PCI Compliance Specialist
$110.69k - $143.75kConduent
PCI Compliance Specialist About the Role We are seeking a detail-oriented and operationally disciplined PCI Compliance Specialist to serve as the execution backbone of a two-person compliance team within Conduent's PCI DSS Compliance Tower. Working in close partnership with a PCI Internal Security Assessor (ISA), you will be the day-to-day operational owner of compliance activities for 2-3 assigned business units - managing evidence collection, control monitoring, artifact readiness, and compliance tracking across every stage of the annual PCI-DSS governance cycle. This role is purpose-built for a practitioner who thrives in structured, detail-intensive environments and takes personal pride in the accuracy, completeness, and timeliness of compliance records. You will be the organized engine that keeps the team's assigned scopes audit-ready year-round, freeing the ISA to focus on assessor relationships, risk advisory, and stakeholder engagement. Responsibilities Evidence Collection & Artifact Management * Serve as the primary evidence coordinator for all PCI-DSS control domains across 2-3 assigned business unit scopes, managing artifact collection from IT, operations, HR, and business unit control owners. * Maintain a continuous, audit-ready evidence repository for each assigned scope - organizing artifacts by control requirement, testing frequency, and assessment cycle. * Develop and distribute standardized evidence request packages to control owners, providing clear instructions on format, retention period, and submission deadlines. * Validate evidence submissions for completeness, accuracy, and alignment to the specific PCI-DSS v4.0 requirement being satisfied before logging in the repository. * Track evidence gaps, follow up on outstanding submissions, and escalate persistent collection failures to the ISA for stakeholder intervention. * Maintain version control and change logs for all compliance artifacts to support QSA review and year-over-year comparison. Control Monitoring & Testing Calendar Execution * Execute the control monitoring calendar for each assigned scope, performing or coordinating scheduled PCI-DSS control tests at daily, weekly, monthly, quarterly, and annual frequencies as defined by the ISA. * Document control test results with supporting evidence, noting pass/fail status, observations, and any exceptions identified during testing. * Track and log control exceptions, working with the ISA to initiate issue tickets and assign remediation owners through established workflows. * Coordinate and document quarterly User Access Reviews (UARs) for cardholder data environment (CDE) systems, collecting attestations from system owners and flagging any orphaned or excess access for remediation. * Support Monthly vulnerability scan cycles by coordinating scan scheduling with IT teams, collecting results, and ensuring risk ratings and remediation tickets are opened within required timeframes. * Maintain the control monitoring log and provide a monthly status summary to the ISA for KPI reporting and dashboard updates. Audit Support & Recertification Coordination * Support the ISA in executing the annual PCI-DSS recertification process for all assigned scopes - managing logistics, scheduling, evidence packaging, and communication with internal stakeholders throughout the assessment window. * Prepare and maintain structured evidence binders and audit response packages for each control domain, ensuring all artifacts are labeled, indexed, and traceable to specific PCI-DSS v4.0 requirements. * Track all QSA Requests for Information (RFIs) in the team's audit management system, coordinating timely responses from control owners and flagging items at risk of missing SLA to the ISA. * Maintain a master findings tracker for all assigned scopes, logging audit findings, management responses, remediation owners, target dates, and closure evidence across internal and external audit cycles. * Support the ISA in preparing Attestations of Compliance (AOCs), Self-Assessment Questionnaires (SAQs), and Report on Compliance (ROC) documentation by compiling required data and validating input accuracy. * Assist with post-audit retrospectives by compiling evidence submission timelines, RFI logs, and findings summaries for lessons-learned analysis. Scope Documentation & Registry Maintenance * Maintain and update CDE boundary diagrams, data flow diagrams, and network segmentation documentation for each assigned scope, initiating updates within 30 days of any environment change. * Maintain the risk acceptance register for assigned scopes, tracking open risk acceptances, expiry dates, residual risk ratings, and required annual reviews. * Track compensating controls for assigned scopes, ensuring each has documented rationale, compensating measures, and a current review date on file. * Monitor policy and procedure currency for assigned scopes, flagging documents approaching their review date and coordinating with the ISA and policy owners to initiate updates. * Maintain the third-party service provider compliance tracking log for assigned scopes, following up annually on AOC renewals and flagging expired certifications to the ISA. Compliance Training & Awareness Coordination * Coordinate annual PCI-DSS awareness training delivery for control owners, IT staff, and business operations personnel within assigned scopes - tracking enrollment, completion rates, and issuing completion certificates. * Develop and maintain training attendance records and completion reports for all assigned scopes to support audit evidence requirements. * Assist the ISA in preparing control owner briefing materials, interview guides, and evidence submission instructions ahead of assessment windows. * Support onboarding of new control owners within assigned business units, walking them through evidence expectations, submission formats, and the compliance calendar. Requirements Education & Experience * Bachelor’s degree in information security, Business Administration, Information Systems, or a related field; equivalent professional experience considered. * 2+ years of experience in compliance, audit support, IT governance, or information security operations role. * Demonstrated experience managing evidence collection or documentation programs in a regulated environment (PCI-DSS, SOC 2, ISO 27001, HIPAA, or equivalent). * Prior experience working in or supporting a compliance team with recurring audit cycles is strongly preferred. Technical Knowledge * Working knowledge of PCI-DSS requirements, control testing concepts, and the annual recertification lifecycle (SAQ/ROC/AOC process familiarity required). * Understanding of cardholder data environment (CDE) scoping concepts, including data flows, network segmentation, and system component classification. * Familiarity with vulnerability management workflows, access review processes, and log review attestation procedures. * Experience using GRC platforms, ticketing systems (e.g., ServiceNow, Jira), and document management tools for compliance tracking. * Proficiency in Microsoft Excel, Word, and SharePoint for evidence management, status tracking, and reporting. Skills & Competencies * Exceptional organizational discipline with the ability to manage multiple concurrent evidence streams, deadlines, and tracking logs across 2-3 scopes without loss of accuracy. * Meticulous documentation habits - takes ownership of record accuracy, version control, and artifact completeness as a professional standard. * Strong written communication skills; able to draft clear, concise evidence requests, status updates, and compliance summaries for both technical and non-technical audiences. * Collaborative working style; able to build effective relationships with control owners, IT teams, and business unit staff to facilitate timely evidence submission. * Proactive follow-through - tracks open items to closure independently and escalate appropriately before deadlines are missed. * Comfort operating in structured, process-driven environments with clearly defined responsibilities and recurring compliance cycles. Preferred Skills Certifications * CompTIA Security+, PCIP, CISA, CRISC Qualifications * Experience supporting PCI-DSS assessments as a control owner coordinator, audit liaison, or compliance analyst in a BPO, financial services, or retail payments environment.
- Familiarity with GRC/evidence management platforms used in PCI audit cycles.
- Experience working across multiple business units or legal entities
- Retirement Savings: We will support you as you save for your future.
- Employee Discounts: We offer you access to a vast selection of global,
- Job Description Insight Global is seeking a PCI DSS Compliance Analyst for a remote contract opportunity based in the Louisville, KY area. This role involves ensuring PCI DSS compliance by implementing and validating new controls and processes, conducting assessments and...SuggestedContract workWork experience placementRemote work
- ...Job Title Payment Card Industry (PCI) SME Job Summary TestPros is seeking a Payment Card Industry (PCI) SME to provide consulting... ...officers, application owners, and service owners with PCI-DSS compliance tasks such as evidence preparation, evidence gathering and...SuggestedFull timePart timeFor contractorsRemote work
- RevSpring Inc in Oaks, Pennsylvania is seeking an IT Audit & Compliance Analyst responsible for driving audit execution and ensuring regulatory compliance with HITRUST, PCI DSS, and SOC 2 standards. The role requires effective collaboration across teams to translate complex...Suggested
$71k - $76k
Easterseals NH is seeking a Compliance Specialist II to enhance the organization’s compliance program. This role involves driving collaboration across departments, overseeing compliance audits, and ensuring adherence to regulatory requirements. Ideal candidates should have...SuggestedWork at office- A cybersecurity solutions provider is seeking a Consultant for SOC2 and PCI assessment roles based in the United States. Candidates should have at least 2 years of experience in IT consulting or auditing, along with a Bachelor's degree in a related field. Key responsibilities...SuggestedRemote jobWork at office
- MegaplanIT, LLC is seeking a Compliance Analyst based in Scottsdale, AZ, to manage compliance assessments and audits. The ideal candidate will have strong experience in IT security, ISO, PCI, and HIPAA compliance, along with excellent written and oral communication skills...Full time
- ...California is seeking a Senior Analyst for IT Governance, Risk & Compliance. This role involves managing the Information Security GRC... ...ensuring compliance with various regulations including HIPAA and PCI. Candidates should have a minimum of 5 years in IT audit or risk...
$184.8k
Hospitable, Inc is looking for a Senior Compliance Officer to lead their compliance initiatives. This role involves managing the SOC 2 Type II compliance program and rolling out PCI DSS compliance. The candidate should have significant experience in compliance programs,...Remote job$88.95k - $150.43k
...serve as the primary Subject Matter Expert (SME) for our global PCI DSS program at Commerce. We operate a highly mature PCI DSS 4.0... ...lead the continuous evolution of this program, ensuring that compliance is integrated into our "business as usual" (BAU) operations....Work at officeLocal area3 days per week- ...Hawk Winery and Restaurants is seeking an Information Security & Compliance Analyst in Downers Grove, IL. The successful candidate will... ...support the Governance, Risk, and Compliance program with a focus on PCI DSS 4.0 and SOX compliance. Responsibilities include audit...
- OTG is looking for a Security & Compliance Analyst to support and maintain PCI DSS compliance across all in-scope systems. The role involves conducting assessments, managing evidence collection, and working with IT and operations to ensure secure environments. Candidates...Remote job
- A leading entertainment company is seeking a Cyber Security Analyst to join its Cyber Security Compliance team. This role involves leading PCI compliance assessments and ensuring security controls align with regulatory standards. Ideal candidates should have 1-3 years of...Remote jobFull time
- Join Cooper's Hawk Winery as an Information Security & Compliance Analyst. This vital role focuses on executing the governance, risk, and compliance program with a focus on PCI DSS 4.0 and SOX compliance. You will coordinate audits, manage risk assessments, and ensure compliance...Flexible hours
- A leading IT consulting firm is seeking a PCI Compliance Security Analyst in St. Louis, MO to enhance compliance efforts and support UK Cyber Essentials certification. The role requires 3+ years of PCI experience, strong analytical skills, and project management capabilities...
$55 - $58 per hour
PCI Compliance Security Analyst - UK Cyber Essentials This range is provided by PTR Global. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more. Base pay range $55.00/hr - $58.00/hr Direct message the job poster from PTR...Full timeWork at officeFlexible hours$90k - $95k
...diagnostic solutions to some of the most critical questions in healthcare. Job Type: Full time Job Title: Regulatory & Compliance Specialist Location: Onsite - San Diego Salary Range: $90,000 - $95,000 Position Summary: The Quality and Regulatory...Full time- ...croissants, fluffy pancakes, and our large range of outstanding French brioches. Job Description: The Regulatory & Compliance Specialist ensures that Bakerly products, processes, and external partners comply with applicable food regulations, certification requirements...Full timeTemporary workWork at officeLocal areaFlexible hours
$85.12k - $95.76k
...Sr. Compliance Specialist The Sr. Compliance Specialist supports the execution and maintenance of site compliance programs to ensure adherence... ...regulatory requirements and company policies within PCI Pharma Services. This role supports internal audits, customer...Full timeFlexible hoursWeekend work- ...power the entire flow between fiat and crypto end to end, with compliance, identity checks, fraud prevention, and settlement all built... ...the Opportunity MoonPay is looking for a Regulatory Compliance Specialist to join our growing Compliance team. In this role, you will...Remote workWorldwideHome office
- ...Job Description Job Description The ADA & Regulatory Compliance Specialist (Associate II - Regulatory Support) position serves as the primary ADA compliance support contact for ADA Group InForce Operations and co-insured business. Responsibilities include supporting...Work experience placementWork at officeRemote work
- ...Appalachian Basin, the region we proudly call home and operate within. The Opportunity We are seeking a senior-level Regulatory Compliance Specialist with advanced technical expertise and strong leadership to oversee complex compliance activities across our midstream...For contractorsWork at officeLocal areaRemote work3 days per week
- ...day operations of the Quality Department. This includes Safe Quality Food (SQF) and United States Department of Agriculture (USDA) compliance, managing labels, supplier documentation, nutritional management, and document control. Essential Functions and...
- Motion Recruitment is seeking a Senior Compliance Analyst/Assessor in Annapolis, MD. This role emphasizes SOC 1/SOC 2 compliance and FedRAMP assessments. Ideal candidates will have over 4 years in cybersecurity compliance and risk assessment. The position involves leading...
- ...Lewis Center. This role requires extensive experience with rack-mounted enterprise hardware and plays a vital part in ensuring PCI compliance and efficient ITSM processes. The ideal candidate must have two or more years of experience in data center management, strong troubleshooting...Night shift
$80k - $90k
...lifestyle. Visit to learn more about the company and brands. Job Description: Monitor adherence to FDA/USDA/CFIA labeling compliance of import products including translation and labeling information verification. Lead regulatory compliance and interact with...$71k - $76k
...Compliance Specialist II Easterseals NH is excited to announce we are seeking candidates for Compliance Specialist II to support the growing... ...proper handling of sensitive and high-risk information Lead PCI compliance efforts, including oversight of PCI DSS adherence,...Full timeWork at officeMonday to Friday- ..., reliable information that supports Pavement Condition Index (PCI) calculations, reporting, and final deliverables. Working under... ...processing with human quality validation Quality Assurance & Standards Compliance Support QA/QC processes by reviewing datasets for adherence to...Work at officeRemote work
$85 - $120 per hour
...Benchmark , General Catalyst , Peter Thiel , Adam D'Angelo , Larry Summers , and Jack Dorsey . Position: Legal Expert — Compliance / Regulatory (Remote, Hourly) Type: Contract Compensation: $85–$120/hour Location: Remote Commitment: 20–40...Hourly payWeekly payContract workFor contractorsSummer workWork at officeImmediate startRemote work- ...Job Description Job Description Are you an experienced Recertification/Compliance Specialist ready to join our fantastic team of professionals? MMS Group is on the hunt for someone like YOU! As a Recertification/Compliance Specialist, you will be responsible for...Work at office
- ...programs, referral bonuses, and opportunities to advance while contributing to our charitable giveback initiatives. Social Compliance Specialist In this role, you’ll help ensure our operations and partners reflect our commitment to ethical sourcing and responsible...Local areaFlexible hoursShift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to PCI Compliance Specialist. Be the first to apply!
- research compliance analyst United States
- contract compliance specialist United States
- regulatory officer United States
- trade compliance specialist United States
- compliance consultant United States
- healthcare compliance officer United States
- risk compliance officer United States
- regulatory affairs consultant United States
- senior compliance officer United States
- hr compliance coordinator United States


