696,664open jobs
40,824companies
99,873added this week
Browse all
Salary
$30k – $72k per year (Estimated)
Location
In office (Bengaluru)
Seniority
Middle · 3+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
MoonPay is a cryptocurrency payments company headquartered in Miami, Florida, and founded in 2019. The company operates an on and off ramp that lets people buy and sell digital assets with cards and bank transfers, and supplies wallet, NFT checkout, and compliance infrastructure to other crypto businesses. It is integrated into hundreds of wallets and exchanges and holds money transmission and virtual asset licenses across the United States and Europe.

Locations Supported

  • India, Bengaluru

Relocation available: No

Work pattern:

  • This role will be in the office.

  • Working hours: 6:30 PM to 3:30 AM IST

About the Opportunity

The Security Operations (SecOps) team at MoonPay is dedicated to ensuring the security and integrity of our systems and data in an increasingly complex digital landscape. Comprising a diverse group of professionals from various regions around the globe, our multicultural team brings together a wealth of expertise and perspectives to tackle security challenges effectively.

Our mission is to identify and mitigate vulnerabilities and threats while maintaining strict compliance with security policies and relevant regulations. By leveraging advanced security measures and proactive threat detection techniques, we work diligently to safeguard our infrastructure and protect our customers’ information.

In collaboration with the IT team and other departments, we foster a culture of security awareness, sharing best practices and ensuring that everyone at MoonPay understands their role in maintaining a secure environment.

Our key responsibilities include incident response, security monitoring, endpoint security, VPN, vulnerability management, data leak protection and third-party risk management (TPRM), all of which contribute to our overarching goal: to create a secure environment for our employees, clients and partners.

Join us in our commitment to security excellence and help us build a safer future in the blockchain and payments industry!

What You Will Do

We are looking for an Information Security Engineer, DLP & Insider Risk, to join our Information Security team, focused on protecting sensitive data and reducing insider risk across the organization. In this role, you will own our Data Loss Prevention program end to end, build out our Insider Risk and UEBA capabilities, and contribute to incident response. You are a hands-on individual contributor who is comfortable working across technical tooling, process development, and cross-functional collaboration.

  • Data Loss Prevention

    • Deploy, configure, optimize, and maintain Mimecast Code42, Slack, Google Workspace to protect against data exfiltration.

    • Design and roll out technical controls to prevent data leakage from endpoints across email, browsers, and messaging applications.

    • Implement and manage Google Workspace Data Loss Prevention policies and Labels.

    • Apply a solid understanding of GRC frameworks, data management principles, and data classification schemes to inform DLP strategy and policy.

  • Insider Risk & UEBA

    • Familiarity with UEBA concepts and the ability to correlate signals from SaaS platforms, endpoints, and email security tools to identify and investigate risky user behavior.

    • Develop and manage a pre-hire insider risk process in partnership with Talent Acquisition to identify risk signals early in the hiring pipeline.

    • Build and maintain a defensive program to address deepfake threats, including detection capabilities, incident response procedures, and employee awareness.

    • Collaborate with the Security Awareness team to promote healthy data-sharing practices across the organization.

  • L2 Incident Response (Operational Role)

    • Actively participate in Security Operations activities as an L2 Incident Responder.

    • Lead incidents through all stages: identification, containment, eradication, recovery, and lessons learned.

    • Serve as the primary point of contact for the SOC regarding SIEM investigations, platform behavior, detection logic, and operational troubleshooting.

    • Support continuous improvement by translating incident learnings into better detections, dashboards, and playbooks.

About You

Describe the ideal candidate’s qualifications, skills, experience, and behaviours that show strong culture alignment.

You’re an Information Security Engineer who can both build and operate at scale. You have strong expertise in DLP and are equally comfortable with leading incident response.

You will be working primarily on the following stack: Apple systems, Google Workspace, Slack, Mimecast Code42, Okta, Crowdstrike, Cloudflare WARP, Tenable Nessus and Jamf Pro.

Must-have experience and skills

  • Experiences

    • 3-5 years of experience in information security, with a focus on data protection, DLP, or insider threat.

    • Experience building and operationalizing DLP programs, including policy development, tuning detection rules, managing alerts, and documenting response runbooks for data exfiltration scenarios.

  • Cybersecurity Principles

    • Working knowledge of GRC principles, data classification frameworks, and regulatory requirements.

    • Experience with data classification standards and the ability to translate policies into technical controls.

    • Familiarity with security frameworks such as NIST, ISO 27001, or SOC 2.

    • Understanding of relevant regulatory requirements such as GDPR, CCPA, or HIPAA.

  • Technical Proficiency

    • Google Workspace experience in the areas of responsibility for at least 1 year.

    • Exposure to SSPM tooling and CIS hardening standards for SaaS and endpoint environments.

    • Proficiency with SIEM such as Google SecOps for security operations and investigation workflows.

    • Familiarity with email security gateway solutions for threat prevention, filtering, and analysis.

    • Hands-on experience with Okta for identity and access management in a security context.

    • Experience with YARA rules or similar pattern-matching detection methods.

  • Analytical Skills

    • Excellent analytical and problem-solving abilities.

  • Crisis Management

    • Ability to work effectively under pressure.

    • Capable of handling multiple incidents simultaneously.

  • Communication

    • Strong communication and interpersonal skills to collaborate with various teams.

Nice-to-have experience

  • Education

    • Bachelor's degree in Computer Science, Information Security, or a related field. Equivalent work experience will be considered.

  • Security Frameworks

    • Experience with frameworks such as ISO 27001, SOC 2, and PCI-DSS.

    • Responsible for defining and implementing key security controls.

  • Incident Response

    • Practical incident response experience including triage, investigation, containment, and communications.

  • Vulnerability Management

    • Identifying, prioritizing, and automating remediation of security vulnerabilities.

  • Vendor / Third-Party Security

    • Experience conducting vendor and third-party security assessments, including evaluating risk posture, reviewing security questionnaires, and ensuring third parties meet organizational security standards.

Bonus Points

Optional extras that would help a candidate stand out (keep this short).

  • Certifications

    • CompTIA Security+, CySA+, CCSP or equivalent certifications are a plus.

    • GCIH, GCFA are a plus.

  • Technical Proficiency

    • Proven experience with tools such as:

      • Google Workspace / Cloud Platform

      • Mimecast Code42

      • Slack

      • Okta

      • Crowdstrike

      • Cloudflare Zero Trust

      • Tenable Nessus

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
696,664 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Bengaluru
$74k – $106k per year • In office • 2+ years exp • Bachelor's Degree • Reston
DevOps
Windows
Cybersecurity
Okta
Active Directory
Management
Slack
Confluence
Jira
ServiceNow
Outlook
SharePoint
Microsoft Office
Apply
$160k – $322k per year (Estimated) • Remote • Contractor
Databases
NATS
AI/ML
Reinforcement Learning
AI Agents
DevOps
gRPC
Helm
Traefik
WebRTC
cert-manager
etcd
Kustomize
Kubernetes
Cybersecurity
Okta
Trivy
Apply
$163k – $328k per year (Estimated) • Remote • Contractor
C
C++
C
libuv
C++
CMake
Databases
PostgreSQL
Redis
AI/ML
Reinforcement Learning
AI Agents
Cybersecurity
Okta
Tcpdump
Cryptography
OpenSSL
OpenSSH
Apply
$73k – $148k per year (Estimated) • Remote • Full-Time
Python
JavaScript
Python
Scrapy
DevOps
WebSockets
CI/CD
Docker
Cloudflare
Akamai
SLI/SLO/SLA
QA
Playwright
Apply
$31k – $71k per year (Estimated) • Remote/Hybrid • 3+ years exp • Buenos Aires
Management
Slack
Google Sheets
Apply
$173k – $329k per year (Estimated) • Remote/Hybrid • 7+ years exp
Marketing
LinkedIn
Apply
IT Engineer 7 days ago
In office • Full-Time • Bengaluru
Python
PowerShell
DevOps
Splunk
Terraform
GCP
Datadog
AWS
Cybersecurity
Okta
SIEM
Management
Slack
Apply
$210k – $363k per year (Estimated) • Remote
AI/ML
Model Context Protocol
Web3
DeFi
Apply
$163k – $328k per year (Estimated) • Remote • Full-Time
AI/ML
Model Context Protocol
Web3
DeFi
Apply
$104k – $225k per year (Estimated) • Remote/Hybrid • Full-Time • London
Web3
DeFi
Apply
In office • Full-Time • Master's Degree • Bengaluru
AI/ML
AI Agents
Apply
$35k – $78k per year (Estimated) • In office • Full-Time • 5+ years exp • Bachelor's Degree • Bengaluru
Management
Jira
Agile
Apply
$24k – $58k per year (Estimated) • In office • Full-Time • 8+ years exp • Bachelor's Degree • Bengaluru
Python
DevOps
TCP/IP
Apply
$22k – $50k per year (Estimated) • In office • Full-Time • 8+ years exp • Bachelor's Degree • Bengaluru
Analytics
Power BI
Microsoft Excel
Management
Power Automate
Apply
$24k – $52k per year (Estimated) • In office • Full-Time • 3+ years exp • Bengaluru
Design
AutoCAD
Apply
See all jobs
This is one of many
696,664 more open roles from verified company boards, updated every day.