Bug Bounty Analyst in Leicester

Bug Bounty Analyst in Leicester

Leicester Full-Time 49500 - 60500 £ / year (est.) No working from home possible
G

At a Glance

  • Tasks: Manage and assess vulnerabilities in our Bug Bounty Program to enhance security.
  • Company: Join a leading global payments company with a dynamic and inclusive culture.
  • Benefits: Enjoy competitive pay, remote work options, and opportunities for professional growth.
  • Other info: Collaborate with top industry experts and grow your career in a fast-paced environment.
  • Why this job: Make a real impact on global commerce while working with cutting-edge security technologies.
  • Qualifications: Degree in Computer Science or relevant experience; knowledge of vulnerability management is a plus.

The predicted salary is between 49500 - 60500 £ per year.

Every day, Global Payments makes it possible for millions of people to move money between buyers and sellers using our payments solutions for credit, debit, prepaid and merchant services. Our worldwide team helps over 3 million companies, more than 1,300 financial institutions and over 600 million cardholders grow with confidence and achieve amazing results. We are driven by our passion for success and we are proud to deliver best-in-class payment technology and software solutions. Join our dynamic team and make your mark on the payments technology landscape of tomorrow.

This role is an opportunity to work in an exciting, fast paced and complex industry in our Security Operations organization, and will play a vital role in the day to day management of our Bug Bounty Program. As part of the Bug Bounty Coordination team you will be responsible for the assessment, coordination and remediation of findings reported through our Bug Bounty Program from hackers that participate in our programs. You will support ticket triage and ensure findings are reported to remediation owners in a timely manner while overseeing remediation efforts and retest. You will work closely with various lines of business and security champions across the organization to also mature the program and help secure Global Payments assets.

What You’ll Own

  • Assess and support severity assignment on reported vulnerabilities/bugs in line with the Common Vulnerability Scoring System (CVSS).
  • Effectively communicating vulnerability findings to stakeholders, including technical and non-technical audiences.
  • Developing strategies to address identified vulnerabilities, including mitigation plans and timelines.
  • Coordinate the remediation of findings from the organisation’s Bug Bounty & Vulnerability Disclosure Programs working directly with whitehat researchers.
  • Analyze findings to understand if our vulnerability scanners failed to identify them and work with the relevant teams to address any visibility gaps.
  • Identify missing security controls that could have mitigated the Bug Bounty finding and ensure correction is tracked to completion.
  • Mature the program through the onboarding of new assets.
  • Works closely with Risk Management teams to document identified risks and issues highlighted through Bug Bounty Program.
  • Maintains a working knowledge of key data security frameworks and regulations such as PCI, HIPPA, GDPR, PII, NIST CSF.
  • Collaborates with Legal and Privacy Offices when critical data is at risk as a result of a Bug Bounty finding.
  • Maintain and follow runbooks for day-to-day activities.

What you’ll bring

  • Relevant Experience or Degree in: Bachelor's degree in Computer Science, Info Security, or related field. Or relevant work experience in a related field.
  • Typically Minimum 2 Years Relevant Experience with Vulnerability Management or involved in Bug Bounty Program handling.
  • Knowledge of network operations or engineering or system administration on Unix, Linux, MAC, or Windows; common security operations, intrusion detection systems, Security Incident Event Management systems, Penetration Testing, Web Application assessment, Secure Coding practices, Cloud Technologies.

Preferred Qualifications

  • Professional security certifications such as CompTIA Security+, CompTIA PenTest, SSCP, CISM, CISA, CEH, CCSLP, GIAC Web Application Defender, eJPT, OSCP.
  • Knowledge of industry standard security compliance programs PCI, GDPR, NIST Cyber Security Framework.
  • Experience working with ticketing systems such as ServiceNow and/or JIRA.

What Are Our Desired Skills and Capabilities?

  • Strong verbal and written communication skills.
  • Attention to detail - reads and actively listens with an eye for detail.
  • Demonstrated ability to effectively communicate ideas and persuade others to accomplish challenging goals and objectives.
  • Ability to facilitate meetings and enable discussions that lead to resolution and communicate results.
  • Vulnerability Management - knowledge with a proven record of assessing application and infrastructure vulnerabilities; understanding exploit methodologies.
  • Skills / Knowledge - Developing professional expertise, applies company policies and procedures to resolve a variety of issues.
  • Job Complexity - Works on problems of moderate scope where analysis of situations or data requires a review of a variety of factors.
  • Exercises judgement within defined procedures and practices to determine appropriate action.
  • Builds productive internal/external working relationships.
  • Supervision - Normally receives general instructions on routine work; however can work independently where required.
  • Industry Knowledge - Continued self-education of new and emerging threats and vulnerabilities and relevant processes, controls, or technologies to mitigate them.

Our inclusive and global teams win together every day. We’re proud to have the best minds in the industry, who you can learn from as you grow your career. The people, the energy, the connections – it’s unmatched. Come and be part of an ever-evolving company and get dynamic opportunities that go beyond borders.

Global Payments Inc. is an equal opportunity employer. Global Payments provides equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, sex, national origin, ancestry, age, marital status, sexual orientation, gender identity or expression, disability, veteran status, genetic information or any other basis protected by law.

Bug Bounty Analyst in Leicester employer: Global Payments

Global Payments is an exceptional employer, offering a dynamic work culture that thrives on innovation and collaboration within the fintech sector. Based in Dublin, employees benefit from a vibrant city known for its rich history and modern amenities, alongside opportunities for professional growth through diverse projects and cross-functional teamwork. With a focus on employee well-being and development, Global Payments fosters an environment where legal professionals can make a meaningful impact while advancing their careers.

G

Contact Details:

Global Payments Recruitment Team

We think you need these skills to ace Bug Bounty Analyst in Leicester

Vulnerability Management
Bug Bounty Program Coordination
Common Vulnerability Scoring System (CVSS)
Communication Skills
Risk Management
Data Security Frameworks
Network Operations