Information Security Specialist
Blueprint Power
Entity:
Technology
Job Family Group:
Job Description:
You will work with
In this Information Security role, you will be embedded within the technology team supporting bp’s Mobility and Convenience (M&C) global business, focusing on PCI compliance requirements for the Americas.
Let me tell you about the role
As a key part of the Digital Delivery team supporting the M&C retail business, you will be responsible for ensuring that existing Americas payment solutions operate securely and in accordance with US PCI requirements and that any new IT solutions are secured and compliant by design.
What you will deliver
You will:
- Provide guidance to delivery team on specifics of PCI requirements, as relevant to the Channel of trade and local legislation.
- Support delivery teams to design enhancements to existing payment systems and services to maintain an appropriate level of security and compliance.
- Support delivery teams to design, build and operate new innovative IT solutions that incorporate appropriate levels of security and meet compliance requirements.
- Provide advice on appropriate PCI testing programs.
- Work with an appointed QSA & central Digital Security team to co-ordinate relevant input into the yearly audit process.
- Ensure PCI compliance issues are understood and have agreed remediation plans.
- Report on PCI compliance activity and status to broader Security & Compliance teams.
- Conduct PCI Awareness training sessions and champion PCI as an enabler to safe, secure, and compliant payment channels across bp’s customer offers.
- Identify and manage any new emerging requirements.
- Highlight and deliver continuous improvement initiatives, with a focus on how we can use AI and automation to improve effectiveness and efficiency of controls
What you will need to be successful (experience and qualifications)
Education
You’ll have a tertiary level education and/or equivalent relevant work experience.
Experience
- Similar experience supporting global IT teams to understand, implement and maintain relevant security controls to meet PCI compliance. Ideally gained within a large-scale global organization supporting retail businesses
- Deep understanding of global PCI requirements and practical experience of implementing security controls to achieve them.
- Have delivered compliance, audit or testing programs previously.
- Experience forming effective and collaborative partnerships with other digital teams & stakeholders
Desirable qualifications and experience
- You are a Certified Information Security Manager (CISM) with 8+ years of Security Experience.
- Either a Payment Card Industry Professional (PCIP) or Payment Card Industry Internal Security Assessor (PCI ISA).
- Have excellent stakeholder and problem management skills.
Travel Requirement
Relocation Assistance:
Remote Type:
Skills:
Legal Disclaimer:
We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, sex, gender, gender expression, sexual orientation, age, marital status, socioeconomic status, neurodiversity/neurocognitive functioning, veteran status or disability status. Individuals with an accessibility need may request an adjustment/accommodation related to bp’s recruiting process (e.g., accessing the job application, completing required assessments, participating in telephone screenings or interviews, etc.). If you would like to request an adjustment/accommodation related to the recruitment process, please contact us.
If you are selected for a position and depending upon your role, your employment may be contingent upon adherence to local policy. This may include pre-placement drug screening, medical review of physical fitness for the role, and background checks.