Security Compliance Program Manager
Finix Payments
You will
- Own the PCI and SOC certifications/audits from pre-planning through audit and remediation
- Be an Information Security expert liaising between technical and non-technical teams to ensure controls are adequately defined and sufficient to meet requirements
- Develop and execute quarterly internal risk self-assessments/mini-audits (and ensure remediation, if required) of key controls in areas of PCI, SOC, ISO, and InfoSec compliance to be ahead of any potential risk or gaps in our security program
- Complete security and risk reviews of all new features/products/services to ensure they meet the requirements of the Corporate InfoSec program
You are
- Proactive and enthusiastic to build an Information Security audit management program
- Able to talk to technical and non-technical teams, translating complex concepts between the two and ensuring alignment between them
- Keenly attuned to details, ensuring nothing is overlooked when it comes to protecting our information and representing this to auditors
- Organized and able to manage multiple projects simultaneously, against deadlines and within budget
- Confident in your abilities but eager to learn and expand your knowledge
You have
- Payments experience
- An aptitude for digging deep into Information Security requirements
- 3-5 years of experience in PCI, SOC, security audits or equivalent assessments; may be client-side, servicer, assessor or industry consultant
- A talent for analyzing requirements of Information Security frameworks, particularly as they relate to the payment industry, and crafting solutions for adherence
- Knowledge of cloud computing and nuances of managing in an AWS/Microsoft/Google cloud vs. traditional on-premise data centers
- Industry certifications (CRISC, CTPRP, SSCP, CISSP, CISA, CISM) that demonstrate your desire to be the best at what you do