Yum! Brands Logo

Yum! Brands

Global PCI Manager

Reposted One Month Ago
Be an Early Applicant
Remote
Hiring Remotely in United States
125K-147K Annually
Senior level
Remote
Hiring Remotely in United States
125K-147K Annually
Senior level
Lead global PCI DSS compliance for Yum! Brands, serving as Internal Security Assessor (ISA). Manage QSA engagements, assessments, scope identification, evidence collection, remediation, and reporting. Partner with Product, Infrastructure, and Brand Technology to embed compliance, maintain inventories and dashboards, provide guidance to global stakeholders, and represent Yum! at PCI industry events.
The summary above was generated by AI

The Global PCI Manager is responsible for leading and managing Payment Card Industry (PCI) compliance activities across Yum! and its global brands — including Byte Commerce, Byte Engage, KFC, Taco Bell, Pizza Hut, and Habit Burger Grill. This role ensures timely and sustained PCI DSS compliance across all platforms, products, and environments where cardholder data is stored, processed, or transmitted or its security may be impacted.

As Yum’s Internal Security Assessor (ISA), the Global PCI Manager serves as the primary liaison with Qualified Security Assessors (QSAs), oversees annual assessments, and ensures assessment readiness across brands and digital ecosystems. The role partners closely with Product, Infrastructure, and Brand Technology teams to ensure compliance is embedded in the product lifecycle.

In addition, this position provides global subject matter expertise on PCI-related matters by responding to inquiries from Yum’s domestic and international business units, franchisees, and partners, helping ensure consistent understanding and execution of PCI DSS standards across the global Yum system. The role will also have one or more international/national direct report(s). 

The Global PCI Manager will represent Yum! Brands at PCI Council events and industry forums, contributing to continuous improvement of Yum’s security and compliance practices.

Responsibilities

PCI Compliance Leadership

  • Own the PCI DSS compliance roadmap for Yum! and all U.S. brands and products.

  • Ensure timely completion of quarterly scans, annual assessments, and documentation submissions.

  • Oversee PCI scope identification, evidence collection, gap remediation, and reporting across product and infrastructure teams.

  • Maintain an up-to-date inventory of in-scope systems, merchants, and service providers.

Audit and Relationship Management

  • Serve as Yum’s Internal Security Assessor (ISA), managing all QSA engagements and assessments.

  • Coordinate external assessments, ensuring consistency of evidence and responses across brands.

  • Partner with Security, Risk, and IT teams to develop and implement remediation plans.

Governance, Risk & Reporting

  • Maintain Yum’s central PCI compliance dashboard and compliance scorecard for all brands.

  • Provide regular compliance status updates to the Senior Manager of Compliance and Brand Technology leadership.

  • Recommend policy, process, and tooling improvements aligned with evolving PCI standards.

  • Respond to PCI-related inquiries from Yum’s global and domestic businesses and franchise partners, ensuring timely, accurate, and consistent guidance.

Industry and Stakeholder Engagement

  • Represent Yum! at PCI Council and industry conferences, sharing emerging trends and requirements.

  • Build internal PCI training programs and awareness sessions to strengthen compliance culture.

  • Foster strong relationships with brand and global stakeholders to ensure alignment on compliance objectives.

Required Skills

  • Deep knowledge of PCI DSS standards, requirements, and assessment processes.
  • Strong project management and organizational skills; capable of managing large, multi-brand compliance programs.
  • Excellent written and verbal communication skills, with ability to translate technical concepts for non-technical stakeholders.
  • Proven experience managing relationships with external assessors, vendors, and auditors.
  • Ability to balance global consultation needs with U.S. compliance ownership and accountability.
  • Working knowledge of generative AI Tools and the creation of Custom GPTs for enhancing workflows
Qualifications
  • Bachelor’s degree in Information Security, Computer Science, or related field (Master’s preferred).
  • 7–10 years of experience in PCI compliance, security auditing, or IT governance.
  • Current PCI ISA/QSA certification preferred (Required ISA certification with Yum!).
  • Experience managing enterprise-level PCI programs across diverse technology environments.
  • Experience with cloud and hybrid infrastructures (AWS, GCP, Azure) preferred.

Salary Range: $125,200-$147,200 annually + bonus eligibility. This is the expected salary range for this position. Ultimately, in determining pay, we'll consider the successful candidate’s location, experience, and other job-related factors.

Benefits: Employees (and their eligible family members) may enroll in the following types of insurance coverage: medical, dental, vision, legal, and accidental death and dismemberment, as well as FSA/HSA (depending on enrolled medical plan). Yum! also provides short-term disability, long-term disability, and life insurance. Employees may enroll in our 401(k) plan. Yum! provides 4 weeks of vacation, paid sick leave, 10 paid holidays, a floating day off and 2 paid days for volunteer time each calendar year. To learn more about working at Yum! -Click here. 

At Yum!, one of our core values is to Believe in ALL People. This means seeing the value in everyone and unlocking their full potential to be their best self. YUM! Brands, Inc. (including its subsidiaries Yum Restaurant Services Group, LLC (“YRSG”) and Yum Connect, LLC (“Yum Digital and Technology”)(collectively, “Yum”) is proud to be an equal opportunity employer and is committed to equity, inclusion, and belonging for all dimensions of diversity.  We do not discriminate based on race, color, religion, sex, sexual orientation, gender identity, national origin, veteran status, disability status, age, or any other protected characteristic. Yum! is committed to working with and providing reasonable accommodation to applicants with disabilities or special needs.

US Job Seekers/Employees - Click here to view the “Know Your Rights” poster and supplement and the Pay Transparency Policy Statement.

Similar Jobs

48 Minutes Ago
Remote or Hybrid
39K-223K Annually
Mid level
39K-223K Annually
Mid level
eCommerce • Fintech • Hardware • Payments • Software • Financial Services
Own a local territory through highly field-driven, full-cycle sales. Generate pipeline via in-person outreach, networking, events, and partnerships; conduct demos; close deals; build seller relationships; support onboarding; and exceed quota. The role focuses on selling Square’s integrated commerce, software, hardware, and financial services solutions to restaurants, retailers, and service businesses while maintaining accurate Salesforce activity, forecasting, and pipeline management.
Top Skills: Salesforce
48 Minutes Ago
Remote or Hybrid
CA, USA
164K-297K Annually
Senior level
164K-297K Annually
Senior level
eCommerce • Fintech • Hardware • Payments • Software • Financial Services
Coordinate cross-functional product go-to-market programs from planning through launch, adoption, and optimization. Build project plans, operating mechanisms, launch documentation, feedback loops, status updates, and decision logs. Partner with Product, Sales, Marketing, Enablement, Analytics, Finance, and leadership to align stakeholders, manage dependencies, identify blockers, and improve execution. Translate operational data and customer or field feedback into clear priorities and recommendations.
An Hour Ago
Remote or Hybrid
OH, USA
120K-162K Annually
Senior level
120K-162K Annually
Senior level
Artificial Intelligence • Cloud • Information Technology • Sales • Security • Software • Cybersecurity
Own and expand strategic enterprise accounts across Ohio, generating net-new business and growing existing revenue. Develop sophisticated sales strategies, engage senior technical and business executives, negotiate complex agreements, and exceed revenue targets. Partner with Sales Engineering, Customer Success, Sales Operations, and channel stakeholders to deliver tailored cybersecurity solutions and long-term customer value. The role requires strong SaaS and cybersecurity expertise, executive communication, independent territory management, and travel up to 50%.
Top Skills: CloudCybersecurityGongLinkedin Sales NavigatorSaaSSalesforceSalesloftZoominfo

What you need to know about the Seattle Tech Scene

Home to tech titans like Microsoft and Amazon, Seattle punches far above its weight in innovation. But its surrounding mountains, sprinkled with world-famous hiking trails and climbing routes, make the city a destination for outdoorsy types as well. Established as a logging town before shifting to shipbuilding and logistics, the Emerald City is now known for its contributions to aerospace, software, biotech and cloud computing. And its status as a thriving tech ecosystem is attracting out-of-town companies looking to establish new tech and engineering hubs.

Key Facts About Seattle Tech

  • Number of Tech Workers: 287,000; 13% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Amazon, Microsoft, Meta, Google
  • Key Industries: Artificial intelligence, cloud computing, software, biotechnology, game development
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Madrona, Fuse, Tola, Maveron
  • Research Centers and Universities: University of Washington, Seattle University, Seattle Pacific University, Allen Institute for Brain Science, Bill & Melinda Gates Foundation, Seattle Children’s Research Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account