Wealthsimple
Financial Services
ProgramManager,PCICompliance
Neural analysis suggests this role is
optimal for Mid+ candidates.
“Program Manager, PCI Compliance at Wealthsimple. Skills: PCI DSS, Compliance management, Risk mitigation. Maintain PCI DSS scope. Manage PCI DSS scope”
What You'll Achieve.
Ensure Wealthsimple meets requirements; Ensure Wealthsimple meets obligations; Ensure continuous compliance; Ensure control improvements
Industry & Context.
What They're Looking For.
Must Have
3+ years of experience focused on PCI DSS in a payments environment, CISSP, CISA, CISM, PCIP, PCI QSA and/or other relevant certifications, Solid understanding of network architecture to ensure payment card data is secure, knowledge of information security frameworks and standards, Ability to work independently and handle multiple priorities, Excellent communication and interpersonal skills, with the ability to effectively collaborate with cross-functional teams and communicate both technical and non-technical audit requirements, Holds self and others accountable to meet commitments, Demonstrates exceptional organizational and project management skills by maintaining detailed documentation and ensuring timely follow up on action items
What You'll Do.
Maintain PCI DSS scope
Conduct annual external assessment
Define vendor assessment process
Manage vendor assessment process
Ensure systems comply with PCI DSS
Mitigate security risks
Manage security risks
Provide status reports
Assess new infrastructure
Maintain documentation
Facilitate team coordination
Leverage compliance tooling
Monitor control health
Prepare status reporting
How You'll Work.
Team & Collaboration
Work cross-functionally; Collaborate with cross-functional teams; Facilitate cross functional team coordination
Communication Scope
Excellent communication skills; Interpersonal skills; Communicate technical requirements; Communicate non-technical requirements
Process & Methodology
Project management skills, Organizational skills, Maintain detailed documentation, Ensure timely follow up
Full Job Description
BUILD SOMETHING PEOPLE LOVE Wealthsimple is Canada’s leading financial innovator. The company offers a full suite of simple, sophisticated financial products across managed investing, do-it-yourself trading, cryptocurrency, tax filing, spending and saving. Wealthsimple currently serves more than 4 million Canadians and holds over $125 billion in assets under administration. The company was founded in 2014 by a team of financial experts and technology entrepreneurs, and is headquartered in Toronto, Canada. We're proud of what we've built — and we're just getting started. Read our Culture Manual https://www.wealthsimple.com/en-ca/culture and learn more about how we work https://www.wealthsimple.com/en-ca/careers. The Security GRC team plays a critical role in maintaining compliance over security frameworks and creating a space for risk mitigation and oversight. We want to ensure that Wealthsimple maintains a secure operational environment by implementing and monitoring controls designed to protect information, systems and infrastructure. Within the compliance management domain, we aim to ensure Wealthsimple meets the necessary requirements and obligations set forth by regulatory bodies, industry standards, contractual agreements and internal policies. Monitoring controls to ensure continuous compliance and control improvements. In this role you’ll have the opportunity to: - Maintain and manage the PCI DSS scope, including periodic scoping exercises and CDE boundary reviews - Coordinate and conduct an annual external assessment with a QSA - Define and manage the vendor/third-party assessment process for entities that handle or touch cardholder data (SAQ collection, contractual requirements) - Ensure systems, applications and internal processes comply with latest PCI DSS requirements - Work cross-functionally to identify, mitigate and manage security risks related to payment card data - Provide status reports for findings and provide relevant recommendations for remedia
Applying for this Program Manager, PCI Compliance role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Ashby
- Ashby is a fast modern ATS — most applications take under 3 minutes.
- The resume parser is strong; verify parsed experience dates and job titles.
- Custom screening questions are often scored algorithmically — answer completely.
- Location field affects geo-based screening; use your actual metro area.
ANONYMOUS · UNFILTERED
What do employees actually say about Wealthsimple?
Real rants from real employees. Read before you apply.