GRC Professional (PCI DSS Compliance and Risk Management)

2 Months ago • 5-10 Years • Cyber Security • Administrative

Job Summary

Job Description

This role requires a seasoned GRC Professional with expertise in PCI DSS compliance and risk management. Responsibilities include leading PCI DSS certification efforts, developing and implementing compliance policies and procedures, acting as a liaison with QSAs, conducting gap analyses and audits, ensuring secure payment transaction processes, identifying and mitigating payment security risks, implementing risk treatment plans, monitoring KRIs, and overseeing incident response. The role also involves collaboration with IT and DevOps teams on data security, implementing access controls, monitoring security systems, and conducting PCI DSS compliance training. Success requires a proven track record in managing payment security audits and certifications.
Must have:
  • PCI DSS Compliance
  • Risk Management
  • Data Security
  • Audits & Certification
  • Compliance Training
  • PCIP or PCI DSS Implementer
  • 5-10 years experience
Good to have:
  • CISA
  • CISSP
  • CISM

Job Details

About US:

Paytm is India's leading mobile payments and financial services distribution company. Pioneer of the mobile QR payments revolution in India, Paytm builds technologies that help small businesses with payments and commerce. Paytm’s mission is to serve half a billion Indians and bring them to the mainstream economy with the help of technology


Experience: 5-10 years
Industry: Fintech/Payments

Job Summary:
We seek a seasoned GRC Professional with deep expertise in PCI DSS compliance and risk management. The successful candidate will oversee the design, implementation, and management of PCI DSS-compliant frameworks, ensuring secure and compliant payment operations. This role requires a thorough understanding of payment security, regulatory requirements, and risk mitigation strategies within the fintech industry.


Key Responsibilities:
PCI DSS Compliance:
Lead the organization’s efforts to achieve and maintain PCI DSS certification. PIC-PIN, PCI S3 and PCI P2PE
Develop, implement, and enforce policies and procedures to comply with PCI DSS requirements, including the 12 core domains (e.g., firewall configurations, encryption, secure system development).
Act as the primary liaison with Qualified Security Assessors (QSAs) and other auditors during compliance audits.
Conduct periodic PCI DSS gap analyses, audits, and readiness assessments to identify non-compliance areas and recommend corrective actions.
Ensure secure payment transaction processes across all environments (e.g., cardholder data environments, payment gateways, and point-of-sale systems).
Risk Management:
Identify, assess, and mitigate risks associated with payment security, focusing on cardholder data protection.
Implement risk treatment plans in alignment with PCI DSS risk management guidelines.
Monitor and report on key risk indicators (KRIs) for payment environments.
Ensure robust incident response planning, testing, and execution as per PCI DSS requirements.
Data Security:
Collaborate with IT and DevOps teams to ensure compliance with PCI DSS requirements for encryption, tokenization, and secure transmission of cardholder data.
Oversee the implementation and management of access control measures to restrict access to cardholder data based on business need-to-know.
Monitor logging and monitoring systems to detect and respond to potential security breaches as required by PCI DSS Requirement 10.
Training and Awareness:
Develop and deliver PCI DSS compliance training for employees, focusing on secure handling of payment card data.
Promote a culture of payment security awareness across the organization.

Required Qualifications:
Education: Bachelor’s degree in IT, Cybersecurity, Risk Management, or related fields.
Certifications:
Mandatory: PCI Professional (PCIP) or PCI DSS Implementer.Preferred: CISA, CISSP, or CISM.
Experience:
5-10 years in governance, risk, and compliance roles, with significant experience in PCI DSS compliance programs.Proven track record in managing audits and certification processes related to payment security.
undefinedundefinedundefined

Similar Jobs

Rackspace Technology - AWS Engineer IV-IN (R-20541)

Rackspace Technology

Gurugram, Haryana, India (Remote)
2 Months ago
Google - Security Sales Specialist, Google Public Sector

Google

Reston, Virginia, United States (On-Site)
1 Month ago
Saviynt - Senior Manager – Cyber Defense/ Security Operations Center

Saviynt

Bengaluru, Karnataka, India (On-Site)
4 Months ago
Varonis  - Security Operations Center (SOC) Expert

Varonis

Morrisville, North Carolina, United States (On-Site)
3 Months ago
ByteDance - Production System Engineer, Infrastructure Engineering

ByteDance

Singapore (On-Site)
3 Months ago
Activision - Senior Partner Integrations Specialist

Activision

United States (Remote)
3 Months ago
Skyhigh Security - Senior Product Manager

Skyhigh Security

Bengaluru, Karnataka, India (Hybrid)
3 Months ago
PwC - IN-Associate _OT Security _OT Security _ Advisory _Ahmedabad

PwC

Ahmedabad, Gujarat, India (On-Site)
3 Months ago
Reversing Labs - Application Security Architect

Reversing Labs

Zagreb, Croatia (Hybrid)
3 Months ago
Warner Bros Discovery - Manager, Production Security

Warner Bros Discovery

Burbank, California, United States (On-Site)
1 Month ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

ByteDance - Senior Site Reliability Architect - Security Engineering - San Jose

ByteDance

San Jose, California, United States (On-Site)
2 Months ago
Microsoft - Solution Sales Specialist - Security

Microsoft

Bangkok, Bangkok, Thailand (On-Site)
1 Month ago
Warner Bros Games - Staff Software Engineer - Cloud Support and Operations

Warner Bros Games

Bengaluru, Karnataka, India (Hybrid)
1 Month ago
Saviynt - Technical Lead, Professional Services - NA

Saviynt

Bengaluru, Karnataka, India (Hybrid)
4 Months ago
Canva - Staff Frontend Engineer - Growth - Monetization

Canva

Melbourne, Victoria, Australia (Remote)
1 Month ago
Globalization Partners - Information Security Analyst - SecOps

Globalization Partners

(Remote)
1 Month ago
ByteDance - Network Software Engineer Intern (Network Engineering) - 2025 Summer (PhD)

ByteDance

Seattle, Washington, United States (On-Site)
3 Months ago
ByteDance - Site Reliability Engineer (Multiple Positions)

ByteDance

Seattle, Washington, United States (On-Site)
2 Months ago
Microsoft - Site Reliability Engineer II

Microsoft

Redmond, Washington, United States (On-Site)
1 Month ago
Zeta - Site Reliability Engineer I / II

Zeta

Bengaluru, Karnataka, India (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Noida, Uttar Pradesh, India

MKS Instruments - Senior Test Engineer (Development Test Engineer| Firmware)

MKS Instruments

Karnataka, India (On-Site)
4 Months ago
HiLabs - Data Engineer

HiLabs

Bengaluru, Karnataka, India (On-Site)
4 Months ago
Enphase Energy - Pricing Analyst

Enphase Energy

Bengaluru, Karnataka, India (On-Site)
3 Months ago
HRingZa Solutions - Unity Game Developer

HRingZa Solutions

India (On-Site)
6 Months ago
PwC - IN-Associate_IA_RC Central_Advisory_Pune

PwC

Pune, Maharashtra, India (On-Site)
4 Months ago
Classplus - Motion Graphic Designer

Classplus

Noida, Uttar Pradesh, India (On-Site)
4 Months ago
Microsoft - Senior Engineering Manager

Microsoft

Bengaluru, Karnataka, India (On-Site)
1 Month ago
Mimecast - Software Development Engineer in Test

Mimecast

Bengaluru, Karnataka, India (Hybrid)
6 Months ago
Quizizz - Customer Success Manager

Quizizz

Bengaluru, Karnataka, India (Hybrid)
2 Months ago
CloudHire - Scala API Architect

CloudHire

India (Remote)
4 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

PwC - Credit Risk Modelling Senior Associate

PwC

Montreal, Quebec, Canada (On-Site)
3 Months ago
ByteDance - Senior Infrastructure Security Engineer, Security Assurance

ByteDance

Singapore (On-Site)
3 Months ago
PwC - IN-Associate _ Hybrid Platform Modernization_OneCloud_Advisory_Bangalore

PwC

Bengaluru, Karnataka, India (Hybrid)
4 Months ago
Skyhigh Security - Senior Software Development Engineer

Skyhigh Security

Bengaluru, Karnataka, India (On-Site)
4 Months ago
Activision - Senior Cloud Security Engineer

Activision

Barcelona, Catalonia, Spain (On-Site)
1 Month ago
Microsoft - Foundational Site Reliability Engineer II

Microsoft

(On-Site)
1 Month ago
PwC - Security Cloud Architect

PwC

Prague, Prague, Czechia (On-Site)
3 Months ago
Barracuda Networks  Inc  - Principal Application Security Engineer

Barracuda Networks Inc

United States (Remote)
2 Months ago
Carmeuse - Security Analyst/Engineer

Carmeuse

Bengaluru, Karnataka, India (Hybrid)
4 Months ago
Barracuda Networks  Inc  - Information Security Engineer

Barracuda Networks Inc

Bengaluru, Karnataka, India (On-Site)
2 Months ago

Get notifed when new similar jobs are uploaded

About The Company

Noida, Uttar Pradesh, India (Remote)

Noida, Uttar Pradesh, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

Hyderabad, Telangana, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

Chandigarh, Punjab, India (On-Site)

Kerala, India (On-Site)

Jorhat, Assam, India (On-Site)

View All Jobs

Get notified when new jobs are added by Paytm

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug