Bug Bounty Analyst

tsys· Global Payments UK Ltd
Apply Now ↗

About this role

What You’ll Own  

  • Assess and support severity assignment on reported vulnerabilities/bugs in line with the Common Vulnerability Scoring System (CVSS)

  • Effectively communicating vulnerability findings to stakeholders, including technical and non-technical audiences

  • Developing strategies to address identified vulnerabilities, including mitigation plans and timelines

  • Coordinate the remediation of findings from the organisation’s Bug Bounty & Vulnerability Disclosure Programs working directly with whitehat researchers

  • Analyze findings to understand if our vulnerability scanners failed to identify them and work with the relevant to address any visibility gaps

  • Identify missing security controls that could have mitigated the Bug Bounty finding and ensure correction is tracked to completion

  • Mature the program through the onboarding of new assets

  • Works closely with Risk Management teams to document identified risks and issues highlighted through Bug Bounty Program

  • Maintains a working knowledge of key data security frameworks and regulations such as PCI (Payment Card Industry)/Logical Security guidelines and models, HIPPA (Health Insurance Portability and Accountability Act), (GDPR) General Data Protection Regulation, PII (Personally Identifiable Information), NIST CSF (Cyber Security Framework).

  • Collaborates with Legal and Privacy Offices when critical data is at risk as a result of a Bug Bounty finding

  • Maintain and follow runbooks for day-to-day activities

What you’ll bring

  • Relevant Experience or Degree in: Bachelor's degree in Computer Science, Info Security, or related field. Or relevant work experience in a related field.

  • Typically Minimum 2 Years Relevant Experience with Vulnerability Management or involved in Bug Bounty Program handling

  • Knowledge of network operations or engineering or system administration on Unix, Linux, MAC (Message Authentication Code), or Windows; common security operations, intrusion detection systems, Security Incident Event Management systems, Penetration Testing, Web Application assessment, Secure Coding practices, Cloud Technologies.

Preferred Qualifications

  • Professional security certifications such as CompTIA Security+ or CompTIA PenTest, Systems Security Certified Practitioner (SSCP), or CISM(Certified Information Security Manager), or CISA(Certified-Information-Systems-Auditor) or CEH (Certified Ethical Hacker)

  • Certified Secure Software Lifecycle Professional (CCSLP) or GIAC Web Application Defender (GWEB) or eJPT (eLearnSecurity Junior Penetration Tester), OSCP (Offensive Security Certified Professional)

  • Knowledge of industry standard security compliance programs PCI (Payment Card Industry), GDPR (General Data Protection Regulation), NIST Cyber Security Framework etc.)

  • Experience working with ticketing systems such as ServiceNow and/or JIRA

What Are Our Desired Skills and Capabilities?

  • Strong verbal and written communication skills.

  • Attention to detail - reads and actively listens with an eye for detail.

  • Demonstrated ability to effectively communicate ideas and persuade others to accomplish challenging goals and objectives.

  • Ability to facilitate meetings and enable discussions that lead to resolution and communicate results.

  • Vulnerability Management - knowledge with a proven record of assessing application and infrastructure vulnerabilities; understanding exploit methodologies.

  • Skills / Knowledge - Developing professional expertise, applies company policies and procedures to resolve a variety of issues.

  • Job Complexity - Works on problems of moderate scope where analysis of situations or data requires a review of a variety of factors. Exercises judgement within defined procedures and practices to determine appropriate action. Builds productive internal/external working relationships.

  • Supervision - Normally receives general instructions on routine work; however can work independently where required.

  • Industry Knowledge - Continued self-education of new and emerging threats and vulnerabilities and relevant processes, controls, or technologies to mitigate them.

About the team
Our inclusive and global teams win together every day. We’re proud to have the best minds in the industry, who you can learn from as you grow your career. The people, the energy, the connections – it’s unmatched. Come and be part of an ever-evolving company and get dynamic opportunities that go beyond borders.


What makes a Globalpayer?
Globalpayers think like a client, act like an owner and win as one team. We’re curious and innovative – always finding better ways to deliver impact. We empower each other to make decisions, and it’s our passion that drives excellence in everything we set out to do.

Global Payments Inc. is an equal opportunity employer.

Frequently Asked Questions

Is the salary disclosed for the Bug Bounty Analyst position at tsys?
The salary for this Bug Bounty Analyst role at tsys is not publicly listed. Click "Apply Now" to learn more about the compensation package on their official careers page.
Where is the Bug Bounty Analyst position at tsys located?
This Bug Bounty Analyst role at tsys is based in DUBLIN, , IRELAND, LEICESTER, , UNITED KINGDOM, LONDON, , UNITED KINGDOM. The position is listed as on-site or hybrid. Check the full job description or apply directly to confirm the work arrangement.
Is the Bug Bounty Analyst role at tsys full-time or part-time?
This is listed as a Full time position. It is posted as a Bug Bounty Analyst role in the Global Payments UK Ltd department at tsys.
Which team or department does the Bug Bounty Analyst at tsys belong to?
This Bug Bounty Analyst position is part of the Global Payments UK Ltd department at tsys. See the full job description for more information about the team structure and responsibilities.
How do I apply for the Bug Bounty Analyst position at tsys?
Click the "Apply Now" button on this page. You will be redirected to tsys's official application portal hosted on workday where you can submit your application directly.
When was the Bug Bounty Analyst job at tsys posted?
This Bug Bounty Analyst position at tsys was posted on Oct 5, 2026. Apply as soon as possible — early applications are often reviewed first.
Bug Bounty Analyst
tsys
Apply for this role ↗

You'll be redirected to tsys's official application page on Workday.