All roles

[Remote] Business Analyst - PCI / Payment Systems

Remote · USA Full-time New today

Note: The job is a remote job and is open to candidates in USA. Direct Travel is a leading provider of corporate travel management services, seeking a highly analytical and detail-oriented Business Analyst to support PCI DSS Level 1 Service Provider compliance. The role focuses on payment flow optimization and tokenization, requiring collaboration with various teams to document and redesign payment data processes.

Responsibilities

  • Document end-to-end payment workflows, including:
  • Customer booking and payment processes
  • Internal system interactions (phone system, back-office)
  • Third-party integrations (e.g., payment gateways, GDS, vendors)
  • Identify where cardholder data (PAN) is:
  • Collected
  • Processed
  • Stored
  • Transmitted
  • Develop and maintain:
  • Data flow diagrams
  • System interaction maps
  • Process documentation aligned to PCI scope requirements
  • Analyze payment and data flows to identify opportunities to reduce PCI scope
  • Partner with Security, Operations and Finance teams to:
  • Eliminate unnecessary PAN handling
  • Support segmentation strategies
  • Enable system isolation and scope containment
  • Ensure all scope-related documentation is accurate, complete, and defensible for audit
  • Support design and implementation of tokenization strategies by:
  • Mapping current vs. future-state payment flows
  • Identifying systems and processes impacted by tokenization
  • Work with Product and Operations teams to:
  • Redesign workflows to remove PAN from internal systems
  • Eliminate manual or legacy payment handling processes
  • Document business and system changes required to support tokenization initiatives
  • Translate compliance and architectural requirements into:
  • Clear business requirements
  • Functional specifications
  • User stories / tickets for engineering teams
  • Ensure requirements align with PCI DSS expectations and scope reduction goals
  • Work with:
  • Product and Engineering teams
  • Finance and Operations (e.g., billing, refunds, call centers)
  • Vendor and third-party stakeholders
  • Facilitate workshops and discovery sessions to understand real-world workflows vs. documented processes
  • Identify:
  • “Shadow” processes where cardholder data may be handled outside defined systems
  • Manual workflows (e.g., call center payments, email handling of PAN)
  • Gaps between intended and actual processes
  • Escalate risks and inefficiencies to the PCI Program Director
  • Maintain clear, structured documentation to support:
  • PCI scope validation
  • QSA review and audit defensibility
  • Ensure all process documentation aligns with:
  • Control narratives
  • Data flow diagrams
  • System inventories

Skills

  • Bachelor's degree in Computer Science, Information Technology, or a related field or equivalent experience
  • 4+ years of experience as a Business Analyst, preferably in complex system environments
  • Proven experience mapping end-to-end business processes and system workflows
  • Strong experience working with: Payment systems, financial transactions, or e-commerce platforms
  • Demonstrated ability to analyze and document data flows across multiple systems
  • Experience translating business needs into technical requirements
  • Experience in PCI DSS environments or supporting compliance initiatives
  • Familiarity with: Payment gateways and processors
  • Tokenization concepts and implementations
  • Experience in travel, hospitality, or high-volume transaction environments
  • Experience working with distributed systems and third-party integrations

Benefits

  • Medical, Dental, and Vision benefits
  • Employee rewards and recognitions program
  • Total Rewards Package which includes Wellness, Sustainability, DE&I initiatives, and Mental Health Support

Company Overview

  • Direct Travel is a leading provider of corporate travel management services. It was founded in 1984, and is headquartered in Atlanta, Georgia, USA, with a workforce of 1001-5000 employees. Its website is https://www.dt.com/gitravel/.
  • Apply To This Job

    Related roles

    [Remote] Data Analytics Engineer

    Remote · USA Full-time

    [Remote] Data Engineer

    Remote · USA Full-time

    [Remote] GRC Analyst

    Remote · USA Full-time

    [Remote] Senior Program Manager -Global Corporate Travel

    Remote · USA Full-time

    [Remote] Global Account Manager

    Remote · USA Full-time

    [Remote] ABM & Enterprise Marketing Manager

    Remote · USA Full-time

    [Remote] VP of Strategic Accounts

    Remote · USA Full-time

    [Remote] Product Operations Manager

    Remote · USA Full-time

    [Remote] Principal Site Reliability Engineer

    Remote · USA Full-time

    [Remote] Sales Tax Specialist, Physical Goods

    Remote · USA Full-time

    Experienced Live Chat Agent – Delivering Exceptional Customer Experiences in a Remote Setting

    Remote · USA Full-time

    Remote Data Entry Specialist – Entry-Level, Flexible Remote Position for Teens at arenaflex

    Remote · USA Full-time

    Remote Virtual Live Chat Operator – Entry‑Level Customer Support Specialist (Flexible Hours, $25‑$35/hr, Work‑From‑Home)

    Remote · USA Full-time

    SVP, Information Security, Risk & Compliance

    Remote · USA Full-time

    REMOTE Employment Defense Attorney — Up to $300k Total Comp — Established Regional Firm

    Remote · USA Full-time

    DevOps Engineer – Elastic Stack / Kubernetes/OCI - ACTIVE SECRET CLEARANCE REQUIRED - Remote

    Remote · USA Full-time

    Experienced Data Entry Specialist – Join arenaflex and Embark on a Rewarding Career in Aviation

    Remote · USA Full-time

    JH-ACH IRB Program Manager (Office of Human Subjects Research

    Remote · USA Full-time

    Experienced Teen Data Entry Specialist – Flexible Work-From-Home Opportunities with arenaflex

    Remote · USA Full-time

    Experienced Online Live Chat Assistant – Entry-Level Position with Immediate Start at arenaflex

    Remote · USA Full-time