Senior Consultant, Technical - PCI QSA, P2PE, PIN
Chicago, Cook County, Illinois, 60290, USA
Listed on 2026-05-11
-
IT/Tech
Cybersecurity, Information Security, IT Consultant
Coalfire Systems
Coalfire is an EEO employer. We celebrate diversity and are committed to respecting one another, embracing individual differences, and creating an inclusive environment for all employees.
PositionSenior Consultant, Technical Payments - PCI QSA, P2PE, PIN
About CoalfireCoalfire is on a mission to make the world a safer place by solving our clients’ hardest cybersecurity challenges. We work at the cutting edge of technology to advise, assess, automate, and ultimately help companies navigate the ever-changing cybersecurity landscape. We are headquartered in Chicago, Illinois with offices across the U.S. and U.K., and we support clients around the world.
But that’s not who we are – that’s just what we do.
We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team of passionate problem-solvers who are hungry to learn, grow, and make a difference.
Position SummaryThis is a great opportunity to grow your career and lead enterprise engagements as a Senior Consultant for our Payments Solution Validation team.
In this role you will lead and perform assessments of client environments against regulatory and industry security standards, with a primary focus on PCI Point-to-to-Point Encryption (P2PE) and PCI PIN Security standards.
As a senior member of the Payments Solution Validation team, you will evaluate technical controls, encryption architectures, and secure key-management practices for financial institutions and payment solution providers.
You will act as a trusted advisor, guiding clients on data protection strategies, encryption best practices, and overall PCI compliance while delivering high-quality assessment reports and attestations.
This position is a remote position that must be located in the United Kingdom (England, Scotland, Wales, and/or Northern Ireland). Coalfire has an office in Manchester, UK so there is opportunity to work in the office in a hybrid capacity if preferred.
What You’ll Do- Leads audits and assessments including audit planning, evidence review, controls evaluation, and client interviews.
- Prepare relevant frameworks assessment reports and attestations.
- Manage priorities, tasks and hours on projects in coordination with project managers to meet delivery utilization targets.
- Ensure all deliverables meet Coalfire quality standards and timelines.
- Proactively escalate client or project risks to management. Interface with clients throughout the engagement, including executive and technical stakeholders.
- Build and maintain strong, collaborative client relationships
- Maintain industry certifications and deepen subject matter expertise through continuous professional development.
- Travel up to 30% as required
- 5+ years in IT security, payments security and/or application development
- Bachelor’s degree or equivalent combination of education and work experience
- Knowledge of industry cryptography standards such as ISO 11568 and 13491, ANSI X9.97, and NIST 140-2 Level 3
- Strong understanding of PCI compliance, encryption, key management, PKI, HSMs, POI key-injection, physical security controls
- Experience with security audits, risk assessments, and gap analyses
- A commitment to your profession demonstrated by participation in industry events, seminars, blogs, and memberships in professional associations
- Strong consulting skills with executive leadership and technical teams; ability to advise, challenge, and influence while building trust
- Excellent written and verbal communication skills
- Ability to lead and facilitate meetings with small and large groups
- Strong customer service, stakeholder management, and project management skills
- Ability to manage multiple initiatives and projects independently in a fastpaced consulting environment
- Hold certifications in the below categories
- Information security certification: CISSP, CISM, ISO Lead 27001:2022 Lead Implementer
- Audit certification: CISA, GSNA, ISO 27001:2022 Lead Auditor, IRCA ISMS Auditor or higher, IIA Certified Internal Auditor (CIA)
- Willingness and ability to pursue P2PE-Assessor and/or QPA (PIN Assessor) certification
- Current or former PCI-QSA certification
- Current or former P2PE…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).