1

Pci Dss Qsa Jobs (NOW HIRING)

$85 - $120/hr

... PCI DSS, NIST CSF, GDPR, HITRUST and others. * Leading and supporting preparation of client ... CISA, CRISC, CIPP, CISSP, CISM, QSA, ISO/IEC 27001, or PCI ISA. * Undergraduate Degree (required ...

New

... DSS) and other compliance frameworks (e.g.: ISO 27001) Should have experience related to vendor ... PCI Qualified Security Assessor (QSA) or Internal Security Assessor (ISA) Certified Information ...

As a PCI QSA company, we are expanding the pool of PCI Qualified Security Assessors (QSAs) and CMMC ... PCI DSS, HIPAA, FERPA, NIST 800-171, CMMC, etc. * Work closely with organizations to conduct ...

Own PCI-DSS scope definition, cardholder-data trust boundaries (CDE), tokenization strategy, and QSA coordination. * Design HA/DR, failover, and operational-readiness (monitoring, logging, alerting ...

Cloud Architect | Onsite

Dallas, TX · On-site

$64.25 - $81.75/hr

Own PCI-DSS scope definition, cardholder-data trust boundaries (CDE), tokenization strategy, and QSA coordination. * Design HA/DR, failover, and operational-readiness (monitoring, logging, alerting ...

Cloud Architect | Onsite

Dallas, TX · On-site

$64.25 - $81.75/hr

Own PCI-DSS scope definition, cardholder-data trust boundaries (CDE), tokenization strategy, and QSA coordination. * Design HA/DR, failover, and operational-readiness (monitoring, logging, alerting ...

Design for PCI-DSS scope minimization: tokenization, P2PE, per-processor TLS/mTLS and certificate/key handling, so cardholder data stays out of in-scope services. Partner with security/QSA on audits.

Design for PCI-DSS scope minimization: tokenization, P2PE, per-processor TLS/mTLS and certificate/key handling, so cardholder data stays out of in-scope services. Partner with security/QSA on audits.

Showing results 41-60

Pci Dss Qsa information

See salary details

$69.5K

$90.6K

$116K

How much do pci dss qsa jobs pay per year?

As of Sep 2, 2026, the average yearly pay for pci dss qsa in the United States is $90,605.00, according to ZipRecruiter salary data. Most workers in this role earn between $81,000.00 and $98,000.00 per year, depending on experience, location, and employer.

What is a PCI DSS QSA?

A PCI DSS QSA, or Qualified Security Assessor, is a professional who has been certified by the PCI Security Standards Council to assess and validate an organization’s compliance with the Payment Card Industry Data Security Standard (PCI DSS). QSAs conduct official PCI assessments, help organizations understand the requirements, and produce the necessary documentation to demonstrate compliance. Their role is crucial for businesses that handle payment card data and must maintain secure environments to protect cardholder information.

What are the key skills and qualifications needed to thrive as a PCI DSS QSA, and why are they important?

To thrive as a PCI DSS QSA, you need expert knowledge of information security, risk assessment, and compliance, typically supported by relevant degrees and the official QSA certification from the PCI Security Standards Council. Familiarity with security assessment tools, vulnerability scanning software, and PCI DSS reporting systems is essential. Strong analytical thinking, attention to detail, and effective communication are crucial soft skills for translating complex requirements to clients and stakeholders. These skills and qualifications ensure accurate compliance assessments, effective guidance, and the protection of sensitive payment data.

What are some common challenges PCI DSS QSAs face when working with clients to achieve compliance?

PCI DSS QSAs often encounter challenges such as interpreting complex requirements for unique business environments, addressing gaps in clients' existing security controls, and managing tight project timelines. They also need to communicate technical requirements to non-technical stakeholders, ensuring everyone understands the compliance process. Effective QSAs develop strong problem-solving skills and adaptability, which are crucial for tailoring solutions that fit each client's operational realities while maintaining strict compliance standards.

What is the difference between Pci Dss Qsa vs Pci Dss Auditor?

AspectPci Dss QsaPci Dss Auditor
CertificationsQSA certification, PCI DSS knowledgeAuditor certification, PCI DSS expertise
Work EnvironmentConsulting, assessing merchants and service providersAuditing organizations, conducting PCI DSS assessments
Employer & Industry UsagePayment card industry, security consulting firmsAudit firms, compliance organizations

The Pci Dss Qsa is a certified professional authorized to assess merchants' PCI DSS compliance, often working in consulting roles. The Pci Dss Auditor, while similar, typically refers to professionals conducting formal audits within organizations or audit firms. Both roles require PCI DSS knowledge and certifications but differ mainly in their scope and work environment.

How to become a PCI DSS QSA?

To become a PCI DSS Qualified Security Assessor (QSA), candidates must have relevant security experience, typically in information security or compliance, and complete the PCI SSC QSA training program. They must also pass the PCI SSC QSA exam and undergo a rigorous background check, after which they can be certified and authorized to assess organizations for PCI DSS compliance.

What is the role of PCI DSS QSA in PCI DSS?

A PCI DSS Qualified Security Assessor (QSA) is a security professional authorized to assess and validate an organization's compliance with PCI DSS standards. They conduct security audits, review controls, and ensure that payment card data is protected according to industry requirements. QSAs play a critical role in helping merchants and service providers maintain secure payment environments and achieve PCI DSS certification.
More about Pci Dss Qsa jobs
Infographic showing various Pci Dss Qsa job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 87% Full Time, 4% Part Time, and 8% Contract. Highlights an 83% Physical, 5% Hybrid, and 12% Remote job distribution, with an average salary of $90,605 per year, or $43.6 per hour.

Senior Associate, Information Assurance Services (SOC Focus)

NextGenEnergyJobs

On-site

$85 - $120/hr

Other

Posted 3 days ago

New


Job description

Senior Associate, Information Assurance Services (SOC Focus)

Work with a Top 20 CPA and advisory firm that Accounts for Anything.

Requirements
  • Planning and leading client meetings, walk-through reviews of clients control procedures and processes; delivery and presentation of client deliverables.
  • Developing and leading the performance of, testing of clients’ security, privacy and other information risk management related controls.
  • Directing the execution of testing of clients’ internal controls, testing of clients’ internal controls and review of internal control testing executed by other team members.
  • Supporting clients in problem identification and resolution.
  • Performing assessments and testing against leading information security and privacy standards and frameworks, including ISO 27001, Trust Services Criteria, PCI DSS, NIST CSF, GDPR, HITRUST and others.
  • Leading and supporting preparation of client reporting deliverables; e.g., gap and risk assessments, SOC reporting, GDPR assessments, ISO 27001 certifications, etc.
  • One or more industry relevant certifications or wiliness to obtain relevant certification(s) within two years of employment.
  • Certifications can include: CISA, CRISC, CIPP, CISSP, CISM, QSA, ISO/IEC 27001, or PCI ISA.
  • Undergraduate Degree (required): preferably in MIS/IS or related concentration – minimum 3.3 GPA.
  • Graduate Degree (preferred): preferably in MIS, IS or Accounting Information Systems.
  • Relevant work experience (2-4 years).
  • Strong communication skills; verbal and written, with the ability to produce excellent written reports and audit documentation.
  • Commitment to continual learning and development.
  • Commitment to exceptional client service and creative problem-solving ability with a consultancy mindset.
  • Flexible, self-starter with the ability to interact with various levels of client and firm management.
  • Understanding of information technology risks and internal controls.
  • Ability to write test procedures and execute tests of controls.
  • Understanding of Service Organization Control, PCI, ISO, HITRUST and/or similar information technology control frameworks.
  • Ability to travel up to 40%.
  • Ability to manage personal schedule and to lead multiple projects, tasks and deadlines.
#J-18808-Ljbffr