At Macy’s, we’re moving fast—we’re at top speed to become America’s premiere omnichannel retailer. Macy’s technology hub, Macy’s Systems and Technology (MST) strives to set the pace by providing seamless and compelling shopping experiences for our Macy’s and Bloomingdale’s customers. MST is creating innovative technology solutions to support these experiences and define the future of retailing.
Overview:
Macy’s Systems & Technology is seeking a PCI Compliance Specialist. Under the general direction of their Manager, the PCI Compliance Specialist will support compliance activities related to identifying, building, and analyzing qualitative and quantitative data. Will develop and support comprehensive analyses and perform audits related business process requirements for ensuring compliance. Additionally, the Specialist will assist with litigation support, miscellaneous audits and other general compliance activities. Perform other duties as assigned.
Key Accountabilities:
Support governance activities related to the execution of the Macys and Bluemercury PCI Programs. Perform and lead both routine and focused PCI Governance checks related to a variety of compliance projects.
Support annual Bluemercury PCI Assessment process - Schedule and execute the annual PCI assessment preparation, document management and validation, onsite interviews. Manage the Bluemercury PCI Assessment activities including data collection, analysis, prep and execution of the assessment meetings.
Maintain and validate the PCI Cardholder Data Environment inventory and data flow diagrams through communicate with key stakeholders and reviews of change requests.
Focus on the development of the Macy’s store related requirements for PCI.
Bachelor Degree in Info Security, MIS or other relevant IT area of focus required and 4 years of work experience in Information Technology Security Compliance specific to PCI
An in-depth understanding of PCI DSS requirements and assessment processes.
Familiarity with Information Security risk identification, assessments, evaluation
Information Security control design and implementation
Compliance fundamentals and governance frameworks (ISO, SANS, COBIT, NIST) a plus
PCI for a retail environment a plus
Communication Skills:
Excellent reading and writing skills.
Ability to seek and obtain relevant information needed by the business for decision making
Ability to develop good relationships with team members as well as across the business
Communicates effectively with a variety of audiences. Ability to provide updates to all levels of management across the organization.
Mathematical Skills:
Basic math functions such as addition, subtraction, multiplication, division and analytical skills.
Advanced skills in Word, Excel, and Power Point.
Reasoning Ability:
Ability to interpret and explain regulatory requirements resulting in actionable items by the business
Ability to stay abreast of industry standards and practices
Troubleshoot, solve and deliver solutions in a dynamic environment.
Physical Demands:
This position involves regular ambulating, sitting, hearing, and talking. May occasionally involve stooping, kneeling, or crouching. May involve close vision, color vision, depth perception, and focus adjustment. Involves use of hands and fingers for typing on keyboard and using a mouse. May be a need to move or lift items under 10 pounds.
Work Hours:
Ability to work a flexible schedule based on department and company needs. Some infrequent travel required.
Other Skills:
Understands what is expected and can articulate individual and team goals.
Aggressively pursues new ideas
Decision Making:
Provides guidance and final determination on the evidence to provide during the assessment.
Negotiates with the QSA vendor on remediation strategies
SME for all internal teams for PCI Compliance.
Escalation of results of analysis – Influences management decisions thru analysis and recommendations
Analyzes each situation and makes sound recommendations for technical and business challenges up to difficult complexity. Analyzes problems and challenges by looking below the surface to understand root cause. Considers how a decision could impact the customer before making a recommendation.
Ability to handle confidential and sensitive information.
Macy's Systems & Technology (MST) is the information technology division of Macy's Inc. Macy's Inc. is the nation's largest operator of department stores with over 700 department store locations in 46 states. In addition, we operate major catalog and internet operations for Bloomingdale's and Macy's. Macy's Systems & Technology is headquartered in Johns Creek, a suburban setting northeast of Atlanta, Georgia.
We offer competitive salaries, comprehensive benefits, employee fitness center and a merchandise discount.
Macy's is an equal opportunity employer, committed to a diverse and inclusive work environment.
Unable to retrieve job information. This job may not be available anymore. Sorry for the inconvenience.
Macy's, Inc., with corporate offices in Cincinnati and New York, is one of the nation's premier retailers, with fiscal 2015 sales of $27.079 billion. The company operates about 870 stores in 45 states, the District of Columbia, Guam and Puerto Rico unde... more