Job Closed
This listing is no longer active.
Travel smart. Achieve more.
Technical Analyst I – Information Security
Location
India
Posted
64 days ago
Salary
0
Seniority
Senior
Job Description
Technical Analyst I – Information Security
BCD Travel
• Evaluate and implement methods to continually improve security and assist business with reducing risks • Be familiar with the security requirements and controls needed to maintain the business operations • Identify and communicate threats and vulnerabilities that could impact business operations • Assist with communication, implementation and analysis of compliance with security policies, standards and procedures • Collect, calculate, and format data for metrics reporting • Monitor Information Security support desk and assist with resolution
Job Requirements
- Combination of education and experience in Information Security, Computer Science, Management Information Systems or related curriculum
- Understanding of GDS, OBT, APIs, telephony, and booking systems
- Understands how systems connect (PNR flows, API calls, authentication scopes)
- Ability to identify root causes of usage related technical issues
- Awareness of Travel Tech Ecosystem - General familiarity with travel systems, their constraints, and security touchpoints
- Advanced knowledge of Microsoft Office Suite
Benefits
- Flexible working hours and work-from-home or remote opportunities
- Opportunities to grow your skillset and career
- Generous vacation days so you can rest and recharge
- A compensation package that feels fair to you, including mental, physical, and financial wellbeing tools
- Travel industry professional perks and discounts
- An inclusive work environment where diversity is celebrated
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
CMMC Security Engineer
Red Cup ITStriving to achieve ubiquitous organizational security while delighting everyone involved!
• Implement, maintain, and lead cybersecurity efforts for CMMC compliance • Design, implement, and monitor security controls for CMMC requirements • Lead vulnerability assessments and continuous risk management • Support incident response and threat hunting • Collaborate with compliance managers and operations teams
Security Engineer
Red Cup ITStriving to achieve ubiquitous organizational security while delighting everyone involved!
• Design and deploy firewalls, intrusion detection/prevention systems (IDS/IPS), and encryption protocols across on-premises and cloud environments • Analyze network traffic and security alerts to identify breaches, respond to incidents, and mitigate risks • Conduct penetration testing and vulnerability scans to identify weaknesses, providing remediation strategies • Ensure adherence to regulations (e.g., HIPAA, GDPR) by reviewing security policies, supporting audits, and reporting compliance status • Work with IT, development, and product teams to integrate security into software development lifecycles (SDLC) and CI/CD pipelines • Develop security automation for cloud environments (e.g., AWS), CI/CD workflows, and DevSecOps practices
Security Engineer, Cloud Security
GleanSearch across all your company's apps to find exactly what you need and discover the things you should know.
• Collaborate with cross-functional teams to design and architect secure cloud infrastructure solutions on AWS and Azure • Identify potential security vulnerabilities and gaps in existing infrastructure and propose remediation plans • Implement cloud-native security technologies and best practices to address identified gaps • Analyze security logs and metrics to proactively detect and respond to security incidents • Develop and deploy security controls, such as identity and access management (IAM), network security policies, and encryption mechanisms • Leverage software engineering skills to create security-specific features, particularly in the areas of authentication, authorization, and rate limiting • Create documentation and train and guide team members and other stakeholders on security best practices
Manager, Vulnerability & Data Security
MarqetaHeadquartered in Oakland, California, Marqeta created an open application programming interface (API) to help simplify the way payment programs are managed. The
• Lead program strategy and operations: asset coverage, scanning cadence, prioritization, and measurable risk reduction using Tenable (Nessus/SC/IO) and Snyk. • Integrate Tenable and Snyk findings into engineering backlogs with clear SLAs; partner with SRE, platform, and application teams to drive remediation. • Establish risk-based prioritization (CVSS, KEV, EPSS, exploitability, business criticality) and publish dashboards for transparency to leadership. • Mature patching and configuration baselines; build preventative controls and secure-by-default guardrails. • Coordinate vulnerability disclosure, pen test intake, and threat-driven campaigns for actively exploited CVEs. • Report program health, trends, and exceptions to security leadership and auditors. • Establish clear data ownership and stewardship across critical datasets; define roles, responsibilities, and decision rights. • Define and enforce data classification, access, and usage policies; drive best practices and guard rails for least privilege and segregation of duties. • Operationalize Sentra (DSPM) and Google DLP to monitor data exposure and access risks; drive timely remediation with accountable teams. • Build data lifecycle controls (creation, storage, use, sharing, archival, destruction) and technical guardrails embedded in platforms and workflows. • Ensure compliance with data protection regulations (e.g., PCI, SOX); partner on control design, testing, and evidence collection. • Collaborate with Security, Legal, Privacy, and Data teams to protect data across its lifecycle and enable safe analytics/product use cases. • Develop metrics (DLP incidents, misconfigurations, toxic combinations, stale sensitive datasets, policy violations) and report to leadership.



