Sr. Security Compliance Analyst job at Entrust Datacard
Website :
940 Days Ago
Linkedid Twitter Share on facebook

Vacancy title:
Sr. Security Compliance Analyst

[ Type: FULL TIME , Industry: Information Technology , Category: Computer & IT ]

Jobs at:

Entrust Datacard

Deadline of this Job:
11 May 2022  

Duty Station:
Within Kenya , Nairobi , East Africa

Summary
Date Posted: Thursday, April 28, 2022 , Base Salary: Not Disclosed

Similar Jobs in Kenya
Learn more about Entrust Datacard
Entrust Datacard jobs in Kenya

JOB DETAILS:
Sr. Security Compliance Analyst

Position Overview:
This position works as part of a security team responsible for ensuring that the company's information resources are secure from unauthorized access, protected from inappropriate alteration, physically secure, and available to users in a timely fashion. This position demands an organized, action oriented team player with the ability to prioritize daily work and support on multiple initiatives simultaneously; strong communication and customer focus is required.

How You Will Make an Impact:
• Oversees PCI-DSS operational security compliance and audit functions
• Review operational procedures to ensure they comply with security audit requirements
• Submit periodic compliance reports as well as operational requirements defined in PCI-DSS and other security compliance activities
• Facilitate external security auditor engagements, organize required objective compliance evidence, schedule required resources and audit timelines
• Review audit logs for anomalies and report and follow up on anomalies as required
• Prepare and deliver PCI-DSS security audit and compliance scorecards to CISO and other leaders (e.g., CIO, Internal Audit, CFO, etc)
• Perform all logical controls required PCI-DSS as well as document all artifacts so they are available for yearly audit. (E.g., Ensure all changes are approved by the CISO or authorized individual, investigate all audit log validation failures, approval all FW rules in the CP cardholder data environment)
• Work closely with facilities security to either directly perform physical control or make sure they are completed – these include daily, weekly, monthly, quarterly as well as yearly artifacts that are required to support continued PCI-DSS certifications. Formal artifacts must be obtained and available for the certification audits.
• Facilitate timely identification, communication and recommended resolution of security risks
• Serve as the internal and customer facing subject matter expert on PCI-DSS
• Review and interpret vulnerability scan results
• Assistance with filling out Financial customer questionnaires
• Assistance answering auditor questions
• Drive the ongoing PCI-DSS internal compliance (awareness training, vulnerability scans, etc.);
• Advise customers and internal stakeholders on PCI-DSS best practices, compliance, and audit processes;
• Proactively understand PCI-DSS security best practices and advocate for adoption of these internally at Entrust;
• Coordinate with the various groups at Entrust and 3rd Parties to adopt best practices, communicate system changes, and facilitate documentation and compliance;
• Assist with other audits and compliance activities relating to data security and technical controls;
• Manage project document repository; maintain strict deadlines and positive vendor/customer relationships.

Basic Qualifications:
• 8+ years of compliance and/or audit experience
• Experience with Enterprise Network devices (i.e. routers, switches, firewalls).
• Experience with Operating platforms (i.e. UNIX and Microsoft)
• Proficiency conducting and evaluating/analyzing results from the following set of tools, to include but not limited to: Nexpose, WebInspect, etc
• Knowledge of PCI
• Experience with enterprise security tools and security architecture best practices
• Experience with preparing and testing IT Contingency Plans
• Experience with internal controls, risk assessments, business process and internal IT control testing or operational auditing
• Minimum of 10% travel requirement
• Working knowledge of French

Preferred Qualifications:
• Bachelor’s Degree
• Security clearance
• CISA, CIA, CPA, CGFM, or CRISC certification a plus
• Experience with NIST, FedRAMP, FISMA, ISO, PCI DSS and CP
• Project management experience preferred
• Experience with creating all necessary PCI-DSS Certification and Accreditation documentation

Work Hours: 8


Experience in Months: 96

Level of Education:
Bachelor Degree

Job application procedure
Interested and qualified? Go to Entrust Datacard on www.linkedin.com to apply


All Jobs

QUICK ALERT SUBSCRIPTION

Job Info
Job Category: Computer/ IT jobs in Kenya
Job Type: Full-time
Deadline of this Job: 11 May 2022
Duty Station: Nairobi
Posted: 28-04-2022
No of Jobs: 1
Start Publishing: 28-04-2022
Stop Publishing (Put date of 2030): 28-04-2065
Apply Now
Notification Board

Join a Focused Community on job search to uncover both advertised and non-advertised jobs that you may not be aware of. A jobs WhatsApp Group Community can ensure that you know the opportunities happening around you and a jobs Facebook Group Community provides an opportunity to discuss with employers who need to fill urgent position. Click the links to join. You can view previously sent Email Alerts here incase you missed them and Subscribe so that you never miss out.

Caution: Never Pay Money in a Recruitment Process.

Some smart scams can trick you into paying for Psychometric Tests.