Bonterra · 2 hours ago
PCI Analyst
Bonterra is a company dedicated to increasing the giving rate in the social good sector. They are seeking a Senior PCI Compliance Analyst to manage their PCI DSS Level 1 certification program and support related frameworks, working across the company to ensure operational excellence in control performance and reporting.
Information TechnologySoftware
Responsibilities
Collaborate with Information Security, Risk & Compliance team members and control owners companywide
Lead PCI DSS Level 1 readiness, certification activities, and coordination with QSA assessors
Maintain scope documentation, evidence, and operational reports for PCI controls
Partner with Product Security on modernization initiatives that reduce PCI scope and improve control design
Manage issues, exceptions, and risk acceptance tracking with timely remediation
Align PCI evidence and controls with ISO 27001 and SOC frameworks to streamline reporting
Support audits, vendor assessments, and customer due-diligence requests related to PCI
Maintain compliance ticket queues, supplier/control registers, and awareness activities
Qualification
Required
3-5 years in PCI, risk, compliance program management (or relevant education/certifications)
Experience leading PCI DSS v4.0.1 assessments and coordinating with QSAs
Familiarity with ISO 27001 and cloud service environments
Strong analytical, organizational, and communication skills
Experience with GRC, ticketing, and security tools (for example SIEM or vulnerability scanners)
Preferred
PCIP
ISA
CISA
CISM
CISSP
Benefits
Comprehensive benefits package that supports your health, well-being and growth
Bonuses
Incentives
Equity
Company
Bonterra
Bonterra is a social good software company.
Funding
Current Stage
Late StageRecent News
Company data provided by crunchbase