GRC Consultant
ampcus cyber- Posted 2 hours ago
- Be among the first 10 applicants
Job Description
About Us:
Welcome to Ampcus Cyber, a Global Cybersecurity Leader headquartered in Chantilly, Virginia. With a strong focus on safeguarding networks, infrastructure, and valuable assets, we offer tailored compliance and security solutions to businesses across various industries. Our Compliance Solutions & Assurance Services include audits and certifications, privacy and compliance services, testing & security solutions, and specialized training programs in cybersecurity.
Website: www.ampcuscyber.com
Position Overview:
We are seeking a knowledgeable Cybersecurity Consultant to join our team. The ideal candidate will assess, implement, and maintain robust cybersecurity strategies and solutions to safeguard our clients sensitive information and systems from threats, breaches, and vulnerabilities.
Experience: 1+years of experience
Key Responsibilities:
- Plan, coordinate, and execute both internal and external PCI DSS assessments to evaluate compliance status.
- Perform comprehensive risk assessments and gap analyses aligned with PCI DSS requirements.
- Collaborate with stakeholders across various departments to collect evidence and verify compliance controls.
- Pinpoint non-compliant areas and formulate targeted remediation recommendations.
- Develop and deliver formal audit reports while presenting key findings to senior management.
- Partner with Qualified Security Assessors (QSAs) to facilitate official PCI DSS validation processes.
- Manage and update documentation for security policies, procedures, and PCI DSS-related controls.
- Track PCI DSS updates and regulatory changes to sustain continuous compliance.
- Deliver training sessions and guidance to internal teams on PCI DSS requirements and industry best practices.
- Support remediation of audit findings and monitor progress through to full closure.
Qualifications:
- Bachelor's degree in Information Security, Computer Science, Information Systems, or a related discipline.
- At least 1–5 years of hands-on experience in IT auditing, security assessments, or compliance roles.
- Deep expertise in PCI DSS v4.0, including prior experience leading or supporting PCI audits.
- Proficiency with key information security frameworks such as NIST and ISO 27001.
- Solid grasp of network security principles, encryption methods, access controls, and vulnerability management practices.
More Info
Key Skills
encryption methods
access controls
network security principles
PCI DSS v4.0
