When you join Verizon

Verizon is one of the world’s leading providers of technology and communications services, transforming the way we connect across the globe. We’re a diverse network of people driven by our shared ambition to shape a better future. Here, we have the ability to learn and grow at the speed of technology, and the space to create within every role. Together, we are moving the world forward – and you can too. Dream it. Build it. Do it here.

What you’ll be doing...

As a Qualified Security Assessor (QSA) in the Payment Card Industry (PCI) you will provide assessments and consulting to one large Verizon client. You will be responsible for leading and delivering PCI assessments within a team of QSAs. Travel is very limited (twice or trice per year for about 3 days). The assessment process is mature and well documented with all the tools and templates you will need to be successful. All assessment workflows are automated via Archer. Almost no travel, no jumping from project to project, mature assessment process… this is a dream QSA job!

This tele-work position may on occasion require travel to Verizon, customer, vendor and/or other locations (potentially, globally) and/or work to be performed on outside normal business hours for interviews and validation of physical and technical controls that are expected to protect credit card data (cardholder data). At times, you may be the lead on a project with peers or junior consultants supporting you. The work done every day makes a difference in making electronic payments more secure globally.

  • Identifying, collecting, organizing, and reviewing pertinent evidence across multiple platforms and applications to determine compliance with relevant PCI DSS controls.
  • Scheduling and leading technical interviews with various customer groups and subject matter experts.
  • Providing reports and metrics to client on gaps, remediation efforts, clarifications, etc. with customer.
  • Acting as the subject matter expert to answer questions and educate customers about the PCI DSS.
  • Strong experience working with Microsoft Excel, SharePoint, GRC tools, etc.
  • Writing detailed technical reports and supporting documentation for the customer and the card brands.
  • Creating and presenting executive reports across multiple organization leadership levels.
  • Developing executive presentations or status communications for multiple organization roles.
  • Providing direction and mentorship to junior PCI consultants.

What we’re looking for...

You’ll need to have:

  • Bachelor’s degree or four or more years of work experience.
  • Four or more years of relevant work experience.
  • Three or more years as a Qualified Security Assessor actively performing PCI assessments and/or remediation engagements.
  • One or more years of experience in Application security.
  • One or more years of experience in Information systems security.
  • One or more years of experience in Network security.
  • One or more years of experience in IT security auditing.
  • Certification in Information Security such as a Certified Information System Security Professional (CISSP), Certified Information Security Manager (CISM), or Certified ISO 27001 Lead Implementer.
  • An audit certification from the following: Certified Information Systems Auditor (CISA), GIAC Systems and Network Auditor (GSNA), Certified ISO 27001, Lead Auditor, Internal Auditor, International Register of Certificated Auditors (IRCA), or Certified Internal Auditor (CIA)
  • Willingness to travel up to 25%.

Even better if you have:

  • Bachelor’s Degree in Cyber/Information Systems/Information Security or similar and/or eight or more years of relevant experience in Information Security roles with progressively increasing responsibility.
  • An active PCI certification in any of the following: 3DS Assessor, Card Production Security Assessor (CPSA), Payment Application Qualified Assessor (PA-DSS QSA), Point-to-Point Encryption Qualified Security Assessor (P2PE QSA), Payment Application Point-to-Point Encryption Qualified Security Assessor (P2PE PA-QSA), Qualified PIN Assessor (QPA), Secure Software Lifecycle Assessor (SLC), Software Security Framework Assessor, or PCI Forensic Investigator (PFI).
  • Demonstrated ability to work independently as well as in a team to meet delivery obligations.
  • Demonstrated effective communication skills both written and verbal.
  • Effective presentation skills.

22CyberVES 22CyberRISK

Equal Employment Opportunity

We're proud to be an equal opportunity employer - and celebrate our employees' differences, including race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, and Veteran status. At Verizon, we know that diversity makes us stronger. We are committed to a collaborative, inclusive environment that encourages authenticity and fosters a sense of belonging. We strive for everyone to feel valued, connected, and empowered to reach their potential and contribute their best. Check out our diversity and inclusion page to learn more.

COVID-19 Vaccination Requirement

NYC candidates: Verizon requires new hires to be fully vaccinated against COVID-19 for onsite and hybrid NYC roles. Verizon provides reasonable accommodations consistent with legal requirements (e.g., for medical or religious reasons). Additional information will be provided during the hiring process.