Explore careers with our portfolio companies

Senior Security and Compliance Analyst

Verifone

Verifone

IT, Legal
Atlanta, GA, USA
Posted 6+ months ago

Why Verifone

For more than 30 years Verifone has established a remarkable record of leadership in the electronic payment technology industry. Verifone has one of the leading electronic payment solutions brands and is one of the largest providers of electronic payment systems worldwide.

Verifone has a diverse, dynamic and fast paced work environment in which employees are focused on results and have opportunities to excel. We take pride in the fact that we work with leading retailers, merchants, banks, and third-party partners to invent and deliver innovative payments solution around the world. We strive for excellence in our products and services and are obsessed with customer happiness. Across the globe, Verifone employees are leading the payments industry through experience, innovation, and an ambitious spirit. Whether it’s developing the next platform of secure payment systems or searching for new ways to bring electronic payments to new markets, the team at Verifone is dedicated to the success of our customers, partners and investors. It is this passion for innovation that drives each one of our employees for personal and professional success.

What's exciting about the role:

This role is responsible for supporting Verifone’s information security assurance and compliance efforts in the areas of PCI DSS. You will be a part of the Payment Gateway Cyber security defends team and reports to our Information Security Officer.

Skills and Experience we desire:

A few of the main accountabilities are:

  • Manage priorities and tasks to achieve delivery on time.
  • Execute, examine, interview and test procedures in accordance with the appropriate control.
  • Ensure cyber security policies are in compliance with industry standards and that are implemented appropriately.
  • Schedule and follow up penetration testing activities.
  • Vulnerability management follow ups.
  • Participate in Change Advisory Boards.
  • Lead and/or assist Verifone annual PCI DSS compliance on Verifone payment gateways.
  • Assist with the Security Information Event Management (SIEM) products and File Integrity Management (FIM) products including monitoring, reporting, and analysis and development of use cases.
  • Assist in the creation and operation of information security processes and procedures, including change management, incident response plan and similar.
  • May be called upon to assist and advise Verifone teams with security elements of infrastructure or application projects.
  • May be called upon to participate in a Computer Security Incident Response Team.
  • Interface with IT teams within Verifone to coordinate related process and procedures.
  • Liaison with other organizations within Verifone to manage IT compliance with industry regulations, as well as contractually enforced standards.

Is this the challenge for you? Knowledge, skills, experience, training and education:

  • Strong experience in Information Security, audit, PCI DSS compliance, or a related field required.
  • Deep knowledge of Windows and Microsoft product required.
  • University degree in relevant subject area (computer science, computer management, information assurance focuses etc.) or equivalent work experience.
  • Experience in the management and configuration of FIM products.
  • Experience in the management and configuration of SIEM products.
  • Experience in the management and configuration of vulnerability management technologies.
  • Experience in an Information Security operations environment and responding to security incidents.
  • Experience in the configuration of preventative security controls (e.g., VPN, Firewall, IDS/IPS, and AV).
  • CISSP or ISACA certification desired.
  • Experience in the operation of Hardware Security Modules (HSM) and cryptographic key management
  • High level of initiative, creativity and motivation
  • Excellent accuracy and analytical skills
  • Effective time management and ability to prioritize.
  • Detailed understanding of Microsoft Operating systems and Active Directory
  • Good written and oral communication and influencing skills.
  • Flexible and personally motivated to succeed.
  • Professional technical writing ability

Context/Environment:

  • General office environment except during periods of travel.
  • Able to work effectively with peers in other geographical locations.
  • Must have the ability to travel both domestically and internationally.
  • Other language skills are considered a merit.

Our commitment

Verifone is committed to creating a diverse environment and is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or veteran status. Verifone is also committed to compliance with all fair employment practices regarding citizenship and immigration status.