PCI Compliance and Assurance Specialist in Crawley

PCI Compliance and Assurance Specialist in Crawley

Crawley Full-Time 43200 - 72000 £ / year (est.) No working from home possible
Paydock

At a Glance

  • Tasks: Lead PCI DSS certification, manage compliance, and collaborate with teams on security controls.
  • Company: Join Paydock, a fintech innovator transforming the payments ecosystem for businesses and financial institutions.
  • Benefits: Enjoy flexible work arrangements, competitive pay, and a dynamic, collaborative culture.
  • Other info: Opportunity to influence product marketing strategies for impactful launches.
  • Why this job: Tackle exciting challenges in a fast-growing industry while working with global financial institutions.
  • Qualifications: Strong understanding of PCI DSS; certifications like QSA or ISA are a plus.

The predicted salary is between 43200 - 72000 £ per year.

We are seeking a PCI Compliance and Assurance Specialist to lead and manage our PCI DSS certification process, ensuring compliance with regulatory requirements and maintaining security controls throughout the year. This role will be responsible for collecting evidence, assessing controls, and preparing for audits while also providing consultation on PCI requirements to Engineering, SecOps, and Architecture teams. Additionally, the role will support ISO 27001, SOC 2 Type 2, and other certification audits, assist with security assurance activities such as design reviews and client security questions, and collaborate with internal and external stakeholders to ensure compliance across the business.

The ideal candidate will have a strong technical background and experience working with multiple levels of stakeholders. A qualification as an ISA or QSA is desirable and would be beneficial in this role.

Responsibilities
  • Lead and manage the annual PCI DSS certification process, including preparation, evidence collection, and assessments.
  • Act as the primary point of contact for all PCI-related matters, working closely with both internal teams and external assessors.
  • Monitor and assess PCI DSS controls and requirements, ensuring they are effectively implemented and maintained throughout the year.
  • Work with Engineering, SecOps, and Architecture teams to provide PCI consultation and ensure security-by-design principles are followed.
  • Conduct internal PCI assessments, gap analysis, and risk assessments to identify areas of improvement.
  • Stay up to date with PCI DSS standard updates and ensure timely adaptation of new requirements.
  • Manage and support ISO 27001 and SOC 2 Type 2 certification processes, ensuring evidence gathering, control validation, and audit preparation.
  • Assist in responding to client security questionnaires and third-party risk assessments, design reviews, and due diligence requests related to security and compliance.
  • Collaborate with internal teams to ensure alignment between business operations and compliance obligations.
  • Provide ongoing assurance to the business regarding security controls and regulatory compliance.
Skills and Experience:
  • Certifications: QSA (Qualified Security Assessor) or ISA (Internal Security Assessor) desirable but not required. Other security certifications such as CISSP, CISM, CISA, or CRISC are advantageous.
  • Strong understanding of PCI DSS requirements, controls, and assessment processes.
  • Hands-on experience with security controls, cloud environments, and security architecture.
  • Experience with ISO 27001, SOC 2 Type 2, or other security frameworks.
  • Proven ability to work effectively with senior leadership, auditors, external partners, and cross-functional teams.
  • Experience with design reviews, risk assessments, and security best practices.
  • Strong written and verbal communication skills to effectively articulate compliance requirements and security risks.
  • Proactive mindset with the ability to identify gaps, drive remediation efforts, and enhance compliance posture.

Be part of a fast-growing, dynamic fintech space, innovating payment solutions with global banks. Solve complex, innovative challenges in partnership with global teams. Enjoy a flexible and dynamic culture at Paydock, where collaboration across teams creates a varied and engaging workday. Work closely with leading financial institutions on cutting-edge products. Opportunity to own the product marketing strategy for high-impact product launches. Competitive compensation, flexible work arrangements, and a collaborative culture.

Paydock

Contact Details:

Paydock Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land PCI Compliance and Assurance Specialist in Crawley

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Paydock, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through Paydock

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Paydock. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace PCI Compliance and Assurance Specialist in Crawley

PCI DSS Compliance
ISO 27001 Knowledge
SOC 2 Type 2 Familiarity
Risk Assessment Skills
Security Architecture Understanding
Evidence Collection and Assessment
Stakeholder Management

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Paydock insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Paydock that you’re committed to staying ahead in the game.

How to prepare for a job interview at Paydock

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at Paydock to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Paydock.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.