1

Pci Dss Risk Assessment Jobs in York, SC (NOW HIRING)

Lead risk assessments and gap assessments across business processes and technologies, from ... Working knowledge of security and risk frameworks such as NIST CSF, NIST 800-53, PCI-DSS, HIPAA, or ...

Sr. GRC Analyst

Charlotte, NC · On-site

$95K - $105K/yr

... PCI DSS, NIST CSF) to eliminate redundancies and improve the organization's security posture. * GRC Reporting: Track and report on GRC program health across compliance posture, risk register status ...

... assessments, supporting the Risk Management Framework (RMF) process, and managing the Security ... Experience working with financial services regulatory frameworks, such as PCI-DSS, SOX, or GLBA.

... assessments, supporting the Risk Management Framework (RMF) process, and managing the Security ... Experience working with financial services regulatory frameworks, such as PCI-DSS, SOX, or GLBA.

Sr Internal Auditor - Technology

Charlotte, NC · On-site

$82K - $102K/yr

... PCI DSS). 6. Good decision-making skills. 7. Strong knowledge of audit principles, practices, and methodologies including risk assessment, and audit documentation. 8. Good aptitude for learning ...

... PCI DSS). 6. Good decision-making skills. 7. Strong knowledge of audit principles, practices, and methodologies including risk assessment, and audit documentation. 8. Good aptitude for learning ...

... internal audit, risk, and compliance teams to support assessments and regulatory reviews. • ... ISO, PCI-DSS). • Familiarity with TLS, SSH, and other secure communication protocols. • ...

... assess growth potential, strategically segmenting the portfolio into high-touch individual ... Familiarity with PCI DSS Compliance, credit/debit card association regulations, and NACHA rules ...

next page

Showing results 1-20

Pci Dss Risk Assessment information

See York, SC salary details

$13

$28

$68

How much do pci dss risk assessment jobs pay per hour?

As of Aug 26, 2026, the average hourly pay for pci dss risk assessment in York, SC is $28.13, according to ZipRecruiter salary data. Most workers in this role earn between $18.08 and $35.87 per hour, depending on experience, location, and employer.

What is a PCI DSS risk assessment?

A PCI DSS risk assessment is a formal process required by the Payment Card Industry Data Security Standard (PCI DSS) to identify, evaluate, and address potential risks that could impact the security of cardholder data. It involves analyzing how sensitive payment information is handled, stored, and transmitted within an organization, and identifying any vulnerabilities that could lead to data breaches or non-compliance. Organizations use the findings from the assessment to implement security controls and processes that help protect cardholder data and maintain PCI DSS compliance.

What are the key skills and qualifications needed to thrive as a PCI DSS risk assessor, and why are they important?

To thrive as a PCI DSS Risk Assessor, you need expertise in information security, risk management, compliance frameworks, and ideally a degree in IT or cybersecurity. Familiarity with PCI DSS standards, risk assessment tools, vulnerability scanners, and certifications like PCI Professional (PCIP) or Certified Information Systems Auditor (CISA) is typically required. Strong analytical thinking, communication, and attention to detail are crucial soft skills for effective risk evaluation and reporting. These skills and qualifications are vital to ensure organizations maintain compliance, reduce risk, and protect sensitive payment card data.

What are some common challenges faced during PCI DSS risk assessments, and how can they be addressed?

A frequent challenge in PCI DSS risk assessments is ensuring comprehensive identification and documentation of all systems and processes that store, process, or transmit cardholder data. Overlooking assets or data flows can lead to compliance gaps. Additionally, coordinating with various departments to collect accurate information can be complex. These challenges can be addressed by establishing clear communication channels, using detailed data flow diagrams, and conducting regular cross-functional meetings to maintain up-to-date asset inventories and processes.

What is the difference between Pci Dss Risk Assessment vs Pci Dss Compliance Analyst?

AspectPci Dss Risk AssessmentPci Dss Compliance Analyst
Primary FocusIdentifying and evaluating security risks related to PCI DSS requirementsEnsuring ongoing compliance with PCI DSS standards and policies
ResponsibilitiesRisk identification, vulnerability assessment, mitigation planningPolicy implementation, audit preparation, compliance documentation
Required SkillsRisk management, security assessment, knowledge of PCI DSSCompliance auditing, documentation, regulatory knowledge
Work EnvironmentSecurity teams, risk management departmentsCompliance teams, audit departments

While both roles involve PCI DSS standards, the Pci Dss Risk Assessment focuses on identifying and evaluating security risks, whereas the Pci Dss Compliance Analyst concentrates on maintaining compliance and preparing for audits. Understanding these differences helps organizations assign the right responsibilities to ensure security and compliance.

What cities near York, SC are hiring for Pci Dss Risk Assessment jobs?

Cities near York, SC with the most Pci Dss Risk Assessment job openings:

Infographic showing various Pci Dss Risk Assessment job openings in York, SC as of August 2026, with employment types broken down into 1% As Needed, 83% Full Time, 14% Part Time, and 2% Contract. Highlights an 84% Physical, 5% Hybrid, and 11% Remote job distribution, with an average salary of $58,512 per year, or $28.1 per hour.

Lead Consultant, IT Risk & Compliance

Forvis-Mazars

Charlotte, NC • On-site

$120 - $160/hr

Other

Posted 7 days ago


Job description

Lead Consultant, Sensitive Data Compliance

Ref #

2237113

Date Published

Friday, July 24, 2026

City

Charlotte

State

North Carolina

Country

United States

Job Category

Advertised Location

US-FL-Fort Lauderdale, US-GA-Atlanta, US-MO-Kansas City, US-MO-Springfield, US-NC-Charlotte, US-PA-Pittsburgh, US-TX-Dallas, US-TX-Houston

Working time

Full Time

Description & Requirements

The Sensitive Data Compliance Lead Consultant role at FORVIS MAZARS working with the Sensitive Data Cyber Compliance leadership to define, refine and expand the firm’s practice areas and services offerings. This role will be primarily focused on supporting PCI DSS projects with clients of all size, complexity, and industry, including international and Fortune 1000 companies, and U.S. Department of Defense contractors.

The right individual will help lead PCI DSS projects as an experienced subject matter resource with previous experience with various US federal compliance frameworks, including PCI DSS, CMMC / NIST 800-171, FISMA, FedRAMP, and NIST CSF.

What You Will Do:

  • Lead and execute PCI compliance related assessments and sensitive data compliance assessments for enterprise clients by identifying key risks and gaps and documenting clear reporting with proof-of-concept and recommendations.
  • Help execute information security risk and compliance assessments against federal and other government required cyber frameworks, NIST 800-171, NIST 800-53, FedRAMP, and the NIST Cybersecurity Framework, among others.
  • Assesses IT environments and identifies gaps and vulnerabilities that impair compliance with required standards and assists with the documenting of clear reporting with proof-of-concept and recommendations.
  • Help the IT Risk & Compliance team maintain industry leading solutions for PCI and other evolving cybersecurity compliance frameworks but pursuing continuing education.
  • Participate on consulting teams with large enterprise clients in multiple industries to:
  • Assist organizations with defining boundaries of in-scope systems.
  • Assisting clients with documentation development, including system security plans (SSP), policies/procedures, strategy development, and plans of action and milestones (POAMs).
  • Define and integrate solutions, including tools, processes, and data flows to maintain required compliance obligations and reduce cyber risk.
  • Effectively manage multiple projects concurrently, helping define and drive project management to keep projects on schedule and within budget.

Minimum Qualifications:

  • Bachelor’s Degree in Cybersecurity, MIS, Computer Science, or a similar discipline
  • Payment Card Industry Qualified Security Assessor (PCI QSA) credential.
  • Cybersecurity and/or privacy-related certifications (e.g. CISSP, CISA, CISM, preferred).
  • Experience providing consulting, assessment, or implementation services associated with federal cyber compliance frameworks, including NIST 800-171, FISMA, or FedRAMP.
  • Working knowledge of cyber risk management frameworks (CMMC / NIST 800-171, FISMA, FedRAMP, NIST Cybersecurity Framework, NIST SP 800-53)
  • At least 5 years of experience in cybersecurity, IT audit, or governance, risk, and compliance required, including 1 - 2 of the following frameworks:
  • Payment Card Industry Data Security Standard (PCI DSS)
  • NIST Cybersecurity Framework (CSF)
  • ISO 27001 / 27002
  • FedRAMP / StateRAMP
  • FISMA and NIST SP 800-53
  • CIS Critical Security Control

#LI-ATL, #LI-SGF, #LI-CLTSP, #LI-DFW #LI-GM1

About Forvis Mazars, LLP

Forvis Mazars, LLP is an independent member of Forvis Mazars Global, a leading global professional services network. Ranked among the largest public accounting firms in the United States, our 7,000+ team members deliver assurance, tax, and consulting services to clients in all 50 states and internationally.

With a legacy spanning more than 100 years, we’re building something different. We are guided by a shared promise: Together, we create extraordinary experiences. That means delivering an Unmatched Client Experience® while creating a workplace where relationships matter, learning fuels growth, and every person feels valued and supported to thrive.

What We Offer

Our robust total rewards program and flexible work environment reflect our commitment to people, careers, and well-being—empowering our team to grow and thrive while delivering exceptional service. To explore what makes working at Forvis Mazars special, visit www.forvismazars.us/careers.

Legal Notice

Forvis Mazars, LLP is an equal opportunity/affirmative action employer in accordance with applicable law. Employment selection and related decisions are made without regard to age, race, color, sex, sexual orientation, national origin, religion, genetic information, disability, protected veteran status, gender identity, or other protected classifications.

It is Forvis Mazars, LLP standard policy not to accept unsolicited referrals or resumes from any source other than directly from candidates.

Forvis Mazars, LLP expressly reserves the right not to consider any unsolicited referrals, resumes or CVs from vendors including and without limitation, search firms, staffing agencies, fee‑based referral services, and recruiting agencies.

Forvis Mazars, LLP further reserves the right not to pay a fee to a recruiter or recruiting agency unless such recruiter or recruiting agency has a signed vendor agreement with Forvis Mazars, LLP. Any resume(s) or CV(s) submitted to anyone working for Forvis Mazars, LLP, or submitted to a Forvis Mazars, LLP general email, without having a Forvis Mazars, LLP vendor agreement in place, will be considered the property of Forvis Mazars, LLP.

#J-18808-Ljbffr