Draft or review PCI-related auditor, QSA, processor, or requesting-entity responses. * Support tracking of PCI remediation items, exceptions, compensating-control discussions, and risk acceptance ...
Draft or review PCI-related auditor, QSA, processor, or requesting-entity responses. * Support tracking of PCI remediation items, exceptions, compensating-control discussions, and risk acceptance ...
Draft or review PCI-related auditor, QSA, processor, or requesting-entity responses. * Support tracking of PCI remediation items, exceptions, compensating-control discussions, and risk acceptance ...
Quick apply
Draft or review PCI-related auditor, QSA, processor, or requesting-entity responses. * Support tracking of PCI remediation items, exceptions, compensating-control discussions, and risk acceptance ...
QUALITY ASSURANCE AUDITOR | MON-FRI
Irving, TX ยท On-site
$18/hr
Quality Assurance Auditor Reports to: Production Manager Department : Inserting Classification ... Overtime Eligible _____ PCI Group is the leading provider of mission critical communications for ...
New
QUALITY ASSURANCE AUDITOR | MON-FRI
Irving, TX ยท On-site
$18/hr
Quality Assurance Auditor Reports to: Production Manager Department : Inserting Classification ... Overtime Eligible _____ PCI Group is the leading provider of mission critical communications for ...
New
Avertium is seeking a PCI subject matter expert for our Risk & Compliance consulting practice. The ... Auditor experience * Strong documentation skills * Strong interpersonal skills * Flexibility and ...
Avertium is seeking a PCI subject matter expert for our Risk & Compliance consulting practice. The ... Auditor experience * Strong documentation skills * Strong interpersonal skills * Flexibility and ...
PCI Compliance Lead
Lafayette, IN ยท On-site
$98K - $199K/yr
Serve as the primary point of contact across stakeholders, auditors, third parties, and regulators offering technical and business expertise on PCI compliance and data security processes.
PCI Compliance Lead
Lafayette, IN ยท On-site
$98K - $199K/yr
Serve as the primary point of contact across stakeholders, auditors, third parties, and regulators offering technical and business expertise on PCI compliance and data security processes.
PCI Compliance Lead
Lafayette, IN ยท On-site
$98K - $199K/yr
Serve as the primary point of contact across stakeholders, auditors, third parties, and regulators offering technical and business expertise on PCI compliance and data security processes.
PCI Compliance Lead
Lafayette, IN ยท On-site
$98K - $199K/yr
Serve as the primary point of contact across stakeholders, auditors, third parties, and regulators offering technical and business expertise on PCI compliance and data security processes.
Senior Security Auditor
Houston, TX ยท On-site
$160K - $220K/yr
Strong understanding of NIST CSF 2.0, NIST 800-53, PCI DSS, and FTC Safeguards, with practical application experience; Experience auditing SDLC, code reviews, CI/CD, and vulnerability management;
Senior Security Auditor
Houston, TX ยท On-site
$160K - $220K/yr
Strong understanding of NIST CSF 2.0, NIST 800-53, PCI DSS, and FTC Safeguards, with practical application experience; Experience auditing SDLC, code reviews, CI/CD, and vulnerability management;
Senior Security Auditor
Houston, TX ยท On-site
Strong understanding of NIST CSF 2.0, NIST 800-53, PCI DSS, and FTC Safeguards, with practical application experience; Experience auditing SDLC, code reviews, CI/CD, and vulnerability management;
Senior Security Auditor
Houston, TX ยท On-site
Strong understanding of NIST CSF 2.0, NIST 800-53, PCI DSS, and FTC Safeguards, with practical application experience; Experience auditing SDLC, code reviews, CI/CD, and vulnerability management;
Minimum of 5-7 years of experience in measuring security controls, IT auditing, business processes, providing advice, or related security consulting. * Ability to lead PCI Reports on Compliance ...
Quick apply
Minimum of 5-7 years of experience in measuring security controls, IT auditing, business processes, providing advice, or related security consulting. * Ability to lead PCI Reports on Compliance ...
IT Auditor and Cybersecurity
Austin, TX ยท On-site
Job Title: IT Auditor II and cybersecurity Location: Austin, TX (Hybrid ) Duration: 5+ Months Mode ... 2, PCI-DSS). * Collect and analyze evidence such as policies, configurations, logs, and access ...
Quick apply
IT Auditor and Cybersecurity
Austin, TX ยท On-site
Job Title: IT Auditor II and cybersecurity Location: Austin, TX (Hybrid ) Duration: 5+ Months Mode ... 2, PCI-DSS). * Collect and analyze evidence such as policies, configurations, logs, and access ...
Production Auditor
Lemont, IL ยท On-site
SUMMARY The Auditor (production) is responsible for maintaining a complete audit trail of card ... Enforce compliance with internal audit procedures and industry regulations, including PCI standards ...
Production Auditor
Lemont, IL ยท On-site
SUMMARY The Auditor (production) is responsible for maintaining a complete audit trail of card ... Enforce compliance with internal audit procedures and industry regulations, including PCI standards ...
As a Senior Consultant, you will regularly interact with peers and clients as both an auditor and ... Current PCI-QSA certification preferred (will consider former QSA) * One of the following ...
As a Senior Consultant, you will regularly interact with peers and clients as both an auditor and ... Current PCI-QSA certification preferred (will consider former QSA) * One of the following ...
Senior Consultant, PCI QSA
Charleston, WV ยท Remote
$98K - $163K/yr
As a Senior Consultant, you will regularly interact with peers and clients as both an auditor and ... Current PCI-QSA certification preferred (will consider former QSA) * One of the following ...
Quick apply
Senior Consultant, PCI QSA
Charleston, WV ยท Remote
$98K - $163K/yr
As a Senior Consultant, you will regularly interact with peers and clients as both an auditor and ... Current PCI-QSA certification preferred (will consider former QSA) * One of the following ...
Production Auditor
Lemont, IL ยท On-site
SUMMARY The Auditor (production) is responsible for maintaining a complete audit trail of card ... Enforce compliance with internal audit procedures and industry regulations, including PCI standards ...
Production Auditor
Lemont, IL ยท On-site
SUMMARY The Auditor (production) is responsible for maintaining a complete audit trail of card ... Enforce compliance with internal audit procedures and industry regulations, including PCI standards ...
Auditor
Alpharetta, GA ยท On-site
Knowledge of auditing principles and practices, and the analysis and reporting of audit information ... FFIEC, PCI-DSS, ISO27001, and ITIL * Big Four or similar firm audit experience. * Payment ...
Auditor
Alpharetta, GA ยท On-site
Knowledge of auditing principles and practices, and the analysis and reporting of audit information ... FFIEC, PCI-DSS, ISO27001, and ITIL * Big Four or similar firm audit experience. * Payment ...
NQA-1 Lead Auditor / Oversight Specialist
Idaho Falls, ID ยท On-site
$145K - $225K/yr
The NQA-1 Lead Auditor / Oversight Specialist will support the DOE, Idaho Cleanup Project (DOE-ICP ... US Citizenship Required PCI Federal (PCIF) and its subsidiaries are an equal-opportunity employer.
NQA-1 Lead Auditor / Oversight Specialist
Idaho Falls, ID ยท On-site
$145K - $225K/yr
The NQA-1 Lead Auditor / Oversight Specialist will support the DOE, Idaho Cleanup Project (DOE-ICP ... US Citizenship Required PCI Federal (PCIF) and its subsidiaries are an equal-opportunity employer.
As an Internal Auditor III, you will be responsible for assisting in the evaluation of the design ... PCI, COBIT, NIST, BSA/AML). * Awareness of governance, risk management, and compliance (GRC ...
As an Internal Auditor III, you will be responsible for assisting in the evaluation of the design ... PCI, COBIT, NIST, BSA/AML). * Awareness of governance, risk management, and compliance (GRC ...
As an Internal Auditor III, you will be responsible for assisting in the evaluation of the design ... PCI, COBIT, NIST, BSA/AML). * Awareness of governance, risk management, and compliance (GRC ...
As an Internal Auditor III, you will be responsible for assisting in the evaluation of the design ... PCI, COBIT, NIST, BSA/AML). * Awareness of governance, risk management, and compliance (GRC ...
Internal Auditor | Grand Rapids, MI or Remote
Grand Rapids, MI ยท On-site
$68K - $85K/yr
We are seeking an Internal Auditor to join our team! This role can work remote with occasional ... Familiarity with compliance standards (ISO27001, PCI, HIPAA, GDRP, NIST, SOC1 & SOC2). * Valid ...
Internal Auditor | Grand Rapids, MI or Remote
Grand Rapids, MI ยท On-site
$68K - $85K/yr
We are seeking an Internal Auditor to join our team! This role can work remote with occasional ... Familiarity with compliance standards (ISO27001, PCI, HIPAA, GDRP, NIST, SOC1 & SOC2). * Valid ...
We are looking to fill a position for Security Auditor in Lansing MI. Qualifications * Information ... PCI, NIST, FISMA, HIPPA, CJIS or related experience * Experience in working large, complex business ...
We are looking to fill a position for Security Auditor in Lansing MI. Qualifications * Information ... PCI, NIST, FISMA, HIPPA, CJIS or related experience * Experience in working large, complex business ...
Pci Auditor information
See salary details
$10.34 - $13.61
15% of jobs
$14.34 is the 25th percentile. Wages below this are outliers.
$13.61 - $16.89
46% of jobs
$18.63 is the 75th percentile. Wages above this are outliers.
$16.89 - $20.17
26% of jobs
$20.17 - $23.45
7% of jobs
$23.45 - $26.73
1% of jobs
$26.73 - $30
1% of jobs
$30 - $33.28
1% of jobs
$33.28 - $36.56
0% of jobs
$36.56 - $39.84
1% of jobs
$39.84 - $43.12
1% of jobs
$43.12 - $46.39
0% of jobs
$10
$19
$46
How much do pci auditor jobs pay per hour?
What are the key skills and qualifications needed to thrive as a PCI Auditor, and why are they important?
How to become a PCI auditor?
Is Cisa an entry level job?
What are PCI Auditors?
What is the difference between Pci Auditor vs Pci Compliance Analyst?
| Aspect | Pci Auditor | Pci Compliance Analyst |
|---|---|---|
| Certifications | PCI Auditor Certification, CPA, or related | PCI DSS certifications, Compliance certifications |
| Work Environment | Audit firms, consulting agencies, or internal audit teams | Financial institutions, retail companies, or IT departments |
| Responsibilities | Conducting PCI audits, assessing compliance, reporting findings | Monitoring PCI compliance, implementing policies, supporting audits |
The main difference is that Pci Auditors primarily conduct formal PCI audits and assessments, while Pci Compliance Analysts focus on maintaining ongoing PCI compliance and supporting audit processes. Both roles require similar certifications and work in related environments, but their core functions differ in scope and focus.
What are some common challenges faced by PCI Auditors during an assessment, and how can they be addressed?
What is a PCI auditor called?
Is an auditor a high paying job?

Full-time
Retirement
Posted 7 days ago
Job description
About the role
FYI is seeking a PCI DSS SAQ D Service Provider Lead to support an active PCI compliance program for a SaaS/cloud/payment-adjacent environment. This role will own the PCI domain in a fractional capacity, including PCI scoping support, evidence sufficiency review, quarterly scan cadence, penetration testing evidence, remediation tracking, and responses to auditors, QSAs, processors, banks, or other requesting entities. The right candidate has done this work before and can drive their lane without constant prompting.
Essential responsibilities and duties
- Support PCI DSS SAQ D Service Provider readiness, scoping, evidence review, and control interpretation.
- Review PCI scope assumptions, in-scope systems, applications, integrations, service providers, and payment/data-flow considerations.
- Coordinate and review evidence for quarterly external ASV scans and internal vulnerability scans.
- Coordinate PCI-relevant penetration testing evidence, including scope, rules of engagement, final report review, remediation, and retest evidence.
- Review evidence for file integrity monitoring, encryption, MFA, IAM, logging, monitoring, change control, secure development, vulnerability management, and remediation tracking where relevant to PCI DSS.
- Identify weak, incomplete, stale, unclear, or nonresponsive evidence before submission.
- Draft or review PCI-related auditor, QSA, processor, or requesting-entity responses.
- Support tracking of PCI remediation items, exceptions, compensating-control discussions, and risk acceptance needs.
- Help define and maintain recurring PCI compliance cadence, including quarterly scans and annual validation activities.
- Provide concise written status updates, blockers, risks, and next actions to the project manager and CISO/vCISO.
Required qualifications
- 8+ years of cybersecurity, GRC, IT audit, compliance, security consulting, or related experience.
- Direct hands-on experience supporting PCI DSS assessments.
- Direct experience with PCI DSS SAQ D; Service Provider experience is strongly preferred.
- Experience with SaaS, cloud-hosted, fintech, payment, or payment-adjacent environments.
- Working knowledge of ASV scanning, internal vulnerability scanning, penetration testing evidence, vulnerability remediation, IAM/MFA, encryption, logging, monitoring, FIM, change control, and secure development requirements.
- Ability to translate PCI requirements into practical tasks for engineering, IT, security, and business stakeholders.
- Strong written communication skills and ability to produce audit-ready summaries and responses.
- Ability to work through ambiguity and distinguish sufficient evidence from weak or incomplete evidence.
Nice to have
- Prior QSA, ISA, or QSA-firm experience.
- PCI DSS v4.x experience.
- CISA, CISSP, CISM, Security+, or equivalent certification.
- Experience with Drata, Vanta, Secureframe, Hyperproof, Jira, Confluence, AWS, Azure, GCP, or similar platforms.
- SOC 2 familiarity, especially where controls overlap with PCI DSS.
Expected deliverables
- PCI DSS SAQ D evidence and gap tracker inputs.
- PCI scope notes, assumptions, and issue summaries.
- ASV and internal vulnerability scan evidence checklists.
- Penetration testing evidence checklist and report sufficiency review notes.
- PCI remediation tracker updates and risk summaries.
- PCI auditor/requesting-entity response drafts.
- PCI quarterly and annual compliance calendar inputs.
Operating style required
This role requires a senior operator who can own the PCI lane in a fractional capacity. The contractor must communicate clearly, document next actions, identify blockers early, and coordinate through the project manager. This is not a casual side task. Responsiveness, ownership, and clean written work product are required.
FYI's Benefits/Incentives: What is in it for you?
- Opportunity to work a hybrid work schedule
- A knowledgeable, high-achieving, diverse, experienced, and fun team.
- The chance to be part of a rapidly growing company and the next success story.
- A competitive base salary with a loaded benefits package plus 401K.
- Tuition/education assistance, personal computer allowance, pet insurance.
About FYI For Your Information
Sourced by ZipRecruiter
Industry
It services
Company size
51 - 200 Employees
Headquarters location
Beltsville, MD, US
Year founded
1987