At a Glance
- Tasks: Lead PCI DSS assessments, validate controls, and support remediation efforts.
- Company: Join a dynamic team focused on enhancing security compliance for merchants and service providers.
- Benefits: Enjoy a hybrid work model with a competitive rate of £1250/day.
- Why this job: Make a real impact in security while working with industry experts and cutting-edge practices.
- Qualifications: Must be an active QSA or ISA with 5+ years in IT security and relevant certifications.
- Other info: Contract until 31 December 2025; BPSS clearance required.
The predicted salary is between 90000 - 126000 £ per year.
Location: Solihull (Hybrid)
Contract until: 31 December 2025
Rate: £1250/day (Inside IR35)
Clearance Required: BPSS eligible only
We’re seeking a Qualified Security Assessor (QSA) or Internal Security Assessor (ISA) for a contract opportunity supporting PCI DSS compliance initiatives.
About the Role:
You will lead PCI DSS assessments across merchants and service providers—validating controls, identifying gaps, and supporting remediation. You will work closely with stakeholders to ensure security standards are upheld and documented through Reports on Compliance (RoC) and Attestations of Compliance (AoC).
Key Responsibilities:
- Conduct formal PCI DSS audits and assessments
- Review technical controls, policies, and procedures
- Lead interviews, site inspections, and testing activities
- Provide expert remediation guidance to clients
- Prepare accurate RoCs and AoCs
- Stay updated on PCI SSC guidance and best practices
Requirements:
- Active QSA (via a PCI SSC-approved QSA Company) or ISA (via a PCI SSC-registered Sponsor Company)
- PCI DSS QSA/ISA certification (mandatory)
- 5+ years in IT security, audit, or compliance
- At least one relevant certification: CISSP, CISA, CISM, GIAC, etc.
Preferred Skills:
- Strong technical knowledge in network security, encryption, cloud architectures, and access control
- Excellent communication and stakeholder management
- Experience managing multiple projects and tight deadlines
Ready to bring your PCI expertise to a mission-critical programme? Apply now to join a high-impact team driving secure, compliant operations.
Qualified Security Assessor (QSA) employer: Trust In SODA
Contact Detail:
Trust In SODA Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Qualified Security Assessor (QSA)
✨Tip Number 1
Network with professionals in the PCI DSS field. Attend industry conferences, webinars, or local meetups to connect with others who are already working as QSAs or ISAs. This can provide you with valuable insights and potentially lead to job referrals.
✨Tip Number 2
Stay updated on the latest PCI DSS standards and compliance requirements. Follow relevant blogs, forums, and publications to ensure you're aware of any changes that could impact your role. This knowledge will not only help you in interviews but also demonstrate your commitment to the field.
✨Tip Number 3
Prepare for technical interviews by brushing up on your knowledge of network security, encryption, and cloud architectures. Be ready to discuss specific scenarios where you've successfully implemented security measures or remediated compliance issues in past roles.
✨Tip Number 4
Showcase your stakeholder management skills during the interview process. Prepare examples of how you've effectively communicated with clients or team members to achieve compliance goals. Highlighting these experiences can set you apart from other candidates.
We think you need these skills to ace Qualified Security Assessor (QSA)
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights your relevant experience in IT security, audit, and compliance. Emphasise your QSA or ISA certification and any other relevant qualifications like CISSP, CISA, or CISM.
Craft a Compelling Cover Letter: Write a cover letter that specifically addresses the key responsibilities of the role. Mention your experience with PCI DSS assessments and how you have successfully led audits and provided remediation guidance in the past.
Showcase Your Technical Skills: In your application, include specific examples of your technical knowledge in areas such as network security, encryption, and cloud architectures. This will demonstrate your capability to meet the job requirements.
Highlight Stakeholder Management Experience: Discuss your experience in managing stakeholders and projects. Provide examples of how you've effectively communicated and collaborated with clients to uphold security standards and complete assessments.
How to prepare for a job interview at Trust In SODA
✨Showcase Your PCI DSS Knowledge
Make sure to brush up on the latest PCI DSS standards and guidelines. Be prepared to discuss how you've applied these in previous roles, as this will demonstrate your expertise and understanding of compliance initiatives.
✨Prepare for Technical Questions
Expect questions related to technical controls, policies, and procedures. Review your past experiences with audits and assessments, and be ready to explain your approach to identifying gaps and providing remediation guidance.
✨Highlight Stakeholder Management Skills
Since the role involves working closely with various stakeholders, prepare examples that showcase your communication and management skills. Discuss how you've successfully collaborated with clients or teams to uphold security standards.
✨Demonstrate Project Management Experience
Be ready to talk about your experience managing multiple projects under tight deadlines. Share specific examples of how you prioritised tasks and ensured successful outcomes, as this will highlight your ability to thrive in a fast-paced environment.