- Company Name
- Motion Recruitment
- Job Title
- Senior Security Engineer / PCI-DSS / Atlanta / Hybrid
- Job Description
-
Job Title: Senior Security Engineer – PCI DSS
Role Summary
Lead PCI DSS compliance activities, assess and remediate security control gaps, and guide enterprise-wide information‑security posture. Deliver technical expertise to design, implement, and manage security controls, including firewalls, IDS/IPS, encryption, and access‑management systems, while ensuring adherence to PCI DSS 4.0.1 and related industry standards.
Expectations
- Conduct PCI DSS assessments, scope and segmentation planning, and remediation planning for large enterprise environments.
- Provide strategic guidance to IT and business partners on PCI scope, segmentation, and control implementation.
- Own the complete lifecycle of security control deployment, testing, monitoring, and incident response.
- Maintain up‑to‑date knowledge of PCI DSS, GRC, and cyber‑security best practices.
- Communicate findings and recommendations clearly to technical teams, management, and stakeholders.
Key Responsibilities
- Perform PCI DSS gap analysis, test planning, evidence collection, and reporting.
- Design, configure, and maintain firewalls, IDS/IPS, encryption, and other security devices.
- Develop and run vulnerability scans, penetration tests, and risk assessments.
- Automate incident handling, threat detection, and reporting via scripts and tooling.
- Conduct forensic investigations and incident response for security incidents.
- Draft, review, and update security policies, procedures, and controls.
- Mentor and consult on secure architecture, segmentation, and access control.
- Collaborate with GRC, IT, and operations to implement continuous compliance monitoring.
- Evaluate emerging security technologies and recommend adoption.
Required Skills
- 5+ years PCI DSS assessment and remediation experience.
- Deep knowledge of PCI DSS 4.0.1, scoping, segmentation, and methodology.
- Proficiency in vulnerability management, penetration testing, and incident response.
- Strong understanding of network architecture, cloud security, and information‑security domains.
- Excellent written and verbal communication across technical and non‑technical audiences.
- Self‑motivated, independent work style with clear, actionable deliverables.
- Ability to draft and interpret policies, procedures, and compliance documentation.
Required Education & Certifications
- Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience).
- PCI‑P (Payment Card Industry Professional) preferred.
- CISSP, CISA, or CRISC certifications highly desirable.