wagey.ggwagey.gg
38,923  jobs38,923  jobs
Browse Tech JobsCompaniesFeaturesPricingFAQs
Log InGet Started Free
Jobs(38,923)/General Manager Role(81)/salmon-group (13) - GRC Manager (PCI-DSS Focus)
salmon-group

salmon-group - GRC Manager (PCI-DSS Focus)

European Union$324k - $324k1w ago
In OfficeSeniorEMEABankingFintechGeneral ManagerAuditorDocumentationAWSJiraConfluenceReportingCircomGovernance

Requirements

• 6+ years in security GRC, compliance, or audit, with real ownership of a compliance program • Has led a PCI-DSS certification end to end, ideally as a service provider, and maintained the status across cycles • Has managed a QSA relationship and run a real audit, not just supported one • Has led cardholder data environment scoping and segmentation decisions with technical teams • Comfortable across at least PCI-DSS and one of ISO 27001 or a banking framework (BSP MORB or equivalent) • Worked in a regulated environment where compliance was enforced, not aspirational • What sets the right person apart • Can translate a compliance requirement into a specific technical or process change, and explain it to engineers in their terms • Understands the technology well enough to know whether a proposed control actually satisfies the requirement • Treats certification as a state to maintain, not a one-time project • Builds evidence and monitoring into how controls run, rather than collecting it under deadline pressure • Technical understanding • Solid grasp of network segmentation, access control, encryption, logging, and the other technical domains PCI touches • Enough literacy in cloud (AWS), identity, and infrastructure to hold a credible conversation with engineering about how a control is implemented • Comfortable working in Jira and Confluence, and open to building automation around evidence and reviews • Experience with a GRC platform (Vanta, Thoropass, ServiceNow GRC, or similar) • Familiarity with BSP examination processes or Philippine financial services regulation • Certifications: PCI-DSS ISA, CISA, CRISC, CISSP, ISO 27001 Lead Auditor or Implementer • Strong written and verbal English; most work is async and documentation quality matters • Can lead a working session with engineering and a reporting conversation with leadership equally well

Responsibilities

• PCI-DSS certification and maintenance • Own the PCI-DSS program end to end as a service provider: scoping, gap assessment, remediation, certification, and annual maintenance • Define and minimize the cardholder data environment; drive segmentation and scope reduction with engineering and infrastructure • Manage the QSA relationship: scoping workshops, evidence packages, assessment, and findings • Keep the certification live between audits: quarterly requirements, ongoing evidence, control monitoring • Translating compliance into reality • Turn PCI and other framework requirements into concrete technical and organizational solutions, working directly with engineering and infrastructure teams • Distinguish between a control that exists on paper and one that actually works, and insist on the latter • Design the processes and evidence flows that keep controls satisfied without constant manual effort • Audit and assurance • Lead internal and external audits: scope, evidence, finding responses, closure • Build and maintain an evidence base that supports continuous readiness across PCI, ISO 27001, and BSP • Coordinate the ISO 27001 surveillance cycle • Bring structure and ownership to the wider compliance and risk program • Maintain the risk register as a working document and drive treatment with system owners • Run vendor security assessments and track third-party compliance obligations • Report compliance posture clearly to leadership and governance committees

Apply in one click

Upload My Resume

Drop here or click to browse · Tap to choose · PDF, DOCX, DOC, RTF, TXT

Apply in One Click
Apply in One Click

Similar roles

i6i6 - GRC Manager - 12 month FTC3w ago
·Remote - UK·$27k - $27k/year
RemoteEMEASeniorCybersecurityCloud ComputingAuditorGeneral ManagerRisk ManagementDocumentationBoard SupportStakeholder ManagementAWSGCPGovernanceReportingCircomDocument ManagementCAIAITIL
GraphcoreGraphcore - Senior ISO Auditor4w ago
·Bristol, UK
In OfficeEMEASeniorCybersecurityManufacturingAuditorJiraReportingCompliance Reporting
NiumNium - Manager – Internal Audit4mo ago
·Chennai - Hybrid·Equity
In OfficeAPACSeniorBankingCybersecurityFintechAuditorReportingTeam ManagementRisk ManagementCPAGovernance
KrakenKraken - SOX Auditor1mo ago
·Remote - Ireland, United Kingdom, Canada·$104k - $104k/year
RemoteEMEASeniorCryptocurrencyFintechAuditorCPAReportingTeam LeadershipChange ManagementGCP
SpyCloudSpyCloud - Manager of Governance, Risk and Compliance (GRC)1mo ago
·Remote - UK
RemoteEMEASeniorLife InsuranceHealth InsuranceAuditorCompliance ManagerDocumentationRisk ManagementGovernanceProgram ManagementAWS
AirwallexAirwallex - Manager, Internal Audit (Technology)5mo ago
·Singapore
In OfficeAPACSeniorBankingPaymentsFintechAuditorLoan OfficerReportingRisk ManagementGCPGovernanceDocumentation
definelycareersdefinelycareers - Senior Information Security Officer1mo ago
·London, England, United Kingdom - Hybrid·$27k - $27k/year + Equity
In OfficeEMEASeniorCybersecurityBankingCloud ComputingAuditorHead of Information SecurityAWSAzureLearning & DevelopmentGovernanceDue Diligence
BaringaBaringa - Risk Advisory Consultant / Senior Consultant3mo ago
·London, United Kingdom - Hybrid
In OfficeEMEASeniorFintechDiagnosticsSenior AdvisorAuditorReportingData GovernanceGovernanceDecision MakingData Analysis
Remote WomanRemote Woman - Senior Risk & Audit Specialist1w ago
·Remote • Canada, Spain, France, Germany or the UK - Hybrid·Equity
In OfficeEMEASeniorNonprofitAuditorFinancial Risk SpecialistCross-functional CollaborationGovernanceRisk ManagementDocumentationCircomTalent Acquisition

Browse more by category

Show 81 moreGeneral ManagerShow 132 moreAuditorShow 5,632 moreDocumentationShow 3,747 moreAWSShow 833 moreJiraShow 312 moreConfluenceShow 8,372 moreReportingShow 63 moreCircomShow 1,808 moreGovernance
Privacy·Terms··Contact·FAQ·Wagey on X