Senior Information Security Consultant
hace 3 días
**About Advantio**
Established in 2009, Advantio maintains an extensive team of consultants and security testing experts to provide digital security and assurance to its customers. Originally established as a payment compliance market leader, Advantio has grown from an established and leading payment security and compliance organisation in Europe to develop its comprehensive Cyber Security and Managed Security Services expertise - offering consultancy, products, and services to support organisations to first understand or their own cyber security related business risks and then by providing suitable and affordable solutions to manage those risks effectively and to remediate against threats proportionately. Advantio primarily serves the FinTech and Payment Card industries and is recognised by VISA as one of Europe’s top Qualified Security Assessor (QSA) providers.
**Role Mission**
To lead Security Consultancy engagements with clients within financial services and payment card industries. Focusing on delivery of Payment Compliance services, which include but are not limited to:
- PCI specialized assessment (PIN, P2PE, SSF, 3DS, etc.)
- PCI DSS, Swift, PSD2 assessments,
- GAP Analysis,
- Policy and Procedure review.
**Key Responsibilities**
- Lead customer engagements and provide senior cyber security advice and services to a broad range of clients and industries.
- Provide detailed analytical reporting, internal reporting metrics and program management.
- Provide leadership and mentorship to Junior consultants.
**Preliminary Analysis**
- Identifying all the stakeholders, sponsors, technical references (e.g. IT Project Manager, Software Engineer, Security Analyst) of the client in order to define the initial conditions and the needs analysis
**Gap Analysis and Scoping**
- Review of all locations and flows of cardholder data, as well as asset inventories
- Conducting PCI standards interviews to have a complete map of information/data workflows, processes and procedures, payment card data flow, information security controls
- Conducting technical interviews to understand eventual data security problems from in-depth technical point of view Producing Scoping and Gap Analysis Documentation
**Remediation**
- Providing the customer with a remediation plan/gap report
- Guiding and supporting all the remediation processes ensuring that the gaps are mitigated correctly
**Formal Assessment**
- Conducting technical interviews to understand eventual data security problems from in-depth technical point of view
- Analysis of network diagrams, asset lists to understand the infrastructure used by the customers
**Documentation**
- Preparation, validation and approval Reports on Compliance (RoC) and/or Reports of Validation (RoV) according to the standard templates provided by PCI SSC
- Preparation, validation and approval of Attestation of Compliance (AoC) and/or Attestation of Validation (AoV) according to the standard templates provided by PCI SSC
- Submission all the documentation to PCI SSC for the final approval in case of PA-DSS/P2PE process (signed RoV, AoV, Implementation Guide and Vendor Release Agreement)
**Knowledge and Skills (PCI QSA)**
- PCI QSA qualification
- P2PE qualification and/or relevant Encryption experience would be a distinct advantage.
- PCI DSS (PA-DSS, P2PE, PCI 3DS), GDPR Knowledge
- Virtualization
- Cloud technologies
- Cryptography techniques including algorithms, key management, and key lifecycle.
- Knowledge of industry standards for cryptographic techniques and key management, including but not limited to, ISO 11568 and 13491, ANSI X9.24 and X9.97, and NIST 140-2 Level 3
- Public key infrastructure (PKI) and the role and operations of a Certification Authority (CA) and Registration Authority (RA)
- Hardware security modules (HSMs) operations, policies, and procedures
- POI key-injection systems and techniques including key-loading devices (KLDs) and key management methods, such as Master/Session or DUKPT
- Physical security techniques for high-security areas
- Relevant PTS Security Requirements (e.g., SRED, SCR, OP)
- Authentication methods and techniques
- Networking (routing, switching, firewall network filtering)
- Operating Systems (Linux/Unix, Windows)
**Values and Competencies**
- Problem Solving (analysis, helicopter view, problem setting, decision making)
- Planning and Organization (time management, scheduling and control)
- Communication (clearness, listening, persuasion)
- Networking (reinforce relationships, use emotional intelligence and personal proximity)
- Results Orientation (delivering solutions, work under pressures
**Advantio Core Values**
- Harmony, always strive to create harmony
- Openness, always be open
- Social Responsibility, be socially responsible
- Timeless, whatever you build make it timeless
- Accommodating, make our customers feel at Home
- Learning, be a Learn it all
- Deliver, Results
-
Information Security Consultant
hace 3 días
Madrid, España Advantio A tiempo completoAdvantio is a leading Cyber Security and Managed Security Services (MSS) provider that helps businesses fight Cybercrime, protect data and reduce security risk. Offering a comprehensive portfolio of Cyber Security Advisory & Testing Services, Managed Security Services, Technology Solutions and Cyber Security Education, Advantio is the security partner of...
-
Information Security Consultant
hace 3 días
Madrid, España Advantio A tiempo completoAdvantio is a leading Cyber Security and Managed Security Services (MSS) provider that helps businesses fight Cybercrime, protect data and reduce security risk. Offering a comprehensive portfolio of Cyber Security Advisory & Testing Services, Managed Security Services, Technology Solutions and Cyber Security Education, Advantio is the security partner of...
-
Information Security Consultant
hace 4 días
Madrid, España Advantio A tiempo completo**About Advantio** Established in 2009, Advantio maintains an extensive team of consultants and security testing experts to provide digital security and assurance to its customers. Originally established as a payment compliance market leader, Advantio has grown from an established and leading payment security and compliance organisation in Europe to develop...
-
Information Security Consultant
hace 18 horas
Madrid, España Advantio A tiempo completo**About Advantio** Established in 2009, Advantio maintains an extensive team of consultants and security testing experts to provide digital security and assurance to its customers. Originally established as a payment compliance market leader, Advantio has grown from an established and leading payment security and compliance organisation in Europe to develop...
-
Information Security Consultant
hace 2 días
Madrid, Madrid, España Mfinite Consulting A tiempo completoJob OverviewWe are seeking a highly motivated and experienced Information Technology Security Standards Consultant to join our team and support the Maryland Longitudinal Data System Center (MLDS Center) in revising its Data Security and Safeguarding Plan (DSSP). This critical project involves modernizing security protocols, ensuring compliance with industry...
-
Junior Security Consultant
hace 3 días
Madrid, España Advantio A tiempo completoAdvantio is a leading Cyber Security and Managed Security Services (MSS) provider that helps businesses fight Cybercrime, protect data and reduce security risk. Offering a comprehensive portfolio of Cyber Security Advisory & Testing Services, Managed Security Services, Technology Solutions and Cyber Security Education, Advantio is the security partner of...
-
Junior Security Consultant Kzh338
hace 3 días
Madrid, España Reconocida Empresa A tiempo completo.Who Are We?Advantio is a leading Cyber Security and Managed Security Services (MSS) provider that helps businesses fight Cybercrime, protect data and reduce security risk.Offering a comprehensive portfolio of Cyber Security Advisory & Testing Services, Managed Security Services, Technology Solutions and Cyber Security Education, Advantio is the security...
-
Senior IT Security Engineer
hace 10 horas
Madrid, España Senior IT Security Engineer A tiempo completoEurovision Services (ES) is seeking a Senior IT Security Engineer for our Technology department in Madrid, Spain.ABOUT THE ROLEThe Senior IT Security Engineer plays a pivotal role in safeguarding the organization's information and technology assets. This role is responsible for the design, implementation, and maintenance of Eurovision's security systems...
-
Junior Security Consultant Kzh338
hace 1 día
Madrid, España Reconocida Empresa A tiempo completo.Who Are We?Advantio is a leading Cyber Security and Managed Security Services (MSS) provider that helps businesses fight Cybercrime, protect data and reduce security risk.Offering a comprehensive portfolio of Cyber Security Advisory & Testing Services, Managed Security Services, Technology Solutions and Cyber Security Education, Advantio is the security...
-
Junior Security Consultant Kzh338
hace 1 día
Madrid, España Reconocida Empresa A tiempo completoWho Are We?Advantio is a leading Cyber Security and Managed Security Services (MSS) provider that helps businesses fight Cybercrime, protect data and reduce security risk.Offering a comprehensive portfolio of Cyber Security Advisory & Testing Services, Managed Security Services, Technology Solutions and Cyber Security Education, Advantio is the security...
-
Junior Security Consultant Kzh338
hace 1 día
Madrid, España Reconocida Empresa A tiempo completoWho Are We?Advantio is a leading Cyber Security and Managed Security Services (MSS) provider that helps businesses fight Cybercrime, protect data and reduce security risk.Offering a comprehensive portfolio of Cyber Security Advisory & Testing Services, Managed Security Services, Technology Solutions and Cyber Security Education, Advantio is the security...
-
Senior Information Security Analyst
hace 5 días
Madrid, España NTT Ltd A tiempo completoNTT is a leading global IT solutions and services organisation that brings together people, data and things to create a better and more sustainable future. In today’s ‘iNTTerconnected’ world, connections matter more now than ever. By bringing together talented people, world-class technology partners and emerging innovators, we help our clients solve...
-
Information Security Consultant
hace 4 días
Madrid, España Ares Consultores A tiempo completo.Als Public Cloud Group sind wir darauf spezialisiert, mittelständischen Unternehmen bei der Modernisierung ihrer IT-Strukturen zur Seite zu stehen und diese auf ein modernes und sicheres Fundament zu stellen.Unser Ansatz ist dabei einzigartig: Wir setzen vollständig auf die Möglichkeiten der Public Cloud.Dieses Konzept hat sich als erfolgreich erwiesen,...
-
Senior Information Security Officer
hace 1 semana
Madrid, España Six Group A tiempo completoSIX Group Technology for the financial center – efficient, secure, stable.We ensure the flow of information and money between banks, merchants, investors and service providers worldwide.BME - Bolsas y Mercados Españoles - drives the transformation of financial markets and belongs to SIX, the third largest exchange group in Europe.What sets us apart drives...
-
Senior Information Security Officer
hace 10 horas
Madrid, España SIX Group A tiempo completoSIX Group Technology for the financial center – efficient, secure, stable. We ensure the flow of information and money between banks, merchants, investors and service providers worldwide. BME - Bolsas y Mercados Españoles - drives the transformation of financial markets and belongs to SIX, the third largest exchange group in Europe.What sets us apart...
-
Senior Information Security Officer
hace 4 días
Madrid, España SIX Group A tiempo completoSIX Group Technology for the financial center – efficient, secure, stable. We ensure the flow of information and money between banks, merchants, investors and service providers worldwide.BME - Bolsas y Mercados Españoles - drives the transformation of financial markets and belongs to SIX, the third largest exchange group in Europe. What sets us apart...
-
Senior Information Security Officer
hace 4 días
Madrid, España Six Group Services Ltd. A tiempo completoBME - Bolsas y Mercados Españoles - drives the transformation of financial markets and belongs to SIX, the third largest exchange group in Europe.What sets us apart drives us ahead: between local roots and global relevance, we are a unique blend of tradition and future, of foundation and growth.We value bright minds and inspire them to grow with their...
-
Senior Information Security Officer
hace 11 horas
Madrid, España SIX Group A tiempo completoBME - Bolsas y Mercados Españoles - drives the transformation of financial markets and belongs to SIX, the third largest exchange group in Europe.What sets us apart drives us ahead: between local roots and global relevance, we are a unique blend of tradition and future, of foundation and growth. We value bright minds and inspire them to grow with their...
-
Senior Information Security Officer
hace 10 horas
Madrid, España SIX Group Services Ltd. A tiempo completoBME - Bolsas y Mercados Españoles - drives the transformation of financial markets and belongs to SIX, the third largest exchange group in Europe.What sets us apart drives us ahead: between local roots and global relevance, we are a unique blend of tradition and future, of foundation and growth. We value bright minds and inspire them to grow with their...
-
Senior Information Security Officer
hace 1 semana
Madrid, España Six Group Services Ltd. A tiempo completoBME - Bolsas y Mercados Españoles - drives the transformation of financial markets and belongs to SIX, the third largest exchange group in Europe.What sets us apart drives us ahead: between local roots and global relevance, we are a unique blend of tradition and future, of foundation and growth.We value bright minds and inspire them to grow with their...