MoonPay - InfoSec GRC Analyst
Upload My Resume
Drop here or click to browse · Tap to choose · PDF, DOCX, DOC, RTF, TXT
Requirements
• Minimum of 3-5 years in Governance, Risk, and Compliance • Focus on IT Operations, Secure Development, Change Management, Access Control, and Information Security • Security Frameworks: • Performed reviews under at least two of the following: ISO 27001, SOC 2, SOX 404a/b, or PCI-DSS. • Responsible for implementing key security controls • Cybersecurity Principles: • Strong understanding of cybersecurity principles and best practices. • Strict adherence to cybersecurity principles and best practices • Analytical Skills: • Excellent critical thinking, analytical, and problem-solving skills • Organization Skills • Ability to demonstrate completeness and accuracy when providing evidence to audit teams • Ability to maintain organization while collecting large amounts of documentation and evidence • Crisis Management: • Crisis Management: • Ability to work effectively under pressure. • Capable of handling multiple audit reviews simultaneously. • Strong communication and interpersonal skills are needed to collaborate with teams across the company. • Certifications • CISSP, CISM, or equivalent certifications are a plus. • Technical Proficiency: • Proven experience with tools such as: • Google Workspace • Okta/Active Directory • Ability to understand a variety of technology platforms and how to identify evidence to collect • BLOCK Values
Responsibilities
• Providing assurance: Assessing the company’s internal control structure, risk management, and governance processes to confirm each is working as intended. • Improve operations: Looking for ways to improve MoonPay’s efficiency and effectiveness by identifying issues and recommending solutions to management. • Protect organizational value: Safeguarding assets, ensuring compliance with laws and policies, and identifying potential fraud or other concerns. • Offering assistance: Act as an advisor to team members, providing insight and helping to enhance the overall control environment and operational performance. • Promoting governance and ethics: Helping to create and promote a culture of integrity and accountability throughout the organization. • As a Security Operations Engineer at MoonPay, you will take on a multifaceted role focused on enhancing our compliance posture. Your responsibilities will include: • Become fully knowledgeable with compliance frameworks, e.g., SOC2, ISO 27001, 27701, 27018, PCI-DSS, NIST 800-171, MiCA, and DORA • Become familiar with the scheduling intervals for each framework • Assist team members in gathering evidence in support of our compliance program • Use your critical thinking skills to review the evidence provided • Identify methods and means to manage risks identified during investigations and evidence collections • Advise internal teams on any findings identified, allowing time for remediations before formal review by external auditors • Safeguard assets wherever possible by ensuring the team is aware of the security requirements • Use your skills to evaluate and escalate risks identified to identify appropriate counter-measures or process revisions required to address the risk to the company.
Benefits
• Pay for performance equity bonus: • 🚀 Moonshot award. • Unlimited holidays: • Hybrid working schedule: • Enhanced parental leave: • Annual training budget: • Remote working allowance: • Monthly budget to spend on our products and zero fee crypto transactions: • Employee referral programme: • Regular remote company offsites: • 🚀 Working in a disruptive and fast-growing company where excellence is rewarded • Commitment To Diversity
No credit card. Takes 10 seconds.