1

Pci Dss Risk Assessment Jobs in California (NOW HIRING)

IT Governance Analyst

Palo Alto, CA ยท On-site

$150K - $160K/yr

Maintain continuous compliance with PCI-DSS v4.0 (Level 1), FFIEC guidelines, SOC 1/2, and GLBA ... Present formal risk posture and compliance updates monthly to the executive team and risk ...

Operation Director

California City, CA ยท On-site

$150 - $190/hr

Compliance & Risk Management * Ensure adherence to ISO 27001, SOC 2, PCI-DSS, and internal audit ... Present operational metrics and risk assessments to executive leadership. * Drive continuous ...

Compliance & Risk Management * Ensure adherence to ISO 27001, SOC 2, PCI-DSS, and internal audit ... Present operational metrics and risk assessments to executive leadership. * Drive continuous ...

Senior Director, GRC

San Francisco, CA ยท On-site

$264 - $363/hr

... ENS High/MS DPR/PCI-DSS/CSA STAR/HDS * Policy & Governance Lifecycle: Ensure our corporate ... Direct high-impact vendor risk assessment programs, ensuring third-party SaaS tools and supply ...

Own independent audits and regulatory programs including ISO 42001, PCI DSS, NIST 800-53, FedRAMP ... Continuously assess control effectiveness, identify gaps, prioritize risk, and drive remediation ...

BDR Hunter US

Palo Alto, CA ยท On-site +1

$70K - $80K/yr

... risk teams get and stay audit-ready across frameworks like SOC 2, ISO 27001, HIPAA, HITRUST, NIST, PCI DSS, SOX, and more. Enterprise, mid-market, and MSSPs use Trustero to turn GRC from a manual ...

Showing results 41-60

Pci Dss Risk Assessment information

What is a PCI DSS risk assessment?

A PCI DSS risk assessment is a formal process required by the Payment Card Industry Data Security Standard (PCI DSS) to identify, evaluate, and address potential risks that could impact the security of cardholder data. It involves analyzing how sensitive payment information is handled, stored, and transmitted within an organization, and identifying any vulnerabilities that could lead to data breaches or non-compliance. Organizations use the findings from the assessment to implement security controls and processes that help protect cardholder data and maintain PCI DSS compliance.

What are the key skills and qualifications needed to thrive as a PCI DSS risk assessor, and why are they important?

To thrive as a PCI DSS Risk Assessor, you need expertise in information security, risk management, compliance frameworks, and ideally a degree in IT or cybersecurity. Familiarity with PCI DSS standards, risk assessment tools, vulnerability scanners, and certifications like PCI Professional (PCIP) or Certified Information Systems Auditor (CISA) is typically required. Strong analytical thinking, communication, and attention to detail are crucial soft skills for effective risk evaluation and reporting. These skills and qualifications are vital to ensure organizations maintain compliance, reduce risk, and protect sensitive payment card data.

What are some common challenges faced during PCI DSS risk assessments, and how can they be addressed?

A frequent challenge in PCI DSS risk assessments is ensuring comprehensive identification and documentation of all systems and processes that store, process, or transmit cardholder data. Overlooking assets or data flows can lead to compliance gaps. Additionally, coordinating with various departments to collect accurate information can be complex. These challenges can be addressed by establishing clear communication channels, using detailed data flow diagrams, and conducting regular cross-functional meetings to maintain up-to-date asset inventories and processes.

What is the difference between Pci Dss Risk Assessment vs Pci Dss Compliance Analyst?

AspectPci Dss Risk AssessmentPci Dss Compliance Analyst
Primary FocusIdentifying and evaluating security risks related to PCI DSS requirementsEnsuring ongoing compliance with PCI DSS standards and policies
ResponsibilitiesRisk identification, vulnerability assessment, mitigation planningPolicy implementation, audit preparation, compliance documentation
Required SkillsRisk management, security assessment, knowledge of PCI DSSCompliance auditing, documentation, regulatory knowledge
Work EnvironmentSecurity teams, risk management departmentsCompliance teams, audit departments

While both roles involve PCI DSS standards, the Pci Dss Risk Assessment focuses on identifying and evaluating security risks, whereas the Pci Dss Compliance Analyst concentrates on maintaining compliance and preparing for audits. Understanding these differences helps organizations assign the right responsibilities to ensure security and compliance.

What job categories do people searching Pci Dss Risk Assessment jobs in California look for?

The top searched job categories for Pci Dss Risk Assessment jobs in California are:

What cities in California are hiring for Pci Dss Risk Assessment jobs?

Cities in California with the most Pci Dss Risk Assessment job openings:

Infographic showing various Pci Dss Risk Assessment job openings in California as of August 2026, with employment types broken down into 1% As Needed, 87% Full Time, 10% Part Time, and 2% Contract. Highlights an 87% Physical, 4% Hybrid, and 9% Remote job distribution.

Senior Associate, Technology Compliance and Emerging Risk Consulting

RSM

San Francisco, CA โ€ข On-site

$77K - $146K/yr

Full-time

Posted 16 days ago


Job description

We are the leading provider of professional services to the middle market globally, our purpose is to instill confidence in a world of change, empowering our clients and people to realize their full potential. Our exceptional people are the key to our unrivaled, culture and talent experience and our ability to be compelling to our clients. Youโ€™ll find an environment that inspires and empowers you to thrive both personally and professionally. Thereโ€™s no one like you and thatโ€™s why thereโ€™s nowhere like RSM.

The Technology Compliance & Emerging Risk Senior Associate will be an integral team member, assisting with planning engagements, conducting fieldwork, supporting compliance assessments, preparing documentation, and delivering high-quality client outputs.

This role focuses on strengthening technology compliance, cybersecurity governance, and risk management capabilities, including emerging areas such as AI and digital transformation.

Responsibilities:

- Perform technology compliance and risk assessments across IT and cloud environments

- Evaluate control design aligned with regulatory requirements

- Assess cybersecurity and information security programs and governance

- Support AI and emerging technology risk assessments

- Work across 1st and 2nd lines of defense

- Develop an understanding of the industry leading frameworks and methodologies for NIST, PCI, HIPAA, SOC2, Sarbanes-Oxley, COBIT.

Required Qualifications:

- 2โ€“5 years in technology compliance, risk, or cybersecurity

- Knowledge of NIST, ISO 27001, PCI DSS, COBIT, SOX/SOC2

- Experience with IT controls and compliance requirements

Preferred:

- Relevant certifications (CISA, CISSP, etc.)

- Exposure to AI risk or cloud compliance

At RSM, we offer a competitive benefits and compensation package for all our people. We offer flexibility in your schedule, empowering you to balance lifeโ€™s demands, while also maintaining your ability to serve clients. Learn more about our total rewards at https://rsmus.com/careers/working-at-rsm/benefits.

All applicants will receive consideration for employment as RSM does not tolerate discrimination and/or harassment based on race; color; creed; sincerely held religious beliefs, practices or observances; sex (including pregnancy or disabilities related to nursing); gender; sexual orientation; HIV Status; national origin; ancestry; familial or marital status; age; physical or mental disability; citizenship; political affiliation; medical condition (including family and medical leave); domestic violence victim status; past, current or prospective service in the US uniformed service; US Military/Veteran status; pre-disposing genetic characteristics or any other characteristic protected under applicable federal, state or local law.

Accommodation for applicants with disabilities is available upon request in connection with the recruitment process and/or employment/partnership. RSM is committed to providing equal opportunity and reasonable accommodation for people with disabilities. If you require a reasonable accommodation to complete an application, interview, or otherwise participate in the recruiting process, please call us at 800-274-3978 or send us an email at careers@rsmus.com.

RSM does not intend to hire entry level candidates who will require sponsorship now OR in the future (i.e. F-1 visa holders). If you are a recent U.S. college / university graduate possessing 1-2 years of progressive and relevant work experience in a same or similar role to the one for which you are applying, excluding internships, you may be eligible for hire as an experienced associate.

RSM will consider for employment qualified applicants with arrest or conviction records. For those living in California or applying to a position in California, please click here for additional information.

At RSM, an employeeโ€™s pay at any point in their career is intended to reflect their experiences, performance, and skills for their current role. The salary range (or starting rate for interns and associates) for this role represents numerous factors considered in the hiring decisions including, but not limited to, education, skills, work experience, certifications, location, etc. As such, pay for the successful candidate(s) could fall anywhere within the stated range.

Compensation Range: $77,700 - $146,900

Individuals selected for this role will be eligible for a discretionary bonus based on firm and individual performance.