Cybersecurity GRC Consultant (PCI DSS)
Atos GroupMahape, Navi Mumbai, Maharashtra, India; Mumbai / Bengaluru
Advertisement
in-feed
About Atos Group
Atos Group is a global leader in digital transformation with approximately 63,000 employees and annual revenue of approximately €8 billion, operating in 61 countries under two brands: Atos for services and Eviden for products. It is a European leader in cybersecurity, cloud and high performance computing.
Role details
- Work location: Mumbai / Bengaluru
- Experience: 7+ years
Roles and responsibilities
- Apply hands-on experience in information security and cybersecurity standards, including PCI DSS, SWIFT CSP, ISO 27001:2022, ISO 27701 and SOC 2.
- Develop and implement cybersecurity standards, procedures and guidelines.
- Analyse security requirements, perform risk assessments and identify potential vulnerabilities within IT systems.
- Conduct gap analysis and risk assessments based on NIST, ISO, PCI DSS and SWIFT frameworks.
- Analyse cardholder data flows, identify risks to cardholder data and provide guidance on PCI DSS awareness.
- Conduct PCI DSS audits to ensure secure payment transactions and adherence to the standard.
- Collect, analyse and consolidate evidence of clients' PCI DSS compliance and write or support the writing of AOCs and ROCs.
- Assess data flows to identify sensitive datasets requiring obfuscation.
- Develop a data obfuscation framework covering governance, workflows and control points.
- Deliver documentation, playbooks and knowledge transfer to internal stakeholders.
- Provide guidance on tool selection and integration with data management and DevOps environments.
- Establish validation and monitoring controls for data integrity and protection effectiveness.
- Understand and explain technical vulnerabilities.
- Use intermediate knowledge of Active Directory, firewalls, routers, switches, SCCM, McAfee security products, DLP, secure coding practices and product security.
Skills and qualifications
- Excellent communication and presentation skills, with the ability to interact effectively across functions.
- Preferred certifications include PCI DSS QSA, PCIP, PCI ISA, CISSP, CISA, CISM and ISO 22301.
- Relevant qualifications include BE/BTech, MCA or MBA with a specialization in information security.
- Critical thinking, problem-solving and informed decision-making skills.
- Collaboration skills with legal, IT, engineering and business teams.
- Deep knowledge of PCI DSS, SWIFT CSP, NIST CSF, ISO 27001 and GDPR.
Atos is committed to diversity, inclusion and a fair work environment.