Join to apply for the Senior Security Consultant (QSA) role at Integrity.
Location: Johannesburg or Cape Town, South Africa
Job type: Full-Time Permanent
About Us
Integrity is one of Europe's leading cyber security specialists operating from office locations across Europe, providing a comprehensive range of professional, support and managed cyber security services for our + clients.
Our services include Managed Security, Cyber Security Testing, Incident Response, Security Integration, PCI Compliance and Cyber Risk & Assurance services.
Job Role
The Senior QSA Consultant will lead security consultancy engagements and pre-sales processes with clients within financial services and payment card industries.
Focusing on delivery of Payment Compliance services, which include but are not limited to:
- PCI DSS
- Swift
- PSD2 assessments
- GAP Analysis
- Policy and Procedure review
Primary Duties / Responsibilities
- Starting from the information received from the sales team, independently carry out the estimate of the effort required to deliver a security service, reporting the result to the regional lead for approval.
- Lead customer engagements and provide senior cyber security advice and services to a broad range of clients and industries.
- Provide detailed analytical reporting, internal reporting metrics and program management.
- Provide leadership and mentorship to Junior consultants.
- Prepare, organize and support delivery by team members of engagements offsite or at customer premises including but not limited to gap analysis, security assessment, risk and/or compliance assessment using one or more industry or regulatory standard or framework.
- Assess compliance related documentation including policies, procedures, standards and legislative directives.
- Provide remediation support and guidance on the security aspects of the administration and maintenance of processes & documentation, infrastructure components, applications, services and security systems.
- Deliver detailed reports following Integrity's reporting best practice and templates.
- Ensure QA process for Payments Compliance standards is initiated and applied for relevant projects, in cooperation with QA and Backoffice team.
- Establish new standards and review existing documentation to ensure the correct application of the processes.
- In cooperation with Practice Lead(s), estimate, plan & monitor team budget.
- Provide regular status updates to internal stakeholders (Practice Lead(s), PMO).
- Participate in continuous improvement of internal processes (reporting tools, assessment automation etc.).
Communication
- Participate in external conferences and promote Integrity by identifying important Industry events.
- Support marketing activities related to existing Professional Service portfolio and customer acquisition working in collaboration with marketing team.
- Act as a communication point between regional team, other professional services teams, Customer Success and other departments.
- Support sales team in development and effort estimations for new opportunities (e.g. new and evolving industry standards).
- Stay up-to-date on developments in the Payments Compliance realm, understanding new standards and regulations and their impact on Integrity.
Required Skills
- Relevant Experience in Fintech industry and security standards & directives consultancy services (PCI DSS, PSD2, ISO, SWIFT, etc.).
- Cryptography techniques including algorithms, key management, and key lifecycle.
- Public key infrastructure (PKI) and the role and operations of a Certification Authority (CA) and Registration Authority (RA).
- Hardware security modules (HSMs) operations, policies, and procedures.
- POI key-injection systems and techniques including key-loading devices (KLDs) and key management methods, such as Master / Session or DUKPT.
- Physical security techniques for high-security areas.
- Authentication methods and techniques.
- Security Integrity controls.
- Computer Networking (routing, switching, firewall network filtering).
- Operating Systems hardening and administration (Linux / Unix, Windows).
Core Competencies
- Planning and Organization (time management, scheduling and control).
- Networking (reinforce relationships, use emotional intelligence and personal proximity).
- Results Orientation (delivering solutions, work under pressures).
- Leading and Empowering People (self-confidence, establishing focus, providing motivational support and feedback, fostering teamwork and integration).
- Economic Sensitivity (Economic variables evaluation, Profit & Loss dynamics).
Certifications / Qualifications
Qualified Security Assessor (QSA) is a must.
Seniority level: Mid-Senior level
Employment type: Full-time
Job function: Information Technology
Industries: IT Services and IT Consulting