Live opening · Posted 3 days ago

Senior Security Compliance Analyst – PCI DSS & U.S. FedRAMP (Remote – U.S.)

Entrust · United States (Remote)
Linkedin Yes
You are 3 days behind. JobBeeper subscribers saw this role while it was still new.

At a glance

The key details from the original listing.

Posted 3 days ago
CompanyEntrust
LocationUnited States (Remote)
Salary4 benefits
Work modeYes
SourceLinkedin
Listed3 days ago

Your early-applicant advantage

Live timing from JobBeeper.

Live data
17 min from Linkedin publishing this role to us finding it
3 min median time from a role going live to a subscriber being told
6 hours subscribers had this role before this page existed
74,033 roles found in the last 24 hours — the newest are not on this site yet
Start your free trial →

About the role

Description supplied by the original job listing.

Position Overview:
Entrust is seeking a highly skilled Senior Security Compliance Analyst to lead and sustain compliance for multiple compliance programs including PCI DSS and U.S. Federal. This role is responsible for designing and executing continuous compliance monitoring activities, identifying gaps and leading associated remediation efforts, planning and leading third-party audits, and measuring control effectiveness across cloud-based, on-prem and hybrid environments. The ideal candidate brings deep PCI DSS expertise, strong knowledge of the Risk Management Framework, FedRAMP and NIST 800-53 frameworks, and modern GRC experience that enables scalable, automated, and evidence-driven compliance operations.
This position partners closely with Security, Engineering, Product, and third-party providers to ensure controls are designed effectively, operating consistently, and aligned to business, statutory and regulatory expectations.
How You Will Make an Impact:
Lead and support end-to-end compliance efforts across multiple environments, including readiness assessments, audits, and continuous monitoring activities to ensure sustained security posture and audit readiness. Responsibilities include, but are not limited to:
Leading PCI DSS compliance-related activities and certification;
Supporting U.S. Federal readiness efforts, including gap assessments against NIST SP 800-53 and tracking remediation activities (POA&M);
Maintaining required evidence artifacts and ensuring traceability of evidence;
Interpreting and operationalizing compliance requirements into actionable control activities for engineering and operations;
Serving as SME for PCI DSS and NIST 800-53 compliance, advising internal teams and customers;
Supporting development of FedRAMP artifacts (e.g., SSP, control narratives, shared responsibility matrices);
Partnering with control owners to ensure controls meet PCI DSS and NIST 800-53 requirements;
Supporting external audits by preparing evidence, responding to auditor requests, coordinating audit activities, and tracking remediation;
Driving coordination with third parties (e.g., service providers, hosting partners) to ensure shared control alignment;
Ensuring audit readiness through continuous proactive gap assessments and control testing throughout the year;
Identifying, assessing, and communicating compliance and security risks to stakeholders;
Identifying, tracking, and driving closure of audit findings and control deficiencies; and
Contributing to the development and maintenance of security policies, standards, and procedures.
Basic Qualifications:
5+ years in security compliance, audit, or GRC with a strong understanding of administrative, technical, and physical controls, including how they support one another
Hands-on technical and audit experience with PCI DSS and NIST 800-53 compliance
Ability to work across multiple time zones with virtual global teams
Strong technical understanding of:
Cloud environments and shared responsibility models
Access control, change management, logging and altering, and vulnerability management and other security domains
Experience working in SaaS or cloud-native environments
Experience working cross-functionally with engineering and infrastructure teams
Preferred Qualifications:
Experience supporting multiple compliance frameworks (PCI DSS, PCI CP, SOC 2, FedRAMP, NIST 800-53/FISMA, ISO 27001/2, ISO 42001)
Experience with modern GRC platforms and control automation
Familiarity with continuous compliance / continuous monitoring models
Certifications such as: CISSP, CISA, CISM, CRISC, PCI ISA/QSA/PCI CP (preferred but not required)
Where You Will Be: Open to U.S.-based candidates and will be fully remote.
About Entrust:
Our growing company relies on curious, dedicated and innovative colleagues to anticipate the future and provide solutions for a more connected, mobile and secure world. Entrust technologies and expertise help government agencies, enterprises and financial institutions in more than 150 countries, serve and safeguard citizens, employees and consumers. Each year, our solutions secure billions of transactions — and every day, our technologies issue and manage more than 10 million secure identities. How do we do all of this? Together.
At Entrust, we don’t just offer jobs – we offer career journeys. Here is what you can expect when you join our team: For more information, visit www.entrust.com. Follow us on, LinkedIn, Facebook, Instagram, and YouTube
Entrust Corporation is an EOE/AA/Veteran/People with Disabilities employer.
NO AGENCIES, NO RELOCATION

Work arrangement
Yes

Get JobBeeper Mobile App

Never miss a job opening! Get instant job alerts on your phone.

Subscribers see fresh openings within minutes. Download the JobBeeper App on Google Play to get real-time push notifications and apply before anyone else.

⚡ Instant Push Alerts 🎯 Tailored Filters 🚀 Direct Employer Links
GET IT ON Google Play

More openings worth a look

Recently tracked roles with full details and direct application links.

6 roles
Good roles move before most people even see them. Tell JobBeeper what you want and get fresh matches delivered in minutes.
Start your free trial →
⚡ Get fresh job alerts 📱 Get App