Consultancy – Technical Project Manager (PCI DSS Certification Project)
Tuma is a fast-growing cross-border payments platform enabling seamless, secure, and affordable money transfers from the UK to Africa. Our mission is to empower financial inclusion by connecting people and businesses across borders. As we scale, maintaining the highest standards of data security and compliance is critical to our growth.
We are seeking a Technical Project Manager (Consultant) to lead and coordinate our PCI DSS (Payment Card Industry Data Security Standard) certification journey. The consultant will act as the bridge between Tuma’s technical, compliance, and operational teams and external Qualified Security Assessors (QSAs) to ensure we achieve certification within scope, on time, and with robust documentation for future audits.
Key Responsibilities
- Lead the PCI DSS Certification Project: Develop, manage, and deliver the end-to-end certification plan, ensuring adherence to timelines, scope, and budget.
- Stakeholder Coordination: Serve as the central point of contact between Tuma teams (Engineering, Compliance, Operations) and external PCI DSS assessors/auditors.
- Gap Analysis & Remediation: Oversee a detailed gap assessment against PCI DSS requirements, coordinating remediation tasks with relevant teams.
- Technical Oversight: Ensure security controls, system configurations, and processes meet PCI DSS standards, including encryption, access controls, and monitoring.
- Documentation & Evidence Gathering: Drive the preparation, review, and submission of required policies, procedures, and technical evidence for audit.
- Training & Awareness: Organize PCI DSS awareness sessions for relevant team members to maintain compliance readiness.
- Risk & Issue Management: Identify project risks early, propose mitigation measures, and resolve blockers quickly to keep the project on track.
Qualifications & Experience
- Proven experience as a Technical Project Manager or Program Manager in PCI DSS certification projects or other security/compliance initiatives in the fintech/payments industry.
- Strong understanding of PCI DSS controls, network segmentation, encryption standards, secure coding, and data protection practices.
- Demonstrated ability to manage cross-functional teams, including developers, DevOps, compliance officers, and security engineers.
- Experience working with external QSAs, auditors, and vendors.
- Excellent communication, documentation, and stakeholder management skills.
- PMP, PRINCE2, CISM, CISSP, or similar certification is an advantage.
Why Join Tuma?
- Impactful Work: Make a measurable impact on the security posture of a fast-growing fintech.
- Autonomy & Leadership: Lead a high-priority compliance project with significant autonomy.
- Innovation-driven Team: Work with an agile team passionate about innovation.
- Global Expansion: Set the foundation for Tuma’s secure global expansion.
