1

Pci Dss Risk Assessment Jobs (NOW HIRING)

... PCI DSS, etc. Ability to configure and/or maintain 3rd party vendor risk management tools (such as OneTrust vendor assessment or a similar tool ) for third party risk assessments is a plus One or ...

Skills Compliance, Security, Risk management, Risk assessment, Risk analysis, payment card industry, pci compliance, Pci, Pci dss, aws, project management, program management, data governance ...

New

Showing results 41-60

Pci Dss Risk Assessment information

See salary details

$14

$30

$74

How much do pci dss risk assessment jobs pay per hour?

As of Aug 15, 2026, the average hourly pay for pci dss risk assessment in the United States is $30.34, according to ZipRecruiter salary data. Most workers in this role earn between $19.47 and $38.70 per hour, depending on experience, location, and employer.

What is a PCI DSS risk assessment?

A PCI DSS risk assessment is a formal process required by the Payment Card Industry Data Security Standard (PCI DSS) to identify, evaluate, and address potential risks that could impact the security of cardholder data. It involves analyzing how sensitive payment information is handled, stored, and transmitted within an organization, and identifying any vulnerabilities that could lead to data breaches or non-compliance. Organizations use the findings from the assessment to implement security controls and processes that help protect cardholder data and maintain PCI DSS compliance.

What are the key skills and qualifications needed to thrive as a PCI DSS risk assessor, and why are they important?

To thrive as a PCI DSS Risk Assessor, you need expertise in information security, risk management, compliance frameworks, and ideally a degree in IT or cybersecurity. Familiarity with PCI DSS standards, risk assessment tools, vulnerability scanners, and certifications like PCI Professional (PCIP) or Certified Information Systems Auditor (CISA) is typically required. Strong analytical thinking, communication, and attention to detail are crucial soft skills for effective risk evaluation and reporting. These skills and qualifications are vital to ensure organizations maintain compliance, reduce risk, and protect sensitive payment card data.

What is the difference between Pci Dss Risk Assessment vs Pci Dss Compliance Analyst?

AspectPci Dss Risk AssessmentPci Dss Compliance Analyst
Primary FocusIdentifying and evaluating security risks related to PCI DSS requirementsEnsuring ongoing compliance with PCI DSS standards and policies
ResponsibilitiesRisk identification, vulnerability assessment, mitigation planningPolicy implementation, audit preparation, compliance documentation
Required SkillsRisk management, security assessment, knowledge of PCI DSSCompliance auditing, documentation, regulatory knowledge
Work EnvironmentSecurity teams, risk management departmentsCompliance teams, audit departments

While both roles involve PCI DSS standards, the Pci Dss Risk Assessment focuses on identifying and evaluating security risks, whereas the Pci Dss Compliance Analyst concentrates on maintaining compliance and preparing for audits. Understanding these differences helps organizations assign the right responsibilities to ensure security and compliance.

What are some common challenges faced during PCI DSS risk assessments, and how can they be addressed?

A frequent challenge in PCI DSS risk assessments is ensuring comprehensive identification and documentation of all systems and processes that store, process, or transmit cardholder data. Overlooking assets or data flows can lead to compliance gaps. Additionally, coordinating with various departments to collect accurate information can be complex. These challenges can be addressed by establishing clear communication channels, using detailed data flow diagrams, and conducting regular cross-functional meetings to maintain up-to-date asset inventories and processes.
More about Pci Dss Risk Assessment jobs

What cities are hiring for Pci Dss Risk Assessment jobs?

Cities with the most Pci Dss Risk Assessment job openings:

What states have the most Pci Dss Risk Assessment jobs?

States with the most job openings for Pci Dss Risk Assessment jobs include:

Infographic showing various Pci Dss Risk Assessment job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 88% Full Time, 8% Part Time, and 3% Contract. Highlights an 88% Physical, 5% Hybrid, and 7% Remote job distribution, with an average salary of $63,100 per year, or $30.3 per hour.

Cybersecurity Risk and Compliance Manager

Jobtailor

New Haven, CT • On-site

$120 - $160/hr

Other

Posted 9 days ago


Job description

  • The Cybersecurity Risk and Compliance Manager is a key role in ASSA ABLOYs strategy to accelerate the organization’s cyber resilience.
  • The newly created position will report to ASSA ABLOY America’s Division CISO and will be accountable for the divisional Cyber Risk and Compliance program.
  • The role will build strong alliances with all functions and sub-groups across the division to help in the process of identifying, analyzing, quantifying, and treating risks.
  • In addition, this role will be responsible to define, measure, and report on Information security compliance within the operation of an ISMS, providing relevant KPIs and KRIs.
  • Establish divisional cyber risk governance
  • Build divisional risk management culture and methodologies
  • Maintain divisional cyber risk register
  • Establish and execute risk assessment and management with business functions
  • Build and maintain Cyber Risk and Compliance Reporting dashboards and reports for stakeholder groups
  • Definition, monitoring and reporting of Key Risk indicators and relevant Key performance indicators
  • Create, modify and implement divisional policies and directives based on Information security standards ISO27001 and NIST
  • Develop deep coalitions with business partners to anchor Information Security into Policy framework
  • Collaborate with corporate counsels and HR departments to monitor enforcement of standards and regulations
  • Review policies periodically to identify hidden risks or non-conformity issues
  • Develop and oversee control systems to prevent or deal with violations of legal guidelines and internal policies
  • Evaluate the efficiency of controls and improve them continuously.
Requirements
  • Professional certification in Information Security CISM or CISSP
  • Professional certification in CRISC or ISO27005 preferred
  • Minimum 3 years of experience in a global cyber security management role
  • Proven experience of implementing and operating information security risk and compliance management within an environment of similar size and global representation
  • Strong knowledge of current digital service delivery concepts, technology, and its cyber protection capabilities
  • Good enterprise business knowledge with the ability to articulate risks in clear business language
  • Good knowledge of global regulatory compliance demands in the areas of privacy, industry or governmental segments. (GDPR, CCPA, PCI-DSS, critical infrastructure, Patriot Act…)
  • Engaged, committed, creative, hands-on and self-motivated personality
  • Expert knowledge and proven success in implementing Information Security Management System (ISMS) in an enterprise organization
  • Analytical and conceptual ability to identify compliance risks and develop practical solutions and adjustments
  • Excellent business and IT communication skills in the English language.
Core Competencies

Demonstrates expertise in Cyber Risk and Compliance Management, with a strong focus on implementing Information Security Management Systems (ISMS) and ensuring compliance with global regulatory standards. Capable of building risk management cultures and effectively communicating risks in business language.

Highest-signal resume keywords
  • CISM Certification
  • CISSP Certification
  • ISMS Implementation
  • Cyber Risk Governance
  • Regulatory Compliance Knowledge
ATS Optimization Keywords Hard Skills
  • Information Security Management
  • Risk Assessment
  • Compliance Management
  • KPI Development
  • Risk Register Maintenance
  • Policy Development
  • Control System Evaluation
  • Analytical Problem Solving
  • Digital Service Delivery Concepts
  • Cyber Protection Capabilities
Soft Skills
  • Engaged Personality
  • Creative Thinking
  • Self-Motivation
  • Effective Communication
Certifications & Qualifications
  • CISM
  • CISSP
  • CRISC
  • ISO27005
Industry Keywords
  • GDPR
  • CCPA
  • PCI-DSS
  • Critical Infrastructure
  • Patriot Act
Tools & Technologies
  • Risk Management Dashboards
  • Compliance Reporting Tools
#J-18808-Ljbffr