At a Glance
- Tasks: Ensure PCI DSS compliance and safeguard payment data security across global airport systems.
- Company: Join SITA, a leader in air travel technology with a diverse and inclusive culture.
- Benefits: Flexible work options, professional development, and comprehensive wellbeing support.
- Why this job: Make a real impact in the aviation industry while growing your career in a supportive environment.
- Qualifications: 5+ years in Quality Assurance or Compliance, with hands-on PCI DSS experience.
- Other info: Dynamic team with opportunities for global collaboration and career advancement.
The predicted salary is between 36000 - 60000 £ per year.
WELCOME TO SITA
At SITA, we keep airports moving, airlines flying smoothly, and borders open. Our technology and communication innovations power the success of the global air travel industry. You’ll find us in 95% of international airports, working closely with over 2,500 transportation and government clients. Each partnership brings unique challenges, and we thrive on delivering fresh solutions and cutting-edge tech to keep operations running like clockwork. We don’t just move the world forward—we’re proud to be recognized as a Great Place to Work® by 79% of our employees and certified in most of our growing locations. Here, we feel empowered, supported, and inspired to grow.
Are you ready to love your job? The adventure begins right here, with you, at SITA.
About The Role & Team
As Senior Quality Assurance Analyst, you will support the implementation, control, and continuous improvement of PCI DSS 4.0.1 compliance across SITA’s airport and infrastructure environments. You will be accountable for ensuring audit readiness, maintaining compliance documentation, and driving alignment with PCI DSS standards and SITA’s internal security policies. Reporting to the Lead Quality Assurance, you will be part of the Compliance team, responsible for safeguarding payment data security and supporting operational excellence across global airport systems.
What You Will Do
- Assist in developing and executing the PCI DSS 4.0.1 compliance programme, including documentation and audit evidence.
- Coordinate with internal teams (GRC, SoC, Infrastructure, Development) and external auditors for timely compliance deliverables.
- Support implementation and validation of technical controls such as vulnerability scanning, penetration testing, and system hardening.
- Maintain and update the Roles and Responsibilities Matrix for PCI DSS scope.
- Monitor and report on PCI DSS control effectiveness, identify gaps, and recommend remediation.
- Facilitate internal readiness assessments and mock audits for PCI DSS certification.
- Track and manage audit findings, ensuring timely resolution and documentation.
- Deliver PCI DSS awareness and training sessions for relevant teams.
- Assist in planning compliance activities, including resource and timeline estimation.
- Ensure annual review and update of all compliance documentation (policies, procedures, diagrams).
Qualifications
- Minimum 5 years’ experience in Quality Assurance, Information Security, or Compliance roles.
- Hands-on experience with PCI DSS compliance programmes, including evidence collection and audit readiness.
- Strong understanding of PCI DSS 4.0.1 requirements and security best practices.
- Familiarity with SSDLC, vulnerability management, and risk-based control assessments.
- Skilled in preparing compliance artefacts (AOC, ROC, policy documentation).
- Excellent communication and documentation skills for technical and non-technical audiences.
Nice-to-have
- Industry certifications such as PCIP, CISA, CISM, or ISO 27001 Lead Implementer.
- ISEB Foundation or equivalent QA qualification.
- Experience with tools for vulnerability scanning, penetration testing, and log review.
What We Offer
- We’re all about diversity. We operate in 200 countries and speak 60 different languages and cultures. We’re really proud of our inclusive environment.
- Flex Week: Work from home up to 2 days/week (depending on your team's needs).
- Flex Day: Make your workday suit your life and plans.
- Flex-Location: Take up to 30 days a year to work from any location in the world.
- Employee Wellbeing: Employee Assistance Program (EAP) for you and your dependents 24/7, 365 days/year, plus Champion Health for a range of wellbeing needs.
- Professional Development: Access to learning platforms and programs (LinkedIn Learning, Microsoft’s Enterprise Skills Initiative, Airport Council International, Pluralsight for technology upskilling, Harvard Business Publishing for people leadership, Stanford for strategic development, and more).
- Competitive Benefits: Benefits that make sense with local market and employment status.
SITA is an Equal Opportunity Employer. We value a diverse workforce. In support of our Employment Equity Program, we encourage women, aboriginal people, members of visible minorities, and/or persons with disabilities to apply and self-identify in the application process.
Details
- Seniority level: Not Applicable
- Employment type: Full-time
- Job function: Quality Assurance
- Industries: IT Services and IT Consulting
Senior PCI Analyst in Reading employer: SITA
Contact Detail:
SITA Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior PCI Analyst in Reading
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend events, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Prepare for interviews by researching SITA and understanding their values and mission. Tailor your answers to show how your skills align with their goals, especially around PCI DSS compliance and security best practices.
✨Tip Number 3
Practice makes perfect! Do mock interviews with friends or use online platforms to get comfortable with common questions. This will help you articulate your experience in Quality Assurance and compliance confidently.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining the SITA team.
We think you need these skills to ace Senior PCI Analyst in Reading
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Senior PCI Analyst role. Highlight your experience with PCI DSS compliance and any relevant projects you've worked on. We want to see how your skills align with what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about the role and how your background makes you a perfect fit. Don’t forget to mention your understanding of PCI DSS 4.0.1 and its importance in the industry.
Showcase Your Communication Skills: Since this role involves working with various teams, it's crucial to demonstrate your communication skills. Use clear and concise language in your application, and feel free to include examples of how you've effectively communicated complex information in the past.
Apply Through Our Website: We encourage you to apply through our website for the best chance of getting noticed. It’s super easy, and you’ll be able to keep track of your application status. Plus, we love seeing applications come directly from our site!
How to prepare for a job interview at SITA
✨Know Your PCI DSS Inside Out
Make sure you have a solid understanding of PCI DSS 4.0.1 requirements. Brush up on the latest compliance standards and be ready to discuss how your experience aligns with these. This will show that you're not just familiar with the regulations, but that you can actively contribute to SITA's compliance programme.
✨Showcase Your Collaboration Skills
As a Senior PCI Analyst, you'll need to work closely with various internal teams and external auditors. Prepare examples of past experiences where you've successfully coordinated with different stakeholders. Highlight your communication skills and how you’ve facilitated teamwork in achieving compliance goals.
✨Prepare for Technical Questions
Expect questions about technical controls like vulnerability scanning and penetration testing. Be ready to discuss specific tools you've used and how you've implemented these controls in previous roles. This will demonstrate your hands-on experience and technical expertise.
✨Bring Evidence of Your Achievements
Have documentation or examples ready that showcase your contributions to compliance programmes. Whether it's audit readiness or training sessions you've delivered, tangible evidence of your past successes will help you stand out as a candidate who can drive results at SITA.