PCI SSF Assessor Consultant

Posted 10 Days Ago
Be an Early Applicant
San Diego, CA
Expert/Leader
Information Technology • Security
The Role
The PCI SSF Assessor Consultant at RSI Security will evaluate compliance with PCI Secure Software Framework standards, conduct assessments, provide gap analysis, and develop remediation plans. The role requires performing software security testing, guiding clients on compliance, and producing detailed documentation. Collaboration with teams to enhance software security practices is also essential.
Summary Generated by Built In

Location: 100% Remote, Globally, Work from anywhere
Type: Contracted, Part-time, Project based, Permanent
Pay: Based on experience, education, geographic location, and market rates.
Travel: None

*** Please ensure you read through the entire job posting and you also understand the work model, expectations, requirements, location, and qualification requirements for this role. ***
About Us:

RSI Security is a trusted leader in cybersecurity compliance and assessment, dedicated to helping organizations navigate complex security frameworks and safeguard their operations. We are committed to operational excellence, leveraging innovation and expertise to deliver tailored solutions that empower businesses to thrive in a rapidly evolving digital landscape. Our culture emphasizes collaboration, continuous improvement, and professional growth, offering team members the opportunity to contribute meaningfully to impactful projects in a supportive and forward-thinking environment.

Position Summary:
RSI Security is seeking a PCI SSF Consultant to conduct PCI Secure Software Framework (SSF) Advisory and Assessments for our clients. In this role, you will be responsible for evaluating and ensuring compliance with PCI Secure Software Standards, guiding organizations through the SSF certification process, and providing expert advisory services to enhance software security practices.

Roles & Responsibilities:

  • Conduct PCI SSF Assessments
    • Perform PCI Secure Software and Secure Software Lifecycle (Secure SLC) assessments in accordance with PCI SSC requirements.
    • Evaluate software security controls, SDLC processes, and vendor security practices.
  • Advisory & Gap Analysis
    • Guide customers on PCI SSF compliance requirements and help them understand the necessary steps to achieve compliance.
    • Conduct gap analysis to identify areas of non-compliance and provide structured remediation plans.
    • Remediation & Compliance Readiness Support
  • Develop remediation roadmaps for clients, ensuring alignment with PCI SSF security objectives.
    • Provide advisory services on secure software development, threat modeling, and compliance best practices.
  • Software Security Testing & Validation
    • Perform application security testing, including secure code reviews, dynamic testing (DAST), and static code analysis (SAST).
    • Identify software vulnerabilities related to data security, encryption, authentication, and access control.
  • Risk Assessment & Secure Development Guidance
    • Assess the security posture of software applications and SDLC processes.
    • Provide security architecture recommendations and best practices for secure coding, DevSecOps, and CI/CD pipeline integration.
  • Documentation & Reporting
    • Develop detailed reports outlining assessment findings, compliance gaps, and security vulnerabilities.
    • Prepare Attestations of Validation (AOVs) and compliance documentation for PCI SSC submissions.
  • Client Education & Internal Collaboration
    • Educate clients on PCI SSF best practices, secure development principles, and regulatory requirements.
    • Work closely with engineering, compliance, and risk teams to improve software security and compliance programs.

Qualifications:

  • PCI SSF Assessor certification - Preferred
  • Proficient knowledge and experience demonstrated on your resume in the following:
    • PCI SSF
    • PCI DSS
    • Software security testing

Benefits (location-based): 

  • Personal wellness and employee assistance program
  • Employer-paid medical, dental, vision coverage, and life insurance
  • Paid holidays, vacation, and sick time

Learning & Development:

  • Educational reimbursement program
  • E-learning training courses
  • Company-sponsored leadership and mentoring program

Financial Wellness:

  • 401K retirement plan with 100% employer match
  • Performance bonus

Other Perks:

  • Employee referral bonus program
  • Work and life balance
  • Remote work

As a global employer, we consider numerous factors when determining compensation, including the specific job responsibilities, your geographical location, and your level of experience.

Our commitment to equity, equal opportunity, inclusion, and diversity is part of our broader commitment to respecting fundamental human rights across our value chain. RSI Security is proud to be an Equal Opportunity Employer. The Company will consider for employment qualified applicants with arrest and conviction records.

Equal Opportunity Employer/Veterans/Disabled

For more information on RSI Security, please visit our website - www.rsisecurity.com or our social media RSI Security LinkedIn. On our career site, you will find some of the key steps you can expect to guide you along the way.

Top Skills

Pci Dss
Pci Ssf
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: San Diego, CA
45 Employees
On-site Workplace
Year Founded: 2008

What We Do

RSI Security is a cybersecurity-focused technology company that helps private and public sector organizations in highly regulated industries effectively manage risk. RSI Security provides cyber engineering, assessment, advisory services, and technical testing to amp up clients' security posture while mitigating business risk.

We have experts for every cybersecurity and compliance need– PCIDSS, CMMC and NIST, MSSP, IT Security, HITRUST, HIPAA / HITECH, CCPA, GDPR, threat detection, security awareness training, and much more.

Our team members come from diverse backgrounds and specialties. Our team members include published authors, open-source developers, industry researchers, and conference presenters.

For more information, visit rsisecurity.com

Similar Jobs

Anduril Logo Anduril

GSOC Senior Specialist

Aerospace • Artificial Intelligence • Hardware • Robotics • Security • Software • Defense
Costa Mesa, CA, USA
4500 Employees
70K-105K Annually

Snap Inc. Logo Snap Inc.

Security Engineer, Enterprise Infrastructure Security, 6+ Years of Experience

Artificial Intelligence • Cloud • Machine Learning • Mobile • Software • Virtual Reality • App development
Hybrid
3 Locations
5000 Employees
178K-313K Annually

Relativity Space Logo Relativity Space

Senior Analyst, Governance Risk & Compliance (GRC)

3D Printing • Aerospace • Hardware • Robotics • Software
Easy Apply
Hybrid
Long Beach, CA, USA
1200 Employees
120K-154K Annually

Similar Companies Hiring

Jobba Trade Technologies, Inc. Thumbnail
Software • Professional Services • Productivity • Information Technology • Enterprise Web • Consulting • Cloud
Chicago, IL
45 Employees
InCommodities Thumbnail
Renewable Energy • Machine Learning • Information Technology • Energy • Automation • Analytics
Austin, TX
234 Employees
HERE Technologies Thumbnail
Software • Logistics • Internet of Things • Information Technology • Computer Vision • Automotive • Artificial Intelligence
Amsterdam, NL
6000 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account