1

Pci Dss Risk Assessment Jobs in California (NOW HIRING)

... Assess and manage security risk across Sierra's full third-party landscape, recognizing that ... PCI DSS, FedRAMP, ISO 42001, ISO 27001, and emerging AI governance frameworks that hold up under ...

Manage a comprehensive Governance, Risk, and Compliance program in support of corporate audits, client assessments, and regulatory standards such as PCI DSS, SOC 2, and ISO 27001; ensure that our ...

Manage a comprehensive Governance, Risk, and Compliance program in support of corporate audits, client assessments, and regulatory standards such as PCI DSS, SOC 2, and ISO 27001; ensure that our ...

... ENS High/MS DPR/PCI-DSS/CSA STAR/HDS * Policy & Governance Lifecycle: Ensure our corporate ... Direct high-impact vendor risk assessment programs, ensuring third-party SaaS tools and supply ...

Showing results 21-40

Pci Dss Risk Assessment information

What is a PCI DSS risk assessment?

A PCI DSS risk assessment is a formal process required by the Payment Card Industry Data Security Standard (PCI DSS) to identify, evaluate, and address potential risks that could impact the security of cardholder data. It involves analyzing how sensitive payment information is handled, stored, and transmitted within an organization, and identifying any vulnerabilities that could lead to data breaches or non-compliance. Organizations use the findings from the assessment to implement security controls and processes that help protect cardholder data and maintain PCI DSS compliance.

What are the key skills and qualifications needed to thrive as a PCI DSS risk assessor, and why are they important?

To thrive as a PCI DSS Risk Assessor, you need expertise in information security, risk management, compliance frameworks, and ideally a degree in IT or cybersecurity. Familiarity with PCI DSS standards, risk assessment tools, vulnerability scanners, and certifications like PCI Professional (PCIP) or Certified Information Systems Auditor (CISA) is typically required. Strong analytical thinking, communication, and attention to detail are crucial soft skills for effective risk evaluation and reporting. These skills and qualifications are vital to ensure organizations maintain compliance, reduce risk, and protect sensitive payment card data.

What are some common challenges faced during PCI DSS risk assessments, and how can they be addressed?

A frequent challenge in PCI DSS risk assessments is ensuring comprehensive identification and documentation of all systems and processes that store, process, or transmit cardholder data. Overlooking assets or data flows can lead to compliance gaps. Additionally, coordinating with various departments to collect accurate information can be complex. These challenges can be addressed by establishing clear communication channels, using detailed data flow diagrams, and conducting regular cross-functional meetings to maintain up-to-date asset inventories and processes.

What is the difference between Pci Dss Risk Assessment vs Pci Dss Compliance Analyst?

AspectPci Dss Risk AssessmentPci Dss Compliance Analyst
Primary FocusIdentifying and evaluating security risks related to PCI DSS requirementsEnsuring ongoing compliance with PCI DSS standards and policies
ResponsibilitiesRisk identification, vulnerability assessment, mitigation planningPolicy implementation, audit preparation, compliance documentation
Required SkillsRisk management, security assessment, knowledge of PCI DSSCompliance auditing, documentation, regulatory knowledge
Work EnvironmentSecurity teams, risk management departmentsCompliance teams, audit departments

While both roles involve PCI DSS standards, the Pci Dss Risk Assessment focuses on identifying and evaluating security risks, whereas the Pci Dss Compliance Analyst concentrates on maintaining compliance and preparing for audits. Understanding these differences helps organizations assign the right responsibilities to ensure security and compliance.

What job categories do people searching Pci Dss Risk Assessment jobs in California look for?

The top searched job categories for Pci Dss Risk Assessment jobs in California are:

What cities in California are hiring for Pci Dss Risk Assessment jobs?

Cities in California with the most Pci Dss Risk Assessment job openings:

Infographic showing various Pci Dss Risk Assessment job openings in California as of August 2026, with employment types broken down into 1% As Needed, 87% Full Time, 10% Part Time, and 2% Contract. Highlights an 87% Physical, 4% Hybrid, and 9% Remote job distribution.

Senior Analyst, Information Security Governance, Risk, & Compliance

AltaMed

Los Angeles, CA

$121K - $152K/yr

Full-time

Medical, Dental, Vision, Retirement, PTO

Re-posted 10 days ago


AltaMed rating

7.6

Company rating: 7.6 out of 10

Based on 37 frontline employees who took The Breakroom Quiz

191st of 898 rated healthcare providers


Job description

Grow Healthy

If you are as passionate about helping those in need as you are about growing your career, consider AltaMed. At AltaMed, your passion for helping others isn't just welcomed - it's nurtured, celebrated, and promoted, allowing you to grow while making a meaningful difference. We don't just serve our communities; we are an integral part of them. By raising the expectations of what a community clinic can deliver, we demonstrate our belief that quality care is for everyone. Our commitment to providing exceptional care, despite any challenges, goes beyond just a job; it's a calling that drives us forward every day.

Job Overview

The Senior Analyst, Information Security Governance, Risk, & Compliance will be responsible for the corporate-wide Information Security GRC program. This person will work closely with Information Services, Office of Compliance and Risk Management (OCRM), Legal, HR, and Procurement to ensure reasonable and appropriate IT controls are in place to minimize risk and ensure compliance with AltaMed's Information Security Policy and Standards, the HIPAA Security Rule, Data Privacy regulations and the Payment Card Industry - Data Security Standards (PCI-DSS). This person will assist with the development, implementation, and maintenance of AltaMed's Information Security Policies, standards, and guidelines, and be an SME for HIPAA, PCI, and Privacy. Additionally, this person will also be responsible for leading vulnerability management efforts, and vendor and risk management programs, including leading the risk-based change management program, liaising with internal/external auditors to ensure audits lead to a successful outcome, and being responsible for the Security Exception/Risk Acceptance process. The position will also manage, maintain, and administer the company's IT Risk Register and Information Security Awareness Training program.

Minimum Requirements

  • A bachelor's degree in business, information systems management, or a related field is required.

  • A minimum of 5 years of experience in IT audit or IT risk management is required.

  • Experience in leading security assessments, IT vendor risk assessments, and InfoSec control management.

  • Working knowledge of HIPAA, Privacy, and PCI data requirements, and other state / federal regulatory requirements of sensitive information.

  • Experience with application security, SaaS, and/or cloud security is a plus.

  • Must hold an active Certified Information Systems Security Professional (CISSP) certification (Required)

Compensation

$121,780.05 - $152,225.07 annually

Compensation Disclaimer

Actual salary offers are considered by various factors, including budget, experience, skills, education, licensure and certifications, and other business considerations. The range is subject to change. AltaMed is committed to ensuring a fair and competitive compensation package that reflects the candidate's value and the role's strategic importance within the organization. This role may also qualify for discretionary bonuses or incentives.

Benefits & Career Development

  • Medical, Dental and Vision insurance
  • 403(b) Retirement savings plans with employer matching contributions
  • Flexible Spending Accounts
  • Commuter Flexible Spending
  • Career Advancement & Development opportunities
  • Paid Time Off & Holidays
  • Paid CME Days
  • Malpractice insurance and tail coverage
  • Tuition Reimbursement Program
  • Corporate Employee Discounts
  • Employee Referral Bonus Program
  • Pet Care Insurance

Job Advertisement & Application Compliance Statement

AltaMed Health Services Corp. will consider qualified applicants with criminal history pursuant to the California Fair Chance Act and City of Los Angeles Fair Chance Ordinance for Employers. You do not need to disclose your criminal history or participate in a background check until a conditional job offer is made to you. After making a conditional offer and running a background check, if AltaMed Health Service Corp. is concerned about a conviction directly related to the job, you will be given a chance to explain the circumstances surrounding the conviction, provide mitigating evidence, or challenge the accuracy of the background report.


What AltaMed employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


AltaMed Health Services logo

About AltaMed Health Services

Sourced by ZipRecruiter

AltaMed Health Services, based in Los Angeles, CA, US, is a leading provider in the healthcare industry. Founded in 1969 as the East LA Barrio Free Clinic, the organization provides high-quality health and human services to the underserved and uninsured communities in Southern California. AltaMed offers a broad range of services including medical care, senior care, dental services, HIV care, pharmacy services, and health education. The company's mission is to eliminate disparities in healthcare access and outcomes by providing superior quality health and human services through an integrated world-class delivery system. AltaMed has also made notable achievements, including becoming the nation's largest federally qualified community health center (FQHC) and being named a leader in healthcare equality by the Human Rights Campaign for several consecutive years.

Industry

Fitness and sports centers

Company size

1,001 - 5,000 Employees

Headquarters location

Los Angeles, CA, US

Year founded

1969

Social media