Hiring.Camp

Principal Specialist, PCI DSS Compliance

Harman

·

Today

Location
PL_Lodz_Ogrodowa, Poland
Type
Full-time
Department
Legal
Seniority
Lead
Experience
5+ years
Source
Workday

Description

A Career at HARMAN


As a technology leader that is rapidly on the move, HARMAN is filled with people who are focused on making life better. Innovation, inclusivity and teamwork are a part of our DNA. When you add that to the challenges we take on and solve together, you’ll discover that at HARMAN you can grow, make a difference and be proud of the work you do every day.

Introduction: A Career at HARMAN Corporate

We’re a global, multi-disciplinary team that’s putting the innovative power of technology to work and transforming tomorrow. At HARMAN Corporate, you are integral to our company’s award-winning success.

  • Enrich your managerial and organizational talents – from finance, quality, and supply chain to human resources, IT, sales, and strategy

  • Augment your comprehensive skillset with expert training across decision-making, change management, leadership, and business development

  • Obtain 360-degree support throughout your career life cycle, from early-stage to seasoned leader

Your Team

This position will report to the Manager of Digital Privacy & Compliance, who is part of the overall Digital Security Engineering team.

About the Role

As a PCI DSS Compliance Principal, you will be responsible for facilitating HARMAN’s PCI DSS compliance activities across all in-scope environments. This role ensures that cardholder data is protected in line with PCI DSS requirements, drives audit readiness, and partners with business, IT, and third-party stakeholders to implement and maintain secure and compliant payment processes. In addition, you will contribute to the Digital Compliance function by supporting IT governance activities, including ITGC control oversight, policy and procedure management, and second-line support for internal and external audits.

What You Will Do

  • Facilitate the global PCI DSS compliance program across HARMAN environments, ensuring consistent implementation and alignment with business and technology teams.

  • Conduct PCI DSS gap assessments and risk evaluations for in-scope systems, and define remediation priorities based on risk impact.

  • Enhance PCI DSS governance, including control framework, policies, procedures, and required documentation.

  • Lead internal and external PCI DSS assessments, acting as the primary liaison for QSAs and ensuring audit readiness at all times.

  • Oversee remediation of PCI findings, including coordination with stakeholders, tracking progress, and validating closure of identified gaps.

  • Provide expert guidance and advisory support to business, IT, and product teams on PCI DSS requirements, secure payment handling, and control implementation across infrastructure, applications, and cloud.

  • Maintain and enhance IT governance framework, including development and lifecycle management of IT policies, standards, and procedures within the Digital Compliance domain.

  • Design and oversee ITGC control frameworks, ensuring controls are risk-based, effectively implemented, and aligned with regulatory and audit expectations.

  • Support internal and external (K)SOX audits from a 2nd line perspective, including control validation, evidence review, and stakeholder coordination.

What You Need to Be Successful

  • Bachelor’s or Master’s degree in information security, IT, or related field.

  • 5+ years of experience in cybersecurity, risk or compliance roles.

  • Strong hands-on experience with PCI DSS.

  • Proven experience managing audits (internal/external) and remediation programs.

  • Strong understanding of cloud environments, network security and segmentation, identity and access management, encryption and key management.

  • Ability to effectively communicate in English, including reading, writing and speaking.

Bonus Points if You Have

  • Industry certifications (CISSP, CISM, CISA, ISO 27001 LI/LA).

  • PCI certifications (PCIP, ISA).

  • Experience with payment gateways, tokenization solutions, or e-commerce platforms.

  • Experience operating in a global enterprise with distributed environments.

  • Strong ownership mindset and ability to drive compliance programs end-to-end.

  • Ability to translate regulatory requirements into actionable technical controls.

What Makes You Eligible

  • Be willing to travel up to 5%, domestic only OR domestic and international travel.

  • Successfully complete a background investigation and drug screen as a condition of employment.

What We Offer

  • Flexible work environment with a culture encouraging work-life integration and collaboration in a global environment.

  • Access to employee discounts on world-class HARMAN/Samsung products (JBL, Harman Kardon, AKG etc.).

  • Extensive training opportunities through our own HARMAN University.

  • An inclusive and diverse work environment that fosters and encourages professional and personal development

  • “Be Brilliant” employee recognition and rewards program.

  • Work on best-in-class emerging technologies and an atmosphere that motivates you to give your best.

#LI-Hybrid

#LI-AJ1

HARMAN is proud to be an Equal Opportunity / Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics.

Skills

CybersecuritySOXComplianceChange ManagementISO 27001CISSP

Similar Jobs

1

Principal Product Specialist Complex PCI Western Europe

Medtronic · ITA-RM Virtual, Italy +5 · Remote

2 weeks ago