D

Qualified Security Assessor (QSA) PCI-QSA

drummond group, llc • United State
Remote
This Job is No Longer Active This position is no longer accepting applications

Job Description


This position REQUIRES the candidate hold a Qualified Security Assessor (QSA) designation from the PCI Council. Please do not apply if you do not currently hold this designation from the PCI Council.


At Drummond, our mission is to drive the digital transformation of commerce and healthcare to improve outcomes by promoting and supporting the adoption of interoperability, security, and cybersecurity standards. As a leader in the Payment Card Industry (PCI) and ONC Health IT testing and certification, we strive to build on our strengths to be the partner of choice in highly regulated global industries. The team adheres to our strong values of diversity, integrity, commitment, and excellence while striving to make a positive impact for all stakeholders.

 

The Senior Risk & Security Assessor will be responsible for Payment Card Industry compliance audits, risk assessments for various industries assessing against multiple standards and frameworks, such as SOC 2, ISO 27001, NIST 800-53, NIST Cybersecurity Framework, HIPAA assessments, and others, as applicable. The Assessor will be the senior-level security assessor that is a Subject Matter Expert in Payment Card Industry, NIST, ISO 27001, HIPAA and other frameworks as needed, managing and completing complex assessments and services, as well as content creation and participation in customer facing engagements, including but not limited to conferences, webinars, and other speaking engagements. Successful candidates must possess the ability to work independently as well as part of a team, strategic, operational, and tactical understanding of a business, deep technical knowledge, risk management, and project management experience, as well as exhibit maturity, confidence and strong communication and time management skills.


Qualifications:

  • Must possess a Qualified Security Assessor (QSA) designation and maintain at least one of the following QSA pre-requisite certifications in both Information Security and Audit:
  • Information Security – CISSP, CISM, ISO 27001 Lead Implementer 1, or RISS
  • Audit – CISA, GSNA, ISO 27001 Leader Auditor or Internal Auditor 1, IRCA ISMS Auditor or higher, or IIA Certified Internal Auditor
  • At least 7 years of experience in conducting risk assessments or managing internal compliance. Experience in Payment Card Industry compliance and ISO 27001 as well as HIPAA, HITRUST, and NIST risk assessments preferred. Equivalent experience to be considered.
  • Minimum of 7 years in Information Security, Cybersecurity Audit and/or Compliance
  • Knowledge of and demonstrated practical experience preferred includes:
  • Security architecture
  • Configuration management
  • Vulnerability management
  • Policy and procedure development.
  • Writing detailed technical reports and Executive Summaries.
  • Project management best practices including time management, delivery, and communications
  • NIST and HIPAA risk assessments
  • Strong written and oral communication skills.
  • Ability to translate technical knowledge to non-technical audiences.
  • Experience with both client and executive communications.
  • Bachelor’s degree, preferably in Information Technology, Computer Science, or Business; or equivalent experience required.
  • Master’s Degree preferred.
  • Candidates must be willing to travel 10%-15% of the time.


Why Drummond?

  • Dynamic company with opportunities to expand skills and cross-train in new areas.
  • Ability to make a clear and notable organizational impact.
  • Strong reputation for having some of the best experts in the security and compliance space.
  • A small, agile team eliminates bureaucracy and provides flexibility to make immediate improvements and necessary course corrections with little to no red tape or bottlenecking.
  • Variety of tasks dividing time between the actual production of collateral and helping set strategic direction.
  • Work with like-minded, driven, and smart team members who will challenge you daily.
  • Work remotely from anywhere in the United States.


The Drummond Group provides equal employment opportunities to all employees and applicants. We prohibit discrimination in employment and harassment on the basis of race, color, sex, gender identity, sexual orientation, age, disability, religion, national origin, genetic status, veteran status, or any other characteristic protected by applicable law. This policy applies to all terms and conditions of employment, including recruitment, hiring, transfer, promotion, compensation, discipline, and termination.


Similar Jobs

Explore other opportunities that match your interests

Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Mid-Senior level

Jobgether

United State
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Not Applicable

WorkOS

United State

Software Security Engineer

Cyber Security
•
2d ago
Visa Sponsorship Relocation Remote
Job Type Contract
Experience Level Mid-Senior level

Mindlance

United State

Subscribe our newsletter

New Things Will Always Update Regularly