Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Cyber Consulting - PCI Security Specialist - Manager - Location Open image - Rise Careers
Job details

Cyber Consulting - PCI Security Specialist - Manager - Location Open - job 1 of 3

At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better. Join us and build an exceptional experience for yourself, and a better working world for all.The exceptional EY experience. It's yours to build.EY focuses on high-ethical standards and integrity among its employees and expects all candidates to demonstrate these qualities.Cyber threats, social media, massive data storage, privacy requirements and continuity of the business as usual require heavy information security measures. As an information security specialist, you will lead the implementation of security solutions for our clients and support the clients in their desire to protect the business. You will belong to an international connected team of specialists helping our clients with their most complex information security needs and contributing toward their business resilience. You will be working with our Advanced Security Centers to access the most sophisticated tools available to fight against cybercrime.We will support you with career-long training and coaching to develop your skills. As EY is a global leading service provider in this space, you will be working with the best of the best in a collaborative environment. So, whenever you join, however long you stay, the exceptional EY experience lasts a lifetime.The opportunityWe currently have a career opportunity for a Manager in our Cybersecurity practice for our Data Protection & Privacy capability with demonstrated experience in developing data protection strategies and implementing solutions to provide data security, privacy, and integrity. EY’s Cybersecurity Practice functions as a center of excellence to assist our consulting practices in planning, pursuing, delivering, and managing large, complex full lifecycle initiatives along with providing expertise in leading practices, methods, and resources in the space of Cybersecurity. The Data Protection & Privacy capability within the Cybersecurity practice is a critical competency that supports our clients across all industry sectorsAs a PCI Security Specialist, you will be at the forefront of safeguarding our client's most valuable assets in the digital realm. You will play a critical role in enabling organizations to maintain an effective data protection stance throughout the entire data lifecycle, ensuring that from acquisition to disposal, every process is optimized, risks are reported, and technologies are integrated seamlessly.Your Key ResponsibilitiesIn this managerial role, you will orchestrate the management and delivery of multiple processes, solutions, and projects, with a strong focus on quality and risk management. You will be responsible for:• Leading and executing PCI assessment engagements for clients, focusing on payment card compliance and security (PCI-DSS) including thorough review of control design• Coordinating project deliverables and tracking project status with clients’ management and key stakeholders delivering recommendations and risk assessments.• Collaborating with clients as a liaison to remediate compliance gaps, maintaining comprehensive documentation to support their PCI programs• Supervising and guiding professional employees or team members to ensure high performance in complex technical initiatives.• Fostering innovation and continuous progress within the team.• Fulfilling performance objectives in client service, quality and risk management, business growth, and team collaboration.Skills And Attributes For SuccessTo thrive in this role, you will need a combination of technical expertise and soft skills that will make a significant impact. Your attributes include:• Proven ability to guide others and offer high-quality solutions to internal and external challenges. Navigate complex cybersecurity frameworks with a strong understanding of cybersecurity principles and practices with emphasis on various compliance requirements (ISO, NIST, SOX, PCI, HIPAA, GDPR) to better assist clients.• Build and maintain strong client relationships.• Communicate complex ideas effectively and solve intricate problems for our clients' Information Security and compliance teams, including Info Sec, Legal, Internal Audit, Physical Security, Developer Community, Networking, and Systems• Comfort with regular travel (up to 40-60%) and active engagement in client planning, execution, and closure phases.• Leadership in RFP responses, engagement economics, and resource planning.To qualify for the role, you must have• A Bachelor's degree in a relevant field such as Computer Science, Information Systems, Engineering, Business, or related major.• 4 to 6 years of relevant experience in the field of data protection and privacy leading and managing PCI assessment engagements for clients along with reporting and remediation.• In-depth understanding of PCI-DSS, scoping environments and evaluating against PCI-DSS• Technical expertise in cybersecurity frameworks including ISO, NIST, SOX, HIPAA, and GDPR.• Ability to interpret and apply regulatory requirements to client environmentsIdeally, you’ll also haveAdditional requirements that will set you apart include:• Relevant cybersecurity certifications such as CISSP, CISM, CISA, and CEH, with PCI QSA certification highly preferred.• Proficiency in using GRC (Governance, Risk, and Compliance) tools.• Strong communication and interpersonal skills to effectively interact with clients and stakeholders in prior client-facing role• Experience with project management and the ability to manage multiple projects simultaneously.• Strong relationship-building skills.• Commercial astuteness and complex problem-solving abilities.• Critical thinking and emotional agility.What We Look ForWe are on the lookout for top performers who demonstrate a keen understanding of the importance of data privacy, show a proactive approach to problem-solving, and possess the agility to adapt to new challenges. We value candidates who can lead with integrity, collaborate effectively, and inspire trust among team members and clients alike.What We OfferWe offer a comprehensive compensation and benefits package where you’ll be rewarded based on your performance and recognized for the value you bring to the business. The base salary range for this job in all geographic locations in the US is $143,500 to $263,200. The salary range for New York City Metro Area, Washington State and California (excluding Sacramento) is $172,200 to $299,100. Individual salaries within those ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography. In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options. Join us in our team-led and leader-enabled hybrid model. Our expectation is for most people in external, client serving roles to work together in person 40-60% of the time over the course of an engagement, project or year. Under our flexible vacation policy, you’ll decide how much vacation time you need based on your own personal circumstances. You’ll also be granted time off for designated EY Paid Holidays, Winter/Summer breaks, Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.• Continuous learning: You’ll develop the mindset and skills to navigate whatever comes next.• Success as defined by you: We’ll provide the tools and flexibility, so you can make a meaningful impact, your way.• Transformative leadership: We’ll give you the insights, coaching and confidence to be the leader the world needs.• Diverse and inclusive culture: You’ll be embraced for who you are and empowered to use your voice to help others find theirs.EY accepts applications for this position on an on-going basis. If you can demonstrate that you meet the criteria above, please contact us as soon as possible.EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets.Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate.Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today.For those living in California, please click here for additional information.EY is an equal opportunity, affirmative action employer providing equal employment opportunities to applicants and employees without regard to race, color, religion, age, sex, sexual orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability status, or any other legally protected basis, including arrest and conviction records, in accordance with applicable law. EY is committed to providing reasonable accommodation to qualified individuals with disabilities including veterans with disabilities. If you have a disability and either need assistance applying online or need to request an accommodation during any part of the application process, please call 1-800-EY-HELP3, select Option 2 for candidate related inquiries, then select Option 1 for candidate queries and finally select Option 2 for candidates with an inquiry which will route you to EY’s Talent Shared Services Team (TSS) or email the TSS at ssc.customersupport@ey.com
EY Glassdoor Company Review
3.9 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
EY DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of EY
EY CEO photo
Julie Boland
Approve of CEO

Average salary estimate

$203350 / YEARLY (est.)
min
max
$143500K
$263200K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Cyber Consulting - PCI Security Specialist - Manager - Location Open, EY

At EY, we are looking for a Cyber Consulting - PCI Security Specialist - Manager to join our dynamic team in San Jose, CA. This is a fantastic opportunity for someone with a passion for cybersecurity and data protection! In this role, you will have the chance to build your career while working with a global leader in cybersecurity solutions. You'll lead the implementation of security measures designed to protect our clients' most critical information assets. Your responsibilities will include executing PCI assessment engagements, coordinating with client stakeholders, and mentoring your team to ensure high performance and innovation. As part of a global network of specialists, you'll collaborate closely with clients from diverse industries, helping them navigate complex issues related to data protection and privacy. We believe in supporting our team members through continuous training and coaching, so you can truly grow within our welcoming and inclusive environment. You’ll also find that we value your voice and perspective, which contributes to a better working world—for everyone. If you’re ready to take on exciting challenges and make a real impact in the cybersecurity landscape, we’d love to meet you and help you discover your exceptional EY experience!

Frequently Asked Questions (FAQs) for Cyber Consulting - PCI Security Specialist - Manager - Location Open Role at EY
What are the primary responsibilities of a Cyber Consulting - PCI Security Specialist - Manager at EY?

As a Cyber Consulting - PCI Security Specialist - Manager at EY, your primary responsibilities will include leading PCI assessment engagements, coordinating project deliverables, and collaborating with clients to remediate compliance gaps. You will be tasked with creating recommendations and risk assessments, as well as supervising and mentoring team members to ensure high-quality service delivery.

Join Rise to see the full answer
What qualifications are required to become a Cyber Consulting - PCI Security Specialist - Manager at EY?

To qualify for the Cyber Consulting - PCI Security Specialist - Manager position at EY, you should possess a Bachelor's degree in a related field, alongside 4-6 years of relevant experience in data protection and privacy. An in-depth understanding of PCI-DSS and alternative cybersecurity frameworks such as ISO and NIST is essential for success in this role.

Join Rise to see the full answer
How does EY support career development for Cyber Consulting - PCI Security Specialist - Managers?

EY places a strong emphasis on continuous professional development. As a Cyber Consulting - PCI Security Specialist - Manager, you will have access to extensive training and coaching opportunities that ensure you build and refine your skill sets while engaging with the latest tools in cybersecurity. This support is designed to help you thrive in your career and contribute to EY's mission.

Join Rise to see the full answer
What technical skills are beneficial for a role as a Cyber Consulting - PCI Security Specialist - Manager at EY?

Key technical skills for a Cyber Consulting - PCI Security Specialist - Manager at EY include a strong knowledge of PCI-DSS, proficiency in various cybersecurity frameworks (ISO, NIST, SOC, HIPAA, GDPR), and experience with Governance, Risk, and Compliance (GRC) tools. These competencies will enable you to ensure our client's data protection strategies are effective and compliant.

Join Rise to see the full answer
What is the company culture like at EY for Cyber Consulting professionals?

At EY, the culture is highly collaborative, inclusive, and focused on innovation. As a Cyber Consulting professional, you will work alongside talented colleagues who encourage and support each other in solving complex problems. We value diversity and inclusion, creating an environment where everyone feels empowered to share their unique perspectives.

Join Rise to see the full answer
Common Interview Questions for Cyber Consulting - PCI Security Specialist - Manager - Location Open
Can you explain the PCI-DSS requirements and their importance?

When responding to this question, focus on outlining the key requirements of PCI-DSS, including aspects like network security, access control, and maintaining an information security policy. Explain that adhering to these standards helps organizations safeguard sensitive payment card information and protects against data breaches, which is crucial for maintaining client trust.

Join Rise to see the full answer
Describe a challenging project you managed in the data protection space.

Your answer should detail a specific project that highlights your project management skills, how you navigated obstacles, and the successful outcome. Demonstrating your ability to lead diverse teams, communicate effectively with clients, and innovate solutions will be vital to impress interviewers.

Join Rise to see the full answer
How do you stay updated on the latest cybersecurity threats and developments?

Discuss strategies such as attending relevant webinars, participating in industry associations, and following authoritative cybersecurity blogs or news outlets. Highlight the importance of continuous learning and being proactive in implementing the latest protective measures for clients.

Join Rise to see the full answer
What leadership style do you employ when managing a cybersecurity team?

In your response, elaborate on your leadership approach, emphasizing trust, empowerment, and collaboration. Share examples of how you've fostered a team-driven atmosphere, encouraging team members to share ideas and contribute to innovative solutions.

Join Rise to see the full answer
How would you prioritize multiple cybersecurity projects with tight deadlines?

Explain your approach to prioritizing tasks based on urgency, client impact, and resources available. Illustrate with examples of project management frameworks you've utilized, along with tools that help you to keep track and ensure timely delivery.

Join Rise to see the full answer
What experience do you have with governance, risk, and compliance (GRC) tools?

Discuss your familiarity with specific GRC tools and how you've successfully utilized them in previous roles to streamline data protection processes, track compliance, and monitor risk levels. Give examples of improvements these tools brought to your projects.

Join Rise to see the full answer
How do you handle client pushback regarding compliance recommendations?

Your answer should convey your skills in negotiation and conflict resolution. Share a specific instance where you addressed client concerns by providing clear rationales supported by data and best practices, ultimately reaching a consensus that satisfied both parties.

Join Rise to see the full answer
What steps would you take to develop a data protection strategy for a new client?

Outline a structured approach that includes conducting a comprehensive risk assessment, understanding regulatory requirements, and identifying the client's specific needs. Emphasize your ability to tailor solutions and engage stakeholders effectively.

Join Rise to see the full answer
Tell me about a time you contributed to improving a process in your team.

Focus on a concrete example that illustrates your analytical and problem-solving skills. Describe the process you improved, the methods you used to analyze its effectiveness, and the measures you implemented that resulted in a more efficient workflow.

Join Rise to see the full answer
What role does communication play in cybersecurity project management?

Highlight that effective communication is paramount in ensuring that all stakeholders are on the same page, risks are managed appropriately, and clients fully understand compliance requirements. Share examples of clear communication strategies you've employed in previous projects.

Join Rise to see the full answer
Photo of the Rise User By EY

Building a better working world

591 jobs
MATCH
Calculating your matching score...
FUNDING
DEPARTMENTS
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
December 17, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!