PCI Internal Security Assessor

2 weeks ago


Saint John's Antigua and Barbuda, Canada thehivecareers Full time


Job Description: PCI Internal Security Assessor (ISA)

Department: Enterprise Security & Technology Risk Management Location: Regionwide

Reports To: Chief Information Security Officer (CISO) 

Employment Type: Full-time

Job Overview

The PCI Internal Security Assessor (ISA) is responsible for ensuring that our client from banking industry complies with the Payment Card Industry Data Security Standard (PCI DSS). The ISA will assess, monitor, and enforce the security measures necessary to protect cardholder data and maintain PCI compliance across all systems and processes. This role works closely with internal stakeholders and external parties to maintain a secure environment, mitigate risks, and improve overall security posture.

Key Responsibilities:
  • PCI DSS Compliance Management:
    • Conduct regular internal assessments and audits to ensure the organization's compliance with PCI DSS.

Develop and implement PCI compliance policies, procedures, and controls.

  • Serve as the internal point of contact for PCI DSS-related matters and ensure all applicable security controls are in place.
  • Collaborate with the external Qualified Security Assessor (QSA) to facilitate annual PCI DSS certification audits.

Documentation and Reporting:

  • Prepare and maintain comprehensive documentation, including policies, procedures, and reports required for PCI DSS compliance.
  • Maintain comprehensive documentation of assessment findings, corrective actions, and compliance status.
  • Manage the submission of the Self-Assessment Questionnaires (SAQs) and Attestation of Compliance documents (AOCs) as needed.
Qualifications:

Education:

  • Bachelor's degree in Information Security, Computer Science, or a related field (or

equivalent work experience).

  • Experience:
    • Minimum of 3-5 years of experience in information security, PCI compliance, or a related field.
    • Previous experience as an ISA, QSA, or a similar role is highly desirable.
  • Certifications:
    • Certified PCI Internal Security Assessor (ISA) or Certified PCI Professional (PCIP) certifications preferred.

Additional certifications such as CISSP, CISM, CISA, or CEH are a plus.

  • Skills and Competencies:
    • Deep understanding of PCI DSS requirements and data security best practices.
    • Familiarity with security frameworks (NIST, ISO 27001, CIS Controls) and security technologies (firewalls, IDS/IPS, encryption, etc.).
    • Strong analytical, problem-solving, and project management skills.
    • Excellent communication and interpersonal skills with the ability to work cross- functionally.
    • Proficiency in using security assessment tools and techniques (e.g., vulnerability scanners, SIEM).
Other Requirements:

Ability to work independently and handle sensitive information confidentially.

  • Detail-oriented with strong organizational skills.
  • Occasional travel may be required for audits or compliance reviews.
Risk Assessment and Mitigation:
  • Identify and assess potential risks to cardholder data environments and provide recommendations for risk mitigation.
  • Implement and enforce necessary security controls to address gaps identified during assessments.
  • Ensure vulnerability scanning, penetration testing, and security reviews are conducted to identify weaknesses and ensure continuous compliance.
Training and Awareness:
  • Conduct internal PCI DSS training for staff to ensure a deep understanding of the importance of compliance and security measures.
  • Provide ongoing guidance and support to departments regarding security best practices related to PCI DSS.
Collaboration and Communication:
  • Work closely with projects, Enterprise Security, Technology, and other relevant departments to align PCI DSS compliance with overall security policies and practices.
  • Proactively identify and/or promptly escalate risks and issues affecting PCI compliance status.
  • Stay updated on changes in PCI DSS requirements and industry best practices to ensure our client from banking industry remains compliant.
  • Present PCI DSS compliance status reports to senior management and external stakeholders.
  • Act as a liaison where necessary between our client from banking industry and external vendors or service providers involved in processing or storing cardholder data.


  • Senior Assessor

    2 days ago


    St. John's, NL AC J, Canada City of St. John's Full time

    Senior AssessorJob Number:J Position Title:Senior AssessorDepartment:Finance And Corporate ServicesAppointment Status:Full-Time PermanentEmployee Group:CUPE 1289Job Category:AssessmentCompensation:$56.34/HourClosing Date:January 7, 2026Our City, Our FutureSt. John's is a progressive city with a strong connection to the past and a positive outlook on the...

  • Security Officers

    2 weeks ago


    St. John's, Newfoundland and Labrador, Canada Paladin Security Full time

    Overview Job Skills / RequirementsSite Description:Newfoundland and Labrador's primary and most advanced container terminal. St. John's Port Authority is the primary offshore energy supply and service centre and a destination of choice for the cruise ship industry. The Port of St. John's has evolved to become a strategic transportation hub and a powerful...

  • Security Officers

    2 hours ago


    St. John's, Newfoundland and Labrador, Canada Paladin Security Full time

    Overview Job Skills / RequirementsSite Description:Newfoundland and Labrador's primary and most advanced container terminal. St. John's Port Authority is the primary offshore energy supply and service centre and a destination of choice for the cruise ship industry. The Port of St. John's has evolved to become a strategic transportation hub and a powerful...


  • St. John's, Newfoundland and Labrador, Canada Paladin Security Full time

    Overview Job Skills / RequirementsSite Description:Reporting to the Security Operations Lead, the Mobile Officer is integral to the functioning of Paladins field operations and business continuity. In this dynamic role, officers are required to have superior time management and multitasking skills, as well as a propensity for a high level of customer...


  • St. John's, Newfoundland and Labrador, Canada Paladin Security Full time

    Overview Job Skills / RequirementsSite Description:Reporting to the Security Operations Lead, the Mobile Officer is integral to the functioning of Paladins field operations and business continuity. In this dynamic role, officers are required to have superior time management and multitasking skills, as well as a propensity for a high level of customer...


  • St. John's, Newfoundland and Labrador, Canada Paladin Security Full time

    Overview Job Skills / RequirementsSite Description:Reporting to the Security Operations Lead, the Mobile Officer is integral to the functioning of Paladins field operations and business continuity. In this dynamic role, officers are required to have superior time management and multitasking skills, as well as a propensity for a high level of customer...


  • St. John's, Newfoundland and Labrador, Canada Paladin Security Full time

    Overview Job Skills / RequirementsSite Description:Reporting to the Security Operations Lead, the Mobile Officer is integral to the functioning of Paladins field operations and business continuity. In this dynamic role, officers are required to have superior time management and multitasking skills, as well as a propensity for a high level of customer...


  • St. John's, Newfoundland and Labrador, Canada Paladin Security Full time

    Overview Job Skills / RequirementsSite Description:The Health Sciences Centre in St. John's, NL, is a tertiary acute care facility serving the province and is a teaching hospital affiliated with Memorial University. It provides a wide range of services, including specialized treatments, emergency care, cancer care, mental health services, rehabilitation, and...


  • St. John's, Newfoundland and Labrador, Canada Paladin Security Full time

    Overview Job Skills / RequirementsSite Description:When Saint Luke's Homes opened on June 17, 1965, the complex was comprised of the main building for ambulatory residents needing special care, and 48 one-bedroom cottages. Since then, the Saint Luke's community has undergone tremendous changes, growing to support an Adult Outreach (Day) Program for people...


  • St. John's, Canada Professional Engineers and Geoscientists Newfoundland and Labrador (PEGNL) Full time

    Jump Recruitment Specialists has partnered with Professional Engineers and Geoscientists Newfoundland and Labrador (PEGNL) in their search for an International Registration Coordinator (12 month contract), reporting to their St. John’s, NL office.The International Registration Coordinator will report directly to the Director, Registration. They will be...