SGS

PCI PTS Security Evaluator

SGS  •  Delft, NL (Onsite)  •  3 months ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

SGS Brightsight is the world’s largest independent security evaluation lab, with accredited facilities across the globe. Our teams in Delft (The Netherlands), Barcelona and Madrid (Spain), Graz (Austria), Meyreuil (France), Beijing, Shanghai and Guangzhou (China), Singapore, and the USA are dedicated to helping companies ensure their products comply with the latest security regulations and requirements. With over 35 years of experience in evaluating IT products across various industries, we work at the forefront of security, evaluating products against stringent governmental and private standards.

At SGS Brightsight, our knowledge-driven environment is powered by professionals from diverse technical backgrounds. We pride ourselves on fostering an open, ambitious, and international atmosphere that values continuous growth. More information about our work can be found at SGS Brightsight: Security Evaluation Lab

Payment terminals and secure hardware devices are at the core of today’s financial ecosystem. These devices process highly sensitive information such as cardholder data, PINs, and cryptographic keys. Ensuring they meet stringent global security requirements—such as PCI PTS—is essential to safeguarding trust in electronic payments.

We are looking for PCI PTS Security Evaluators who are passionate about hardware and logical security. Whether you are an experienced security professional or a recent graduate eager to enter the field of hardware penetration testing, we welcome curiosity, technical drive, and a willingness to explore advanced attack techniques.

Qualifications

As a PCI PTS Security Evaluator, you will join a multidisciplinary team of international experts assessing the security of payment terminals and secure hardware modules. Your work will focus primarily on hardware penetration testing, logical security testing, and tamper‑resistance evaluation in line with PCI PTS and related security standards.

You will:

  • Analyse payment terminal architectures, security modules, and embedded systems.
  • Perform hands‑on hardware penetration testing using techniques such as side‑channel analysis, invasive and semi‑invasive attacks, and circuit‑level probing.
  • Conduct logical security testing, including secure boot validation, key management verification, firmware inspection, and interface/communication protocol testing.
  • Perform firmware code reviews to assess secure coding practices, cryptographic implementations, and compliance with PCI PTS requirements
  • Use laboratory equipment such as oscilloscopes, and power analysis setups, as well as simple physical tools such as drills, milling tools, and other basic mechanical instruments used in tamper‑resistance testing.
  • Document attack paths, assess exploit feasibility, and evaluate compliance with PCI PTS requirements.
  • Contribute to internal R&D by researching emerging attack vectors, developing new tooling, and improving evaluation methodologies.

Your Hard Skills

  • Technical degree (BSc, MSc, or PhD) in Computer Science, Electrical Engineering, Embedded Systems, Physics, Mathematics, or equivalent practical experience in hardware or embedded security.
  • Experience or strong interest in hardware security techniques such as Board‑level probing and debugging (JTAG, SWD, UART).
  • Familiarity with logical security testing, secure firmware design, cryptographic implementations, and secure boot chains.
  • Knowledge of cryptographic protocols, authentication mechanisms, tamper protections, and attack countermeasures is highly desirable.
  • A willingness to learn rapidly in a field that evolves continuously.

Your Soft Skills

  • You can work both independently and collaboratively in a multidisciplinary team.
  • You are persistent, creative, and resourceful—essential traits for hardware penetration testing, where bypassing protections requires experimentation and ingenuity.
  • You enjoy learning new concepts and staying informed on the latest research, standards, and attack techniques.
  • You appreciate structured teamwork coupled with personal accountability—security evaluation relies heavily on transparent cooperation.
  • You are able to write clear, detailed technical evaluation reports in English.
SGS

About SGS

SGS is the world’s leading Testing, Inspection and Certification company. We operate a network of over 2,500 laboratories and business facilities across 115 countries, supported by a team of 99,500 dedicated professionals. With over 145 years of service excellence, we combine the precision and accuracy that define Swiss companies to help organizations achieve the highest standards of quality, compliance and sustainability.

Our brand promise – when you need to be sure – underscores our commitment to trust, integrity and reliability, enabling businesses to thrive with confidence. We proudly deliver our expert services through the SGS name and trusted specialized brands, including Brightsight, Bluesign, Maine Pointe and Nutrasource.

Community Guidelines

SGS encourages all fans of this page to participate in conversations through questions and comments. Any comments arising from persons sharing or reproducing any communications published by SGS is not controlled or endorsed by SGS.

We want to promote an informative and enjoyable environment within this community. We therefore ask that you post content that is both relevant and respectful and you follow LinkedIn's Professional Community Guidelines.

Posts will be removed if they are:

- Offensive, defamatory, discriminatory or obscene

- Fraudulent, deceptive or misleading

- In violation of any intellectual property rights

- In violation of any law or regulation

- Abusive, harassing, stalking or attacking others

- Trolling or deliberate disruption of discussion

- Commercial solicitations or personal promotion

- Spam or link baiting

Intellectual Property Statement

Except where expressly stated otherwise, all intellectual property rights, including copyright and trademarks, in any and all communications and materials in any form published by or on behalf of SGS are owned by © SGS Société Générale de Surveillance SA (2025).

Industry
Consulting & Advisory
Company Size
10,000+ employees
Headquarters
Baar, CH
Year Founded
Unknown
Website
sgs.com
Social Media