Jobs · Management · California

PCI Compliance Engineer

TEKsystems · Cupertino, CA · 2 wk ago
HybridManagement$65/hrFull-time

About the role

Our client is seeking a detail-oriented and proactive Compliance & Privacy Engineer to join their team. This role sits at the intersection of data governance, privacy engineering, and regulatory compliance. The ideal candidate will be responsible for maintaining the integrity of a centralized data registry, enforcing data classification standards, and driving execution of compliance controls across multiple audit and assessment frameworks. This is a hands-on role requiring strong organizational skills, technical aptitude, and cross-functional collaboration.

Responsibilities

  • Data Registry & Privacy Governance
    • Input, update, and validate metadata for databases and data assets within a centralized data registry, ensuring all entries are current and accurate.
    • Apply data tags and classifications (e.g., data type, sensitivity level, personal data indicators) in alignment with established privacy and data governance standards.
    • Review database documentation and collaborate closely with data owners, engineers, and privacy stakeholders to ensure accurate and comprehensive metadata capture.
    • Support migration activities by mapping existing metadata to new registry schemas and standards, ensuring continuity and compliance during transitions.
    • Perform regular quality checks to ensure completeness, consistency, and accuracy of tagged and classified data across the registry.
  • Engineering Compliance
    • Review specific features from a compliance and privacy standpoint.
    • Monitor, track, and execute compliance controls across all audits and assessments, ensuring timely completion and adherence to regulatory requirements.
    • Track and execute recurring monthly controls including Splunk monitoring, GitHub access reviews, patching status verification, and baseline compliance checks.
    • Actively monitor compliance and governance tools for WPC (Wallet, Payments & Commerce) operations, flagging issues and ensuring tool health.
    • Monitor and track all scheduled tickets related to WPC audits and projects, ensuring milestones are met and blockers are escalated promptly.
    • Monitor and track patching cycles, aging vulnerabilities, and vulnerability reports, coordinating remediation efforts with relevant engineering teams.
    • Monitor and track PCI training completion across applicable teams, ensuring all personnel maintain required certifications and awareness.
    • Assist in collecting, organizing, and submitting evidence required for WPC audits, including PCI DSS, PCI PIN, PCI MPoC, APN, SOX, NIST, and other assessments.
    • Maintain Confluence and Quip documentation spaces to track all internal compliance projects, issues, progress, and follow-ups.
    • Serve as a project management point of contact for internal compliance initiatives, driving accountability and visibility.
    • Perform AWS routine operational tasks in support of compliance infrastructure and monitoring.

Requirements

  • 10+ years of experience in compliance engineering, data governance, privacy engineering, or a related discipline.
  • Hands-on experience with data classification frameworks and metadata management in enterprise environments.
  • Familiarity with regulatory and audit frameworks such as PCI DSS, PCI PIN, NIST, SOX, etc.
  • Working knowledge of compliance and monitoring tools (e.g., Splunk, GitHub or similar).
  • Experience with AWS cloud services and routine cloud operations.
  • Strong documentation skills with proficiency in Confluence, Quip, or similar collaboration platforms.
  • Excellent organizational and project management skills with the ability to track multiple work streams simultaneously.
  • Familiarity with AI to create AI agents to perform compliance day-to-day jobs.

Qualifications

  • Preferred Qualifications
    • Bachelor's degree in Computer Science, Information Security, Data Engineering, or a related field.
    • Experience with data privacy regulations (e.g., GDPR, CCPA) and privacy-by-design principles.
    • Familiarity with vulnerability management tools and patching lifecycle processes.
    • Relevant certifications such as CISA, CISM, CRISC, PCI QSA, CIPM/CIPP, or AWS certifications.
    • Experience working in large-scale enterprise environments with complex data ecosystems.
    • Strong cross-functional communication skills with the ability to engage both technical and non-technical stakeholders.

Skills

  • Compliance
  • Security
  • Risk management
  • Risk assessment
  • Risk analysis
  • Payment Card Industry (PCI) compliance
  • PCI DSS
  • AWS
  • Project management
  • Program management
  • Data governance

What We Value

  • Attention to Detail — Precision in data tagging, metadata validation, and audit evidence collection.
  • Collaboration — Ability to work across engineering, privacy, and compliance teams seamlessly.
  • Accountability — Ownership of compliance timelines, controls, and project deliverables.
  • Continuous Improvement — A mindset geared toward optimizing processes, tools, and documentation.

Pay

The pay range for this position is $65.00 - $65.00/hr.

Benefits

Eligibility requirements apply to some benefits and may depend on your job classification and length of employment. Benefits are subject to change and may be subject to specific elections, plan, or program terms. If eligible, the benefits available for this temporary role may include the following:

  • Medical, dental, and vision insurance
  • Critical Illness, Accident, and Hospital insurance
  • 401(k) Retirement Plan – Pre-tax and Roth post-tax contributions available
  • Life Insurance (Voluntary Life & AD&D for the employee and dependents)
  • Short- and long-term disability
  • Health Spending Account (HSA)
  • Transportation benefits
  • Employee Assistance Program
  • Time Off/Leave (PTO, Vacation, or Sick Leave)

Schedule

This is a hybrid position based in Cupertino, CA. The role is a contract position.

Similar jobs