1

Pci Isa Jobs (NOW HIRING)

Relevant certifications such as CFE (Certified Fraud Examiner), CISA (Certified Information Systems Auditor), or PCI-ISA (Internal Security Assessor) are highly desirable. What We Offer: PayCargo has ...

Manager, Cyber Security

$135K - $155K/yr

ISO 27001 Lead Implementer or Lead Auditor, PCI ISA, or CISA is a plus Physical Demands amp; Work Environment This position may require over 40 hours per week and includes regular physical activity ...

Relevant certifications such as CISSP, CISA, PCI ISA, ISO 27001 Lead Auditor, or equivalent experience. Even better... * Experience supporting AI platforms, fintech, healthcare, or other highly ...

next page

Showing results 1-20

Pci Isa information

See salary details

$20

$22

$23

How much do pci isa jobs pay per hour?

As of Jun 8, 2026, the average hourly pay for pci isa in the United States is $22.28, according to ZipRecruiter salary data. Most workers in this role earn between $21.88 and $22.84 per hour, depending on experience, location, and employer.

What are some common challenges faced by PCI ISA professionals when ensuring ongoing compliance within an organization?

PCI ISA professionals often encounter challenges such as keeping up with evolving PCI DSS standards, ensuring all departments adhere to security protocols, and managing regular assessments across complex IT environments. They must coordinate with multiple teams—including IT, compliance, and business units—to address vulnerabilities and implement corrective actions promptly. Staying organized and maintaining clear documentation are key, as the role requires balancing day-to-day operations with long-term compliance initiatives.

What are the key skills and qualifications needed to thrive as a PCI ISA (Internal Security Assessor), and why are they important?

To thrive as a PCI ISA, you need strong knowledge of information security principles, PCI DSS requirements, and related compliance frameworks, usually backed by relevant experience and an official PCI ISA certification. Familiarity with security assessment tools, compliance management systems, and reporting software is vital for effectively identifying and addressing vulnerabilities. Attention to detail, strong analytical thinking, and clear communication are essential soft skills for interpreting standards and collaborating with internal stakeholders. These competencies ensure accurate self-assessments, ongoing PCI DSS compliance, and protection of sensitive payment card data within the organization.

What is the difference between Pci Isa vs Pci Technician?

AspectPci IsaPci Technician
CertificationsTypically requires Pci-specific certifications and technical trainingRequires Pci certifications, technical skills, and possibly vendor-specific training
Work EnvironmentPrimarily in data centers, server rooms, or IT departmentsIn data centers, network operations, or IT support settings
Employer & IndustryUsed by companies managing Pci infrastructure and complianceEmployers in IT, telecommunications, and data management sectors

Both Pci Isa and Pci Technician roles involve working with Pci systems and require similar certifications. However, Pci Isa often refers to a specialized role focusing on Pci infrastructure setup, while Pci Technician emphasizes hands-on maintenance and troubleshooting. Both roles are vital in IT environments managing Pci hardware and compliance.

What are PCI ISAs?

PCI ISAs, or Payment Card Industry Internal Security Assessors, are professionals certified by the PCI Security Standards Council to assess and validate an organization's compliance with PCI Data Security Standards (PCI DSS) from within the organization. Unlike external Qualified Security Assessors (QSAs), ISAs are employees of the organization they assess and help maintain ongoing PCI DSS compliance. They play a critical role in strengthening security practices, preparing for assessments, and acting as a liaison between internal teams and external auditors.
More about Pci Isa jobs
What states have the most Pci Isa jobs? States with the most job openings for Pci Isa jobs include:
What job categories do people searching Pci Isa jobs look for? The top searched job categories for Pci Isa jobs are:
Infographic showing various Pci Isa job openings in the United States as of May 2026, with employment types broken down into 90% Full Time, and 10% Contract. Highlights an 70% In-person, and 30% Remote job distribution, with an average salary of $46,343 per year, or $22.3 per hour.
Sr. Manager, Information Security

Sr. Manager, Information Security

Advance Auto Parts

Raleigh, NC • Hybrid

Full-time

Posted 18 days ago


Job description

Job Description

Role Summary

The Cybersecurity Compliance Manager is responsible for designing, operating, and continuously improving the company's cybersecurity compliance program within a largescale retail environment. This role leads the daytoday execution of compliance activities using the OneTrust GRC platform, with a strong focus on automation, controls monitoring, and auditready evidence generation.

The role ensures enterprise alignment with NIST Cybersecurity Framework (CSF) and regulatory requirements including PCI DSS, HIPAA, and U.S. state privacy regulations (CCPA/CPRA).

This role is hybrid and based in our corporate headquarters in Raleigh, NC.

Key Responsibilities

Cybersecurity Compliance Program Execution

  • Operate and mature the enterprise cybersecurity compliance program aligned to NIST CSF and applicable regulatory frameworks (PCI DSS, HIPAA, CCPA/CPRA).
  • Translate regulatory and framework requirements into clear, monitored internal controls mapped to business systems and processes.
  • Serve as a subject matter expert for cybersecurity control compliance across IT, cloud, retail, ecommerce, and corporate environments.
  • Lead daytoday use of the OneTrust GRC compliance modules, including:
    • Control libraries and framework mappings
    • Automated evidence collection and surveys
    • Workflowdriven control testing and remediation tracking
    • Compliance reporting and dashboards
  • Implement and enhance automation to reduce manual effort and eliminate pointintime compliance gaps.
  • Partner with IT, Audit and Security teams to integrate OneTrust with upstream systems where feasible (e.g., vulnerability management, asset inventories).

Controls Monitoring & Assurance

  • Establish and operate a continuous controls monitoring (CCM) model in dynamic retail and cloud environments.
  • Monitor control performance, SLA adherence, and exception trends across inscope systems (e.g., PCI environments, customer data platforms).
  • Track control effectiveness metrics and produce regular compliance reporting for leadership.
  • Coordinate and support internal and external audits and assessments, including:
    • PCI DSS attestations
    • HIPAA risk and compliance reviews
    • Privacy regulatory inquiries and assessments
  • Maintain auditready evidence within OneTrust and drive timely remediation of findings.
  • Partner with IT, Internal Audit, Legal, and Privacy to ensure consistent interpretation and execution of control requirements.
  • Work closely with system owners, IT leaders, cybersecurity team, and business partners to ensure controls are properly implemented and operated.
  • Assign control ownership, track accountability, and facilitate risk acceptance where appropriate.
  • Provide guidance and training to control owners on compliance expectations, evidence requirements, and remediation processes.

Required Qualifications

  • 6+ years of experience in cybersecurity compliance, GRC, or IT risk management, preferably in a retail or consumerfacing enterprise.
  • Strong working knowledge of:
    • NIST Cybersecurity Framework (CSF)
    • PCI DSS
    • HIPAA Security Rule
    • CCPA/CPRA and U.S. privacy obligations
  • Experience supporting audits and regulatory assessments in complex, distributed environments.

Preferred Qualifications

  • Handson experience with OneTrust GRC (or comparable GRC platforms) including compliance automation and evidence workflows.
  • Experience implementing continuous controls monitoring (CCM) or security metrics programs.
  • Retail industry experience supporting pointofsale (POS), ecommerce, or cardholder data environments (CDE).
  • Familiarity with thirdparty risk and vendor compliance monitoring.
  • Relevant certifications (preferred, not required):
    • CISA, CISSP, CRISC, PCI ISA, or similar.

Key Competencies

  • Strong analytical and riskbased thinking
  • Ability to translate regulatory language into practical, businessaligned controls
  • Excellent stakeholder communication and influence skills
  • Detailoriented with a strong audit and evidence mindset
  • Comfortable operating in fastmoving, matrixed retail organizations
We are an Equal Opportunity Employer and do not discriminate against any employee or applicant for employment because of race, color, sex, age national origin, religion, sexual orientation, gender identity, status as a veteran and basis of disability or any other federal, state or local protected class. We comply with all applicable federal, state, and local laws.

California Residents click below for Privacy Notice:

https://jobs.advanceautoparts.com/us/en/disclosures

Advance Auto Parts logo

About Advance Auto Parts

Sourced by ZipRecruiter

At Advance Auto Parts we have a passion for YES. Each day we are motivated by a passion to help our Customers. We have a commitment to advance the lives of our fellow Team Members, Customers, and the Communities where we live and work.

Industry

Motor vehicle and motor vehicle parts wholesalers, retail, internet and it and elementary and secondary schools

Company size

10,000+ Employees

Headquarters location

Raleigh, NC, US