PCI Compliance & IT Risk Manager | Night Shift

Avensys Consulting

Philippines

On-site

PHP 1,800,000 - 3,200,000

Full time

3 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Avensys Consulting is seeking a PCI Compliance & IT Risk Manager to lead the PCI Compliance and IT Risk Management team within the Legal group. You will oversee daily operations, manage priorities, and coach team members to strengthen payment security and regulatory compliance across global initiatives.

You'll collaborate with technology and business stakeholders to assess risks, develop controls, and ensure scalable governance.

Qualifications

  • Bachelor’s degree in Information Security, Cybersecurity, Information Technology, Risk Management or related field.
  • 4–6 years of experience in PCI compliance, IT risk management, information security, technology risk, regulatory compliance, audit, governance, or related areas.
  • At least 2 years of experience managing, leading, coaching, or developing team members.
  • Experience supporting risk assessments, control reviews, compliance activities, audits, or governance processes.
  • Strong understanding of risk management principles and internal controls.
  • Excellent written and verbal communication with diverse stakeholders.

Responsibilities

  • Lead and oversee day-to-day activities of the PCI Compliance and IT Risk Management team.
  • Manage team priorities, workloads, and deliverables to ensure on-time, accurate commitments.
  • Provide coaching, guidance, training, and development opportunities to team members.
  • Delegate responsibilities while maintaining oversight and quality standards.
  • Foster a collaborative, accountable, high-performing team culture.
  • Support employee development, performance management, and continuous improvement.
  • Monitor regulatory requirements and emerging risks affecting the business.
  • Identify compliance gaps, assess risks, and elevate significant issues to management.
  • Provide guidance to business and technology teams on compliance considerations.
  • Conduct technology and cybersecurity risk assessments across systems and initiatives.
  • Perform control reviews, risk analysis, and remediation planning.
  • Document risks, controls, remediation activities, and action plans for stakeholders.
  • Prepare risk assessments, reports, and recommendations for management.

Skills

Information security
Cybersecurity
Risk management
Regulatory compliance
Stakeholder management
Communication skills

Education

Bachelor’s degree in Information Security, Cybersecurity, Information Technology, Risk Management

Tools

Microsoft Excel
Microsoft PowerPoint
Office tools

Job description

Make your mark at one of the biggest names in payments. We're looking for a PCI Compliance & IT Risk Manager to join our Legal team and help shape the future of global commerce.

This is an exciting opportunity for an experienced risk, compliance, information security, or IT governance professional who is ready to take on a leadership role in a large-scale global payments environment.

As the PCI Compliance & IT Risk Manager, you will lead the day-to-day operations of the PCI Compliance and IT Risk Management team while helping strengthen the organization's approach to payment security, technology risk, regulatory compliance, and governance.

You'll work closely with global business and technology stakeholders to manage compliance activities, assess and mitigate risks, support strategic initiatives, and ensure the organization continues to operate within an effective and scalable risk and compliance framework.

What You'll Own
  • Lead and oversee the day-to-day activities of the PCI Compliance and IT Risk Management team.
  • Manage team priorities, workloads, and deliverables to ensure commitments are completed accurately and on time.
  • Provide coaching, guidance, training, and development opportunities to team members.
  • Delegate responsibilities effectively while maintaining appropriate oversight and quality standards.
  • Foster a collaborative, accountable, and high-performing team culture.
  • Support employee development, performance management, and continuous improvement across the team.
PCI Compliance & Payment Security
  • Serve as a subject matter resource for PCI compliance and payment security requirements.
  • Monitor relevant regulatory requirements, industry developments, and emerging risks that may impact the business.
  • Support compliance with payment network and card industry requirements, including those of Visa, Mastercard, American Express, and Discover.
  • Identify potential compliance gaps, assess associated risks, and elevate significant issues to management and relevant stakeholders.
  • Provide guidance to business and technology teams on compliance considerations and practical solutions.
  • Support and conduct technology and cybersecurity risk assessments across relevant systems, processes, and initiatives.
  • Perform control reviews, risk analysis, and assessments to identify potential vulnerabilities and areas for improvement.
  • Work with stakeholders to document risks, controls, remediation activities, and action plans.
  • Prepare clear risk assessments, reports, and recommendations for management and key stakeholders.
  • Monitor risk mitigation activities and support the timely resolution of identified issues.
Stakeholder Partnership & Governance
  • Partner with Technology, Information Security, Legal, Compliance, Operations, and other business teams to support risk and compliance initiatives.
  • Help ensure technology and business solutions align with applicable compliance, risk, and business requirements.
  • Facilitate discussions with stakeholders to identify requirements, address risks, and resolve compliance-related issues.
  • Support the development and maintenance of policies, procedures, documentation, and governance processes.
  • Communicate complex compliance and risk matters clearly to both technical and non-technical stakeholders.
What You’ll Bring
  • Bachelor’s degree in Information Security, Cybersecurity, Information Technology, Risk Management, or a related field, or equivalent relevant experience.
  • 4–6 years of experience in PCI compliance, IT risk management, information security, technology risk, regulatory compliance, audit, governance, or related areas.
  • At least 2 years of experience managing, leading, coaching, or developing team members.
  • Experience supporting risk assessments, control reviews, compliance activities, audits, or governance processes.
  • Strong understanding of risk management principles, information security concepts, and internal controls.
  • Strong attention to detail, organizational skills, and the ability to manage multiple priorities in a structured and controlled environment.
  • Strong written and verbal communication skills, including the ability to present information and collaborate effectively with diverse stakeholders.
  • Ability to follow established processes while exercising sound judgement when identifying, escalating, and resolving issues.
  • Demonstrated ownership, execution discipline, and the ability to deliver high-quality work within established timelines.
  • Strong stakeholder management and collaboration skills, particularly within cross‑functional and global environments.
It’s a Bonus If You Have
  • Knowledge of PCI DSS and payment card industry standards.
  • Understanding of payment security requirements and cardholder data protection.
  • Familiarity with information security concepts, including access controls, encryption, identity management, and data protection.
  • Experience with risk and compliance frameworks such as ISO 27001, NIST, COBIT, or similar standards.
  • Experience supporting internal or external audits, evidence collection, compliance assessments, or remediation activities.
  • Experience working with payment networks or within the payments, financial services, fintech, or regulated technology industries.
  • Proficiency in Microsoft Office tools, particularly Excel and PowerPoint.
  • Relevant certifications such as PCI‑P, CRISC, Security+, CISSP, or similar credentials.
What Will Make You Successful

You're a structured and proactive leader who can balance people management with hands‑on risk and compliance responsibilities.

You know how to bring order to complex requirements, identify potential risks before they become bigger problems, and work collaboratively with technical and business stakeholders to find practical solutions.

You're comfortable operating in a global environment where priorities can shift, multiple stakeholders are involved, and clear communication is essential. Most importantly, you take ownership, lead with sound judgement, and help your team deliver consistently high‑quality outcomes.

About the Team

Our inclusive and global teams win together every day. We're proud to have some of the best minds in the industry, creating an environment where you can learn, grow, and build meaningful connections across the organization.

You'll have the opportunity to work at the intersection of payment security, technology risk, regulatory compliance, and global commerce, while leading a team that helps protect and strengthen a large-scale global acquiring business.

The people, the opportunities, and the global connections make this more than just another role. It's a chance to build your leadership career while contributing to an ever‑evolving organization operating at the heart of commerce.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

PCI Compliance & IT Risk Management People Leader
PCI Compliance & IT Risk Management People Leader

Global Payments • Philippines

On-site
PHP 900,000 - 1,300,000
Senior IT Risk Analyst
Senior IT Risk Analyst

Global Payments Inc. • Quezon City

On-site
PHP 900,000 - 1,500,000
Compliance Manager
Compliance Manager

Quantrics Enterprises Inc. • Taytay

On-site
Card Solutions Implementation Lead
Card Solutions Implementation Lead

Mastercard • Philippines

On-site
PHP 1,200,000 - 1,800,000
PCI & IT Risk Management Leader
PCI & IT Risk Management Leader

Global Payments • Philippines

On-site
PHP 900,000 - 1,300,000
InfoSec Framework & Compliance Lead (ISMS/PCI-DSS) | Hybrid
InfoSec Framework & Compliance Lead (ISMS/PCI-DSS) | Hybrid

GCash • Manila

On-site
PHP 1,800,000 - 3,000,000
Risk Controls Business Analyst
Risk Controls Business Analyst

Global Payments Inc. • Quezon City

On-site
PHP 600,000 - 900,000
Manager, Risk Management
Manager, Risk Management

Mastercard • Philippines

On-site
PHP 1,200,000 - 2,400,000
Risk Controls Business Analyst
Risk Controls Business Analyst

Global Payments Process Centre, Inc. • Philippines

On-site
PHP 500,000 - 900,000
Global PCI Compliance & IT Risk Leader
Global PCI Compliance & IT Risk Leader

Avensys Consulting • Philippines

On-site
PHP 1,800,000 - 3,200,000