication

Education

Bachelor of Technology (BE/B. Tech)
Information Security Certifications (CISA, CISM, CISSP)

Job description

Qualifications
  • 2 - 5 years of experience in Information Security and Compliance in medium to large-sized companies.
  • Good Understanding of Technology Risk Assessment Frameworks and Application risk Assessment.
  • Good Understanding and hands on experience on PCI DSS Standard and various PCI compliance is must.
  • Experience of working in the Banking or Payment sector is preferred.
  • Hands‑on experience with various Audits and Standards Such as ISMS, SSAE 18, ISO 27001, ISO 31000, ISO 22301, CSA Star, NIST Risk framework, PCI DSS, PCI 3DS, PCI PA‑DSS/SSF, PCI S3 etc.
  • Experience of Vendor Risk Assessment and responding to client Request for Proposal (RFP). Excellent written and oral communication and penchant for technical documentation
  • Bachelor of Technology (BE/ B. Tech) or ME in Computer Science, MCA or equivalent.
  • Good to have Information Security Certifications like CISA, CISM, CISSP etc.
Responsibilities
  • Work with internal and external stakeholders to assess the IT architecture or proposed IT architecture solutions to identify the risk areas with regards to PCI controls.
  • Assess the network architecture and or reviews the Firewall rulesets, Network devices/appliances to see if they are aligned with the PCI control requirements and recommends compensatory controls where necessary.
  • Execute operational activities to support audit and compliance activities including technical validation processes.
  • Conduct PCI DSS scoping engagements, gap analysis and assessments related to securing the Cardholder Data Environment.
  • Effectively multi‑tasks on multiple assignments and deliverables.
  • Actively accepts individual and team responsibilities to meet commitments. Takes responsibility for own performance and actions and demonstrates responsibility and teamwork towards overall team/department goals.
  • Discuss the SOP document with all relevant stakeholders – right from process owner to the BU functional heads. Detailed understanding of SOC reports (SOC2, Type 1, 2), ISMS reports and ability to relate the IT General Controls, IT Application Controls, Cyber Controls to the SOC framework.
  • Develop and Maintain Vendor Risk Management /Third Party Risk Management Program including Vendor Onboarding Audit, Periodic Vendor Assessment, Maintain TPRM Database.
  • Review and implement controls and policies as per RBI and other regulatory requirements. Maintain ISMS framework, evaluate effectiveness of implemented controls and provides recommendations for improvement.
  • Facilitate Client Due‑Diligence in collaboration with Business.
  • Develop and Maintain Enterprise Risk Assessment framework.
  • Perform Internal Assessment against various Standards to ensure the established policies are being followed and prepare internal reports.
  • Contract review and providing responses to client Request for Proposal (RFP)
Next Steps

If you are interested in this role, please email your latest profile/ resume, your current salary and expected salary to neha.acharekar@riskpro.in

About Riskpro

Riskpro India is a specialized Risk Management consulting company. It is managed by experienced professionals with experiences across various industries. With offices in Mumbai, Delhi, Bangalore, Chennai, Pune and Kolkata, we are one of the fastest growing risk consulting firms in India. We are since 12+ years in business, serviced 850+ clients in 7+ cities with 500+ cities associate representation, 90+ team members with 10 Strategic partners.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

GRC Manager/ GRC Lead
GRC Manager/ GRC Lead

Riskpro India Ventures • Mumbai

On-site
INR 1,000,000 - 1,500,000
Technical Lead
Technical Lead

The Hartford India • Hyderabad

On-site
INR 1,500,000 - 2,000,000
Competitive salary
Comprehensive benefits
Continuous learning opportunities
+1
IT Audit
IT Audit

Riskpro India Ventures • India

On-site
INR 600,000 - 1,200,000
Infosec GRC Associate II
Infosec GRC Associate II

Zeta • Bengaluru

On-site
INR 800,000 - 1,200,000
Information Risk Manager
Information Risk Manager

Kotak Mahindra Bank • Mumbai

On-site
INR 2,000,000 - 4,000,000
Information Security Risk Manager
Information Security Risk Manager

Riskpro India Ventures • Bengaluru

Hybrid
INR 1,200,000 - 2,000,000
Cybersecurity GRC Consultant(PCI DSS)
Cybersecurity GRC Consultant(PCI DSS)

Atos SE • Mumbai

On-site
INR 1,500,000 - 2,200,000
Cybersecurity GRC Consultant PCI DSS
Cybersecurity GRC Consultant PCI DSS

Atos Information Technology GmbH • Navi Mumbai

On-site
INR 1,800,000 - 3,000,000
PCI DSS Auditor
PCI DSS Auditor

Keka Technologies • Bengaluru

On-site
INR 1,500,000 - 2,300,000
Senior Security GRC Analyst
Senior Security GRC Analyst

Kite • Gurugram District

On-site
INR 1,500,000 - 2,300,000