PCI DSS QSA (Senior Consultant)

PCI DSS QSA (Senior Consultant)

Full-Time 60000 - 80000 € / year (est.) Home office (partial)
NCC Group

At a Glance

  • Tasks: Lead PCI DSS assessments and provide expert advice to clients on cyber security.
  • Company: Join a leading Information Assurance consultancy with a focus on innovation.
  • Benefits: Enjoy flexible working, generous holiday, and community volunteering opportunities.
  • Other info: Dynamic team environment with excellent career growth and mentoring opportunities.
  • Why this job: Make a real impact in the cyber security field while developing your skills.
  • Qualifications: Must hold PCI QSA qualification and have experience in cyber security consulting.

The predicted salary is between 60000 - 80000 € per year.

NCC Group provides Information Assurance consultancy to help businesses protect critical systems and information. We define security strategies, develop policies, conduct security maturity and risk assessments, architecture reviews and deliver security awareness & training. We also provide security expertise to businesses to provide an on-demand cyber capability in the short, medium or long term to solve pressing business cyber oriented problems and challenges.

Core Services

  • Strategy and governance
  • On-demand augmentation roles
  • Data discovery and mapping
  • Risk advisory and assurance
  • Business resilience
  • Data privacy and GDPR
  • ISO 27001 assessments
  • Supply chain assurance
  • PCI 3DS, PCI P2PE, PCI SSF audits
  • Incident response readiness and planning
  • Card production and PIN audits
  • Cyber maturity assessments
  • Incident response planning
  • Gold/Silver/Bronze tabletops

The role is within our UK Consulting and Implementation division for a Senior Consultant operating as a Qualified Security Assessor (QSA). The ideal candidate will have prior extensive PCI consulting experience and commercial exposure within the cyber and payments space, gained from delivering a diverse range of cyber and assurance services across a broad client base. Additional technical and client facing skills are required.

Key Responsibilities

  • Build and maintain sustainable trusted client relationships through high‑quality delivery, ensuring output exceeds client expectations.
  • Conduct onsite and remote activities to advise, assess, analyse and report in line with engagement and client business requirements. This involves meeting client stakeholders, reviewing documentation, auditing technical solutions and systems, and presenting information and advice to senior business partners.
  • Translate the technical and non‑technical findings from an assessment or exercise into actionable remediation road maps for customers.
  • Adhere to all internal policy and procedures related to security and quality best practice.
  • Engage with Markets and Pre‑Sales teams during the sales cycle to assist in quantifying, pricing and assessing the capability required for project delivery.
  • Assist with sales proposals, bids and tenders for delivery of Assurance & Compliance services.
  • Act as a mentor to less experienced consultants and foster knowledge sharing throughout the delivery team.

Skills, Knowledge & Expertise

  • You hold or have held a PCI Qualified Security Assessor (QSA) qualification and delivered PCI DSS assessments.
  • You hold or have held other PCI assessor qualifications such as PCI 3DS Assessor, PCI Card Production Security Assessor (CPSA), P2PE Assessor, Qualified PIN Assessor (QPA) or Secure Software Assessor.
  • You are interested in expanding your PCI skills to include assessing against these standards.
  • You will be working in areas mainly focusing on PCI QSA; other skills include NIST 800‑53, SANS Top 20 CSC, ISO 27001, Risk Assessment (ISO27005), EU GDPR and other frameworks as requested by clients.
  • Have the ability to deliver projects within time and in budget and to a high level of customer satisfaction – exercising customer care at all times.
  • Demonstrate a strong ability to develop a rapport with customers and to engender long‑lasting relationships.
  • Have strong business, consultancy and technical skills within the IT Security Industry.
  • Excellent communication and presentation skills.

Desired Skills and Qualifications

  • SOC / SIEM assessments and tooling
  • Identity and Zero trust Security design and architecture
  • GovAssure
  • Operational Technology (OT) ISA 62443
  • Artificial Intelligence
  • SWIFT CSP
  • Cloud related certifications across AWS/GCP/Azure
  • CISM / CISSP / CRISC / ISO 27001 LI/LA / CISA

Benefits

  • Flexible Working: Balance your work and personal life with our flexible working options.
  • Generous Holiday Allowance: Enjoy 25 days of holiday, plus bank holidays, with the option to buy up to 5 additional days of annual leave.
  • Medicash & Critical Illness Scheme
  • Financial & Investment Benefits: Enjoy peace of mind with our Pension, Life Assurance, and Share Save Scheme.
  • Community & Volunteering Programmes: Make a difference in your community with our volunteering opportunities.
  • Green Car Scheme: Drive green and save money with our eco‑friendly car scheme.
  • Cycle Scheme: Stay fit and healthy with our cycle‑to‑work scheme.
  • Special Time Off: Take time off for those big moments in life, like getting married/entering into a civil partnership, becoming a grandparent, and welcoming home a new pet.
  • Family Planning: Benefit from our generous maternity and paternity leave, as well as time off and support for those undergoing fertility treatments.

PCI DSS QSA (Senior Consultant) employer: NCC Group

NCC Group is an exceptional employer, offering a dynamic work environment in London where innovation and collaboration thrive. With a strong focus on employee growth, we provide extensive training opportunities and mentorship for our consultants, ensuring they stay at the forefront of the cyber security landscape. Our commitment to work-life balance, generous holiday allowances, and community engagement initiatives make NCC Group a rewarding place to build a meaningful career.

NCC Group

Contact Detail:

NCC Group Recruiting Team

StudySmarter Expert Advice🤫

We think this is how you could land PCI DSS QSA (Senior Consultant)

Tip Number 1

Network like a pro! Get out there and connect with folks in the cyber security space. Attend industry events, join online forums, and don’t be shy about reaching out on LinkedIn. You never know who might have the inside scoop on a job opportunity!

Tip Number 2

Show off your skills! Prepare a portfolio or case studies that highlight your previous PCI DSS assessments and consulting experiences. When you get the chance to chat with potential employers, share these stories to demonstrate your expertise and how you can add value.

Tip Number 3

Practice makes perfect! Before any interviews, do some mock interviews with friends or mentors. Focus on articulating your experience with PCI compliance and how you’ve tackled challenges in past roles. This will help you feel more confident and ready to impress.

Tip Number 4

Apply through our website! We love seeing applications directly from candidates who are genuinely interested in joining our team. It shows initiative and enthusiasm, which are key traits we look for in a Senior Consultant. So, don’t hesitate – hit that apply button!

We think you need these skills to ace PCI DSS QSA (Senior Consultant)

PCI Qualified Security Assessor (QSA)
PCI DSS Assessments
PCI 3DS Assessor
PCI Card Production Security Assessor (CPSA)
P2PE Assessor
Qualified PIN Assessor (QPA)
Secure Software Assessor

Some tips for your application 🫡

Tailor Your CV:Make sure your CV is tailored to the PCI DSS QSA role. Highlight your relevant experience and qualifications, especially any PCI-related certifications. We want to see how your background aligns with what we do!

Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you're passionate about cybersecurity and how your skills can help us at StudySmarter. Be genuine and let your personality come through.

Showcase Your Client Relationship Skills:Since building trusted client relationships is key, share examples of how you've successfully managed client interactions in the past. We love to see candidates who can communicate effectively and foster long-lasting partnerships.

Apply Through Our Website:We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re keen on joining our team!

How to prepare for a job interview at NCC Group

Know Your PCI Inside Out

Make sure you brush up on your PCI DSS knowledge before the interview. Be ready to discuss your previous experiences with PCI assessments and how you've navigated challenges in the past. This will show that you're not just familiar with the standards, but that you can apply them effectively.

Showcase Your Client Relationship Skills

Since building trusted client relationships is key, prepare examples of how you've successfully managed client expectations in previous roles. Think about specific instances where you exceeded client expectations and how you maintained those relationships over time.

Prepare for Technical Questions

Expect technical questions related to security frameworks like NIST 800-53 or ISO 27001. Brush up on these topics and be ready to explain how you've applied them in your work. Being able to translate complex technical findings into actionable insights will impress your interviewers.

Practice Your Presentation Skills

As a Senior Consultant, you'll need to present information to senior business partners. Practice explaining technical concepts in a clear and concise manner. You might even want to do a mock presentation to a friend or colleague to get comfortable with your delivery.