1

Pci Dss Risk Assessment Jobs in Utah (NOW HIRING)

Staff Cloud Security Specialist

Lehi, UT · On-site

$61.50 - $81.75/hr

... assessments. Conduct Security Reviews Work with project teams to evaluate the security of new ... Compliance, risk, and assurance expectations Design cloud security controls aligned to PCI DSS ...

Staff Cloud Security Specialist

Lehi, UT

$61.50 - $81.75/hr

... assessments. Conduct Security Reviews Work with project teams to evaluate the security of new ... Compliance, risk, and assurance expectations Design cloud security controls aligned to PCI DSS ...

Assess current controls to determine effectiveness in mitigating risks. * Document and monitor risk ... PCI DSS). * Professional certifications such as: CRMP, CRISC, CISA, CISM At MX, we are a high ...

Health Equity - ServiceNow SecOps Engineer

Draper, UT · On-site

$50.50 - $69.50/hr

... ISO, GDPR, SOC 2, HIPAA, PCI-DSS, etc.) Qualifications : Required : • At least 4+ years ... risk platforms. • Hands-on experience with automated workflows, playbooks, and security ...

Customer Support - French

Orem, UT · On-site

$14.75 - $19/hr

Scope customers to determine their PCI Self Assessment Questionnaire type * Help customers navigate ... Familiar with PCI-DSS * HTML and JavaScript knowledge * Basic understanding of networks and network ...

Senior Security Engineer

West Jordan, UT · On-site

$106K - $146K/yr

... Risk & Compliance Support and maintain compliance with: * HITRUST * SOC 2 * ISO 27001 * PCI DSS ... Perform security risk assessments * Recommend security improvements Leadership * Mentor junior ...

Senior Security Engineer

West Jordan, UT · On-site

$106K - $146K/yr

... Risk & Compliance Support and maintain compliance with: * HITRUST * SOC 2 * ISO 27001 * PCI DSS ... Perform security risk assessments * Recommend security improvements Leadership * Mentor junior ...

... Risk & Compliance Support and maintain compliance with: * HITRUST * SOC 2 * ISO 27001 * PCI DSS ... Perform security risk assessments * Recommend security improvements Leadership * Mentor junior ...

Compliance (PCI DSS Assessments). We are rapidly growing and looking to expand the team. Compliance Consultant/Account Manager: This is an Entry level sales position (no experience needed) where you ...

Account Manager (US & UK HRS)

Orem, UT · On-site

$40K - $80K/yr

Compliance (PCI DSS Assessments). We are rapidly growing and looking to expand the team. Compliance Consultant/Account Manager: This is an Entry level sales position (no experience needed) where you ...

next page

Showing results 1-20

Pci Dss Risk Assessment information

What is a PCI DSS risk assessment?

A PCI DSS risk assessment is a formal process required by the Payment Card Industry Data Security Standard (PCI DSS) to identify, evaluate, and address potential risks that could impact the security of cardholder data. It involves analyzing how sensitive payment information is handled, stored, and transmitted within an organization, and identifying any vulnerabilities that could lead to data breaches or non-compliance. Organizations use the findings from the assessment to implement security controls and processes that help protect cardholder data and maintain PCI DSS compliance.

What are the key skills and qualifications needed to thrive as a PCI DSS risk assessor, and why are they important?

To thrive as a PCI DSS Risk Assessor, you need expertise in information security, risk management, compliance frameworks, and ideally a degree in IT or cybersecurity. Familiarity with PCI DSS standards, risk assessment tools, vulnerability scanners, and certifications like PCI Professional (PCIP) or Certified Information Systems Auditor (CISA) is typically required. Strong analytical thinking, communication, and attention to detail are crucial soft skills for effective risk evaluation and reporting. These skills and qualifications are vital to ensure organizations maintain compliance, reduce risk, and protect sensitive payment card data.

What are some common challenges faced during PCI DSS risk assessments, and how can they be addressed?

A frequent challenge in PCI DSS risk assessments is ensuring comprehensive identification and documentation of all systems and processes that store, process, or transmit cardholder data. Overlooking assets or data flows can lead to compliance gaps. Additionally, coordinating with various departments to collect accurate information can be complex. These challenges can be addressed by establishing clear communication channels, using detailed data flow diagrams, and conducting regular cross-functional meetings to maintain up-to-date asset inventories and processes.

What is the difference between Pci Dss Risk Assessment vs Pci Dss Compliance Analyst?

AspectPci Dss Risk AssessmentPci Dss Compliance Analyst
Primary FocusIdentifying and evaluating security risks related to PCI DSS requirementsEnsuring ongoing compliance with PCI DSS standards and policies
ResponsibilitiesRisk identification, vulnerability assessment, mitigation planningPolicy implementation, audit preparation, compliance documentation
Required SkillsRisk management, security assessment, knowledge of PCI DSSCompliance auditing, documentation, regulatory knowledge
Work EnvironmentSecurity teams, risk management departmentsCompliance teams, audit departments

While both roles involve PCI DSS standards, the Pci Dss Risk Assessment focuses on identifying and evaluating security risks, whereas the Pci Dss Compliance Analyst concentrates on maintaining compliance and preparing for audits. Understanding these differences helps organizations assign the right responsibilities to ensure security and compliance.

What job categories do people searching Pci Dss Risk Assessment jobs in Utah look for?

The top searched job categories for Pci Dss Risk Assessment jobs in Utah are:

What cities in Utah are hiring for Pci Dss Risk Assessment jobs?

Cities in Utah with the most Pci Dss Risk Assessment job openings:

Senior Governance, Risk, and Compliance (GRC) Analyst (Remote)

RainFocus

Orem, UT

Full-time

Retirement, PTO

Posted 6 days ago


Job description

RainFocus, one of the most innovative software companies, is in search of an exceptional Senior Governance, Risk, and Compliance (GRC) Analyst
 
About RainFocus
 
RainFocus cares about its employees, customers, and the world in which we live. Our rapidly growing team serves Fortune 500 companies like Adobe, Cisco, IBM, Oracle, VMware, and others to prepare and execute in-person, virtual, and hybrid events across the world. Those events are delivered through our industry-disrupting software platform, with groundbreaking business intelligence, to elevate the attendee experience, streamline event operations, and accelerate marketing results. We are well-funded, growing fast, and building a company that is changing the market - it will be challenging, fun, and exciting.

About the Role

We are seeking a highly skilled and motivated Senior GRC Analyst to join our Security and Privacy team. In this role, you will own and grow RainFocus's governance, risk, and compliance program - maintaining our control framework, leading risk assessments, supporting audits, and driving the program's maturity forward rather than simply maintaining the status quo. You will report directly to the CISO and have significant ownership from day one.

Key Responsibilities:
Lead RainFocus's GRC program across SOC 2, ISO 27001, PCI DSS, and other client/regulatory compliance frameworks, including audit prep, evidence collection, and auditor relationships.
 
Manage and mature our control framework, mapping new regulations and conducting gap assessments.
 
Own the annual security risk assessment process (NIST SP 800-30 methodology), including stakeholder interviews, risk scoring, and residual risk tracking.
 
Maintain and update security policies, standards, and documentation to ensure compliance with industry best practices.
 
Partner with Engineering and Security to mature vulnerability management and secrets-scanning practices, moving these from reactive to proactive, pre-deployment controls.
 
Help build out and operationalize a Data Loss Prevention (DLP) program, including policy design and rollout across email, endpoint, and cloud storage.
 
Grow and mature RainFocus's security awareness training program.
 
Drive AI governance efforts - policy, tooling, and monitoring for approved vs. unapproved AI tool usage across the company.
 
Identify and help close Shadow IT / unmanaged SaaS visibility gaps in partnership with IT.
 
Collaborate with cross-functional teams to implement risk management practices and ensure compliance across the organization.
 
Respond to security and privacy inquiries from clients, partners, and employees.
 
Prepare and present reports on the organization's security and privacy compliance status, including program maturity and remediation progress.
Stay abreast of emerging security threats, vulnerabilities, and compliance requirements.
Qualifications:

Bachelor's degree in Technology, Cybersecurity, or a related field is highly desirable.

6+ years of proven experience in GRC, IT audit, information security compliance, or a related field.

In-depth knowledge of relevant regulations, standards, and frameworks (e.g., SOC 2, ISO 27001, PCI DSS, NIST 800-series, GDPR, and others).

Experience running or contributing heavily to formal risk assessments - not just tracking a compliance checklist.

Professional certifications such as CISA, CRISC, CISSP, CIPP, or CIPM are highly desirable.

Familiarity with modern security tooling such as Drata, OneTrust, Vanta, etc.

Strong analytical and problem-solving skills, with keen attention to detail.

Excellent communication and interpersonal skills to work effectively with technical and non-technical stakeholders.

Ability to manage multiple projects and meet deadlines in a fast-paced environment.

Experience with cloud security and compliance frameworks is a plus.

Experience with OneTrust or related GRC technologies is a plus.

Personal Characteristics:

Strong work ethic and commitment to excellence.

Ability to work independently and as part of a team.

Excellent problem-solving and analytical skills.

Strong communication and interpersonal skills.

Ability to adapt to change and learn quickly.

Passion for security and privacy.

Why work at RainFocus?
 
At RainFocus we delight millions of attendees at large-scale events by delivering better insights, experiences, and marketing. We were able to pivot our product and services offering in 2020 to continue growing and serving new clients and events.
 
As a member of the RainFocus team, you will have the opportunity to experience first-hand the impact of our platform at events around the world. Additionally, RainFocus offers competitive salaries, competitive benefits, 401k, generous PTO, and countless other team building activities. 
 
What are you waiting for? Apply today! We need more talented, hard-working, fun-loving team members just like yourself!
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
apply for this job