PCI QSA Sr. Consultant - Japanese speaker

Full-timeRemote
Tokyo, jpvia Workable ATSPosted Sep 30, 2026
Match with my CV

Technical skills

CybersecurityTechnical writing

Role signals

Legal

About this role

*This position requires full professional fluency in Japanese (spoken and written), as the role involves conducting PCI audits and communicating directly with client stakeholders based in Japan.

Insight Assurance is a global audit firm on a mission to transform how organizations achieve cybersecurity and compliance. Founded by former Big 4 (EY) professionals, we deliver next-generation audit services across SOC 2, ISO 27001, PCI DSS (QSA), HITRUST, CMMC (C3PAO), and FedRAMP (3PAO) frameworks.

We’re not your traditional audit firm — we’re tech-enabled, leveraging compliance automation and advanced collaboration tools to make audits faster, smarter, and more impactful for our clients.

Recognized on the Inc. 5000 and Fast 50 lists, Insight Assurance is one of the fastest-growing global audit firms, with 170+ professionals supporting nearly 2,000 clients across the Americas, EMEA, and APAC.

Role Purpose

The PCI-QSA Senior Consultant is responsible for executing PCI DSS compliance assessments and audits, ensuring that client environments meet applicable security standards. This role combines technical expertise, audit execution, and client advisory to identify risks, assess controls, and support organizations in achieving and maintaining compliance.

Requirements

  • Experience
  • Minimum 3 years of experience in information security.
  • Minimum 3 years of experience in PCI DSS assessments (internal, external or

Qsa).

  • Experience performing security audits or compliance engagements.

Certification

  • Active QSA certification (required).
  • Additional certifications such as CISSP, CISA, or CISM are a plus.

Core Responsibilities

  • Perform PCI DSS assessments, including on-site and remote audits.
  • Evaluate the design and operating effectiveness of security controls.
  • Review client documentation, systems, and processes for compliance readiness.
  • Document audit procedures, findings, and recommendations.
  • Identify compliance gaps and provide remediation guidance.
  • Prepare clear and structured audit reports and deliverables.
  • Maintain regular communication with clients throughout engagements.
  • Ensure adherence to internal quality standards and audit methodologies.
  • Support clients in understanding compliance requirements and

next steps

.

  • Stay current with PCI DSS standards and evolving security practices.

Required Skills / Competencies

  • Strong knowledge of PCI DSS and compliance requirements.
  • Solid understanding of network security, segmentation, access controls, and

encryption.

  • Strong analytical and problem-solving skills.
  • Excellent written and verbal communication skills.
  • Ability to explain technical concepts to non-technical stakeholders.
  • High attention to detail and documentation discipline.
  • Ability to work independently and manage multiple priorities.
  • Strong client-facing and relationship management skills.

Performance Expectations

  • Deliver audit engagements on time and with high quality.
  • Maintain accurate, complete, and audit-ready documentation.
  • Provide clear, actionable remediation recommendations.
  • Demonstrate ownership of assigned engagements and deliverables.
  • Maintain effective communication with clients and internal teams.
  • Adhere to internal methodologies and quality standards.
  • Continuously enhance technical and compliance knowledge.

Experience / Education / Certification Requirements

  • Bachelor’s degree (Master’s preferred) in:
  • Cybersecurity
  • Information Systems / MIS
  • Computer Science
  • Business or related field

Benefits

  • Paid Time Off and Paid Holidays
  • Performance Bonuses
  • 100% Remote

Before you apply

  • 1Which parts of your CV prove experience with Cybersecurity, Legal, and Technical writing?
  • 2Which recent work examples would make your application stronger for this role?
  • 3What details from the original source listing should you confirm before applying?