Cybersecurity PCI Compliance Advisor

Reposted Yesterday
Be an Early Applicant
2 Locations
In-Office
Senior level
Healthtech
The Role
Lead enterprise PCI DSS compliance activities: interpret controls, validate scope and evidence, support ISA/QSA assessments, manage remediation and third-party responsibilities, design testing plans, support audits (PCI, HIPAA, HITRUST, SOC 2, NIST), mentor analysts, improve compliance processes and tooling, and provide technical architecture and incident response support.
Summary Generated by Built In

Anticipated End Date:

2026-09-25

Position Title:

Cybersecurity PCI Compliance Advisor

Job Description:

Information Security Advisor (Cybersecurity PCI Compliance Advisor)

Information Security Risk Management

Hybrid 1: This role requires associates to be in-office 1 - 2 days per week fostering collaboration and connectivity, while providing flexibility to support productivity and work-life balance. This approach combines structured office engagement with the autonomy of virtual work, promoting a dynamic and adaptable workplace. Alternate locations may be considered if candidates reside within a commuting distance from an office

  • Please note that per our policy on hybrid/virtual work, candidates not within a reasonable commuting distance from the posting location(s) will not be considered for employment, unless an accommodation is granted as required by law.

The Information Security Advisor is responsible for leading and supporting Payment Card Industry Data Security Standard (PCI DSS) compliance activities across the enterprise. This role provides subject matter expertise for PCI DSS control interpretation, assessment readiness, evidence review, remediation tracking, scope validation, control testing, and stakeholder engagement. The Advisor supports PCI Internal Security Assessor (ISA), Qualified Security Assessor (QSA), Report on Compliance (ROC), Self-Assessment Questionnaire (SAQ), Attestation of Compliance (AOC), and related PCI DSS assessment activities across business, technology, security, compliance, and third-party environments. This role requires strong knowledge of PCI DSS requirements, payment environments, cardholder data flows, segmentation, compensating controls, evidence validation, and risk-based compliance decision-making. The Advisor will partner with internal teams, external assessors, business owners, technology owners, service providers, and leadership to maintain PCI compliance, support audit readiness, and strengthen the organization’s payment security control environment.

How you will make an impact:

  • Provides first level engineering design functions and trouble resolution.

  • Provides trouble resolution and serves as point of technical escalation on complex problems.

  • Support PCI governance activities, including maintenance of PCI policies, standards, procedures, control matrices, evidence repositories, assessment schedules, risk registers, and compliance dashboards.

  • Evaluate third-party service provider PCI responsibilities, including review of AOCs, responsibility matrices, shared responsibility documentation, contracts, service descriptions, and supporting security evidence.

  • Develops testing plans to ensure quality of implementation.

  • Support internal and external audit activities related to PCI DSS, HIPAA, HITRUST, SOC 2, NIST, and other cybersecurity or regulatory compliance requirements.

  • Provides system and network architecture support for information and network security technologies.

  • Provides technical support to business and technology associates in risk assessments and implementation of appropriate information security procedures, standards and technologies.

  • Maintains security incident response plans.

  • Represents major upgrades and business system replacements in change control.

  • Designs & engineers repetitive technical solutions based on business requirements and defined technology standards.

  • Develops support procedures and performance metrics reports.

  • Leads level 1 & 2 incident recoveries.

  • May organize the efforts of other analysts as part of incident recovery.

  • Mentor analysts and control owners by providing guidance on PCI evidence quality, control interpretation, assessment documentation, remediation planning, and stakeholder communication.

  • Contribute to continuous improvement of PCI compliance processes, templates, workflows, reporting, evidence management, automation opportunities, and program maturity initiatives.

  • Use AI-enabled tools and emerging technologies responsibly to improve productivity, research, documentation quality, control analysis, workflow efficiency, reporting, and decision support while maintaining data protection, confidentiality, and compliance requirements.

Minimum Requirements: 

  • Requires BS/BA degree in Information Technology or related field of study and a minimum of 5 years experience in systems support, system administration, system engineering, system security, access management, network security, network communications, computer networking, telecommunications, systems development and management, hardware, software, and/or data; or any combination of education and experience, which would provide an equivalent background.

Preferred Skills, Capabilities and Experiences:

  • Requires experience in planning and designing highly complex systems.

  • Experience with multiple technical and business disciplines strongly preferred.

  • Security Certifications: CISSP or other technical security certifications (e.g. Systems Security Certified Practitioner, Certification and Accreditation Professional) strongly preferred.

  • Bachelor’s degree in cybersecurity, information systems, computer science, risk management, business, audit, or a related field; or equivalent combination of education, training, and work experience.

  • 5+ years of experience in cybersecurity, PCI compliance, IT audit, GRC, technology risk management, information security, regulatory compliance, or a related field.

  • Experience using GRC, workflow, ticketing, audit management, or evidence management tools.

  • Active or prior PCI Internal Security Assessor (ISA) certification or PCI Qualified Security Assessor (QSA) certification.

  • Familiarity with PCI-related standards and guidance, including PCI DSS, PCI 3DS, PCI P2PE, PCI PIN Security, PCI Secure Software Standard, PCI SSF, and PCI SSC guidance documents.

Job Level:

Non-Management Exempt

Workshift:

Job Family:

IFT > IT Security & Compliance

Please be advised that Elevance Health only accepts resumes for compensation from agencies that have a signed agreement with Elevance Health. Any unsolicited resumes, including those submitted to hiring managers, are deemed to be the property of Elevance Health.


Who We Are

Elevance Health is a health company dedicated to improving lives and communities – and making healthcare simpler. We are a Fortune 25 company with a longstanding history in the healthcare industry, looking for leaders at all levels of the organization who are passionate about making an impact on our members and the communities we serve.


How We Work

At Elevance Health, we are creating a culture that is designed to advance our strategy but will also lead to personal and professional growth for our associates. Our values and behaviors are the root of our culture. They are how we achieve our strategy, power our business outcomes and drive our shared success - for our consumers, our associates, our communities and our business.


We offer a range of market-competitive total rewards that include merit increases, paid holidays, Paid Time Off, and incentive bonus programs (unless covered by a collective bargaining agreement), medical, dental, vision, short and long term disability benefits, 401(k) +match, stock purchase plan, life insurance, wellness programs and financial education resources, to name a few.


Elevance Health operates in a Hybrid Workforce Strategy. Unless specified as primarily virtual by the hiring manager, associates are required to work at an Elevance Health location at least once per week, and potentially several times per week. Specific requirements and expectations for time onsite will be discussed as part of the hiring process.


The health of our associates and communities is a top priority for Elevance Health. We require all new candidates in certain patient/member-facing roles to become vaccinated against COVID-19 and Influenza. If you are not vaccinated, your offer will be rescinded unless you provide an acceptable explanation. Elevance Health will also follow all relevant federal, state and local laws.


Elevance Health is an Equal Employment Opportunity employer, and all qualified applicants will receive consideration for employment without regard to age, citizenship status, color, creed, disability, ethnicity, genetic information, gender (including gender identity and gender expression), marital status, national origin, race, religion, sex, sexual orientation, veteran status or any other status or condition protected by applicable federal, state, or local laws. Applicants who require accommodation to participate in the job application process should submit the following form: Accessibility Accommodation Request Form and a member of the team will be in contact. Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state, and local laws, including, but not limited to, the Los Angeles County Fair Chance Ordinance and the California Fair Chance Act.


Prospective employees required to be screened under Florida law should review the education and awareness resources at HB531 | Florida Agency for Health Care Administration.


NOTE: Workday keeps job postings active through 11:59:59 PM on the day before the listed end date. Example: If the end date is 3/13, the posting will automatically come down on 3/12 at 11:59:59 PM. In other words — the job is posted until 3/13, not through 3/13.

Skills Required

  • BS/BA degree in Information Technology or related field (or equivalent combination of education and experience)
  • Minimum of 5 years experience in systems support, system administration, system engineering, system security, access management, network security, network communications, computer networking, telecommunications, systems development and management, hardware, software, and/or data
  • Experience planning and designing highly complex systems
  • Experience with multiple technical and business disciplines
  • Security certifications such as CISSP or other technical security certifications
  • 5+ years of experience in cybersecurity, PCI compliance, IT audit, GRC, technology risk management, information security, or regulatory compliance
  • Experience using GRC, workflow, ticketing, audit management, or evidence management tools
  • Active or prior PCI Internal Security Assessor (ISA) or PCI Qualified Security Assessor (QSA) certification
  • Familiarity with PCI-related standards and guidance (PCI DSS, PCI 3DS, PCI P2PE, PCI PIN Security, PCI Secure Software Standard, PCI SSF, PCI SSC guidance)

Elevance Health Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Elevance Health and has not been reviewed or approved by Elevance Health.

  • Strong & Reliable Incentives Bonuses are often described as “awesome,” and incentive programs are positioned as a meaningful contributor to total rewards beyond base pay. Regular bonus and raise cycles are also associated with sustained earnings increases over multiple years in some roles.
  • Parental & Family Support Family-focused benefits are broad, including paid parental leave, a parental transition week, and critical caregiving leave. Adoption and surrogacy assistance and a Dependent Care FSA with employer matching further strengthen support for caregiving responsibilities.
  • Retirement Support A 401(k) plan with employer matching is part of the core package and is consistently cited as a foundational financial benefit. Stock purchase access is also included as an additional long-term savings and ownership option.

Elevance Health Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Indianapolis, IN
35,761 Employees

What We Do

Fueled by our bold purpose to improve the health of humanity, we are transforming from a traditional health benefits organization into a lifetime trusted health partner.   Our nearly 100,000 associates serve more than 118 million people, at every stage of health. We address a full range of needs with an integrated whole health approach, powered by industry-leading capabilities and a digital platform for health.  We believe that improving health for everyone is possible. It begins by redefining health, reimagining the health system, and strengthening our communities.

Similar Jobs

Magnite Logo Magnite

Director, Engineering

AdTech • Big Data • Digital Media • Software
Remote or Hybrid
15 Locations
950 Employees
230K-250K Annually

Cox Enterprises Logo Cox Enterprises

Principal Software Engineer

Artificial Intelligence • Automotive • Greentech • Information Technology • Machine Learning • Software • Cybersecurity
Hybrid
Atlanta, GA, USA
30000 Employees
163K-272K Annually

Cox Enterprises Logo Cox Enterprises

Lead Product Manager

Artificial Intelligence • Automotive • Greentech • Information Technology • Machine Learning • Software • Cybersecurity
Hybrid
Atlanta, GA, USA
30000 Employees
112K-186K Annually

Cox Enterprises Logo Cox Enterprises

Software Engineer

Artificial Intelligence • Automotive • Greentech • Information Technology • Machine Learning • Software • Cybersecurity
Hybrid
Atlanta, GA, USA
30000 Employees
89K-134K Annually

Similar Companies Hiring

Sailor Health Thumbnail
Healthtech • Social Impact • Telehealth
New York City, NY
20 Employees
Granted Thumbnail
Artificial Intelligence • Healthtech • Insurance • Mobile • Financial Services
New York, New York
23 Employees
OneImaging Thumbnail
Healthtech
Miami, FL
62 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account