Remote Jobs RockRemote Jobs Rock

PCI Analyst

📅 Jul 21
Information SecurityVulnerability ScanningPenetration TestingNetwork Security

📜 Description

  • Analyze and validate client-submitted PCI ASV scans for attestation, ensuring accuracy and adherence to PCI DSS standards.
  • Conduct in-depth analysis of scan disputes by reviewing evidence and recreating scenarios for compliant resolutions.
  • Serve as a trusted advisor, guiding customers through the PCI ASV scan submission process to achieve compliance objectives.
  • Collaborate with Technical Support Engineers to ensure accurate handling of PCI-related inquiries.
  • Identify and contribute to workflow improvements for the PCI ASV service.
  • Resolve escalated customer issues by troubleshooting complex technical findings.

🛠️ Requirements

  • Bachelor’s degree in a related technical field such as Information Technology, Computer Science, or equivalent work experience.
  • Experience with Linux/Unix and Windows systems administration and security posturing.
  • In-depth knowledge of network devices, their deployment and typical configurations.
  • In-depth knowledge of networking.
  • Knowledge of various web servers and other externally facing software applications.
  • Experience in vulnerability scans and web app configuration scanning.
  • Knowledge of CVSS scoring and how to use NVD to verify CVE’s.
  • Customer service experience within the technical and cybersecurity background.
  • Outstanding written and verbal communication skills.
  • Ability to comfortably interact with senior management in a consultative manner.
Full job description

Who is Tenable?

Tenable® is the Exposure Management company. Over 40,000 organizations around the globe rely on Tenable to understand and reduce cyber risk. Our global employees support 65 percent of the Fortune 500, 50 percent of the Global 2000, and large government agencies. Come be part of our journey!

What makes Tenable such a great place to work?

Ask a member of our team and they’ll answer, “Our people!” We work together to build and innovate best-in-class cybersecurity solutions for our customers; all while creating a culture of belonging, respect, and excellence where we can be our best selves. When you’re part of our #OneTenable team, you can expect to partner with some of the most talented and passionate people in the industry, and have the support and resources you need to do work that truly matters. We deliver results that exceed expectations and we win together!

Your Role:

The PCI ASV Analyst is responsible for guiding Tenable customers through the PCI DSS ASV external scanning process to achieve compliance with requirement 11.3.2. This role focuses on leading all client-facing engagements related to Tenable’s status as a PCI Approved Scanning Vendor (ASV), ensuring a successful and compliant outcome. The PCI ASV Analyst manages client expectations, provides consultative advice on scan findings, and fosters positive relationships by serving as a subject matter expert on the PCI ASV process.

Organisation Structure:

  • Reports to: PCI Manager

Principal Accountabilities:

  • Analyze and validate client-submitted PCI ASV scans for attestation, ensuring all reviews are conducted with a high degree of accuracy and adherence to PCI DSS standards.
  • Conduct in-depth analysis of customer-submitted scan disputes by reviewing required evidence, performing independent verification, and recreating scenarios in a lab environment to ensure a fair and compliant resolution.
  • Serve as a trusted advisor by guiding customers through the PCI ASV scan submission process to help them achieve their compliance objectives.
  • Collaborate with Technical Support Engineers, providing expert guidance to ensure PCI-related inquiries are handled with accuracy and client success in mind.
  • Proactively identify and contribute to workflow and process improvements to enhance the effectiveness and efficiency of the PCI ASV service.
  • Maintain all required PCI ASV certifications and CPE hours, upholding the professional practice standards of the role.
  • Resolve escalated customer issues by troubleshooting complex technical findings and making decisions on optimal solutions.
  • Perform other PCI ASV duties as assigned to support the success of the compliance service and the team.

Other Responsibilities:

  • May perform other duties and responsibilities that management may deem necessary from time to time.

Knowledge, Skills and Experience:

  • At least five (5) years of information security experience, with specialized experience that includes a minimum of one (1) year in vulnerability scanning and/or penetration testing and at least two (2) years in any two of the following areas: Network security, Application security, System security, IT security auditing, or IT security risk assessment.
  • Bachelor’s degree in a related technical field such as Information Technology, Computer Science, or equivalent work experience.
  • Experience with Linux/Unix and Windows systems administration and security posturing.
  • In-depth knowledge of network devices, their deployment and typical configurations.
  • In-depth knowledge of networking.
  • Knowledge of various web servers and other externally facing software applications.
  • Experience in vulnerability scans and web app configuration scanning.
  • Knowledge of CVSS scoring and how to use NVD to verify CVE’s.
  • Customer service experience within the technical and cybersecurity background.
  • Outstanding written and verbal communication skills.
  • Ability to comfortably interact with senior management in a consultative manner.
  • Ability to multi-task and manage multiple priorities in a fast-paced environment.
  • A high degree of integrity, ethics, and confidentiality.
  • Ability to work across different timezones, which may require an adjusted daily schedule on occasion.
  • Must obtain PCI Certification within 3 months of employment. Preferably holds one of the current industry-recognized security certifications: CISA, CISM, CISSP, CCSP, GWAPT, Current PCI-QSA or PCI-ASV Certification.

Key Decisions:

  • Make final determinations on complex technical issues by troubleshooting disputed findings, analyzing vulnerability data, and implementing optimal solutions to ensure accurate, compliant scan results.
  • Drive positive client outcomes by resolving escalated issues, managing expectations through complex compliance scenarios, and ensuring timely service recovery.

Working Environments & Conditions:

  • Ability to work remotely in a self-directed manner.
  • Ability to sit and work at a computer for extended periods.
  • Physically able to participate in training sessions, presentations and meetings.
  • Client-facing travel may be required.
  • Some Tenable office travel may be required.

#LI-AV1

#LI-Hybrid

We’re committed to promoting Equal Employment Opportunity (EEO) at Tenable - through all equal employment opportunity laws and regulations at the international, federal, state and local levels. If you need a reasonable accommodation due to a disability during the application or recruiting process, please contact Recruiting@Tenable.com for further assistance.


Tenable Data Consent Statement

Tenable is committed to protecting the privacy and security of your personal data. Depending on your location, one or more of the following notices may apply to you:

General Applicant Privacy Notice
California Applicant Privacy Notice
EU/EEA/UK Applicant Privacy Notice

Similar jobs

Samsara

Third-Party Risk Management Analyst

Samsara👥 1001 - 5000 employees🏢 Computer Software
🕒 4 days ago

As a Third-Party Risk Management Analyst, you will lead security risk assessments for vendors, ensuring compliance with security standards and managing the entire vendor lifecycle.

Third-party Risk ManagementVendor Risk AssessmentsGRCInformation Security Compliance
🕒 8 days ago

As an AI Quality Evaluator, you'll label and evaluate content in Dutch, ensuring quality and cultural relevance while contributing to AI features for Dutch users.

📍 🇺🇸 Netherlands - Remote Temporary/Contract🎹 Mid-level🎲 Other📢 🇳🇱 Dutch Required📢 🇬🇧 English Required
Dutch Language ProficiencyEnglish Language ProficiencyContent EvaluationData Annotation
OpenAI

Personnel Security Specialist

OpenAI👥 10,000+ employees🏢 Research Services
🕒 3 days ago

In this role, you will: Own the daily personnel security workload from intake through completion, including clearance verification, access nominations, visit requests, onboarding, offboarding, briefings, and reporting actions.

Industrial SecurityNISPOMICD 705Dod Regulations

Trusted by Remote Workers