PCI Analyst
Core
Guide Tenable customers through the PCI DSS ASV external scanning process to achieve compliance with requirement 11.3.2, acting as a subject matter expert on the PCI ASV process.
Role type
Senior IC PCI ASV Analyst
Builds
PCI DSS compliance outcomes for customers via validated external scans
Domain
Cybersecurity / Compliance (PCI DSS)
Deliverable
client delivery
Required skills
PCI DSS standards, vulnerability scanning, penetration testing, network security, application security, system security, IT security auditing, IT security risk assessment, Linux/Unix administration, Windows administration, network device configuration, CVSS scoring, NVD verification, web server configuration, customer service, complex technical troubleshooting
Preferred skills
CISA, CISM, CISSP, CCSP, GWAPT, PCI-QSA, PCI-ASV Certification
Technologies
Linux, Unix, Windows, NVD
Responsibilities
Analyze and validate client-submitted PCI ASV scans for attestation; Conduct in-depth analysis of customer-submitted scan disputes by reviewing evidence and recreating scenarios in a lab; Serve as a trusted advisor guiding customers through the PCI ASV scan submission process; Collaborate with Technical Support Engineers to handle PCI-related inquiries; Proactively identify and contribute to workflow and process improvements; Resolve escalated customer issues by troubleshooting complex technical findings; Maintain all required PCI ASV certifications and CPE hours
Seniority
Senior, hands-on IC