Consulting- Manager- Security, Privacy and Risk- PCI

Apply Now >>    

In order to address the most critical needs of our clients, RSM US LLP has established the Security and Privacy Services group, composed of more than 100 professionals dedicated exclusively to serving the cybersecurity needs of our clients. This group includes experienced consultants located throughout the country dedicated to helping clients with preventing, detecting and responding to security threats that may affect their critical systems and data. We serve a diverse client base within a variety of industries, and we are relied upon to provide expertise within areas of security testing, architecture, governance, compliance and digital forensics.

The PCI Security Standards Council LLC (SSC) has mandated that all organizations that store, process or transmit credit card data must comply with the PCI Data Security Standard (DSS). In addition, these organizations must annually attest to their compliance either through a Self-Assessment Questionnaire or a Report of Compliance. Regardless of the reporting method, it must be completed by a qualified assessor. As a PCI Certified Qualified Assessor Company (QSAC), RSM is seeking individuals with exposure to implementing or assessing information technology controls designed to protect cardholder data.

Responsibilities will include working with clients to determine and document if and how the design and effectiveness of their IT controls are in place to meet PCI DSS control objectives:

  • Implementation and management of firewalls
  • Hardening of servers and network devices
  • Protecting stored cardholder data
  • Data encryption, both at rest and in transit
  • Protecting systems from Malware
  • Developing and maintaining secure applications
  • Implementing ""least privileged"" access controls around cardholder data
  • User account provisioning
  • Physical access controls
  • Logging and monitoring
  • Vulnerability and penetration testing
  • Policies, procedures and standards for securing cardholder data

Basic Qualifications:

  • Bachelor's degree in computer science or related field from an accredited college/university or a minimum of 5 years of experience in lieu of degree
  • Minimum 3 years of experience within the cybersecurity space, with a preference for prior consulting or professional services backgrounds
  • Understanding of IT audit and risk assessment techniques.
  • Ability to travel as needed
  • Proven foundation of networking with a solid grasp of each of the seven layers of the OSI model
  • Exposure to operating system, web server and database security

Preferred Qualifications:

  • PCI Qualified Security Assessor (QSA)
  • PCI Internal Security Assessor (ISA)
  • One or more of the following governance certifications:
    • Certified Information Systems Security Professionals® (CISSP®);
    • Certified Information Systems Auditor® (CISA®);
    • Certified Information Security Manager® (CISM®);
    • Certified Internal Auditor® (CIA®);
    • GIAC Systems and Network Auditor (GSNA);
    • Certified ISO 27001, Lead Auditor, Internal Auditor; (from accredited certifying body)
    • Certified ISO 27001 Lead Implementer 1(from accredited certifying body)
  • Must possess a high degree of integrity and confidentiality, as well as the ability to adhere to both firm and professional standards, policies and best practices, including established consulting standards related to quality control, review and collaborative team deliverable development
  • Strong verbal and written abilities
  • Strong multitasking, project and people management skills

You want your next step to be the right one. You've worked hard to get where you are today. And now you're ready to use your unique skills, talents and personality to achieve great things. RSM is a place where you are valued as an individual, mentored as a future leader, and recognized for your accomplishments and potential. Working directly with clients, key decision makers and business owners across various industries and geographies, you'll move quickly along the learning curve and our clients will benefit from your fresh perspective.

Experience RSM US. Experience the power of being understood.

RSM is an equal opportunity/affirmative action employer. Minorities/Females/Disabled/Veterans.
Job ID RSM522
Line of Business: Consulting Services
SubFunction: RAS Security, Privacy & Risk
Job Type: Full Time
Req #: RSM522
Location: 44 Montgomery Street, Ste 3900, 600 University St Ste 1100, San Francisco, CA US
Region: West Region
Job Category: Business Consulting/Technology
Employment Type: Experienced
Degree Required: Bachelor
Travel: Yes
Apply Now >>