InfoSec GRC Analyst

InfoSec GRC Analyst

Full-Time 36000 - 60000 £ / year (est.) No working from home possible
C

At a Glance

  • Tasks: Ensure MoonPay's security and compliance while collaborating with various teams.
  • Company: Join a leading platform in the crypto space, empowering financial freedom.
  • Benefits: Enjoy competitive salary, unlimited holidays, and equity opportunities.
  • Other info: Diverse and inclusive workplace with excellent career growth potential.
  • Why this job: Be part of a mission to enhance security in the blockchain and payments industry.
  • Qualifications: 3-5 years in Governance, Risk, and Compliance with strong analytical skills.

The predicted salary is between 36000 - 60000 £ per year.

About MoonPay – we’re MoonPay. We’re here to onboard the world to the decentralized economy by making digital money move as universally and effortlessly as the internet. Crypto, stablecoins, and blockchain are tools for global financial empowerment, giving people and businesses more control over their money and digital assets. MoonPay is a unified payments platform that makes buying, selling, swapping, and paying in digital currencies as easy as sending an email. We power the entire flow between fiat and crypto end‑to‑end, with compliance, identity checks, fraud prevention, and settlement built in. Trusted by over 30 million customers and more than 500 ecosystem partners, our secure, enterprise‑grade platform is driving mainstream crypto adoption worldwide. Fully licensed in the U.S. and regulated across the UK, EU, Canada, and Australia, we are committed to trust and compliance while delivering a consumer app that is accessible, intuitive, and growing fast.

About the Opportunity ✍️ The Information Security Audit team at MoonPay is dedicated to verifying the security and integrity of our internal systems and data. The GRC Analyst’s mission is to provide independent, objective assurance and consulting principles to improve MoonPay’s regulatory compliance program. In collaboration with IT, People Ops, Compliance, Legal, and Procurement, you will report to the Director of Information Security Audit & ISMS Program and work with TSS and Engineering teams to collect and review evidence in support of our compliance audits.

Key responsibilities

  • Assessing the company’s internal control structure, risk management, and governance processes to confirm they work as intended.
  • Identifying opportunities to improve MoonPay’s efficiency and effectiveness by recommending solutions to management.
  • Safeguarding assets, ensuring compliance with laws and policies, and identifying potential fraud or other concerns.
  • Acting as an advisor to team members, providing insight and helping enhance the overall control environment and operational performance.
  • Promoting a culture of integrity and accountability throughout the organization.
  • Joining us in our commitment to security excellence and helping build a safer future in the blockchain and payments industry.

What you will do

  • Become fully knowledgeable with compliance frameworks such as SOC 2, ISO 27001, 27701, 27018, PCI‑DSS, NIST 800‑171, MiCA, and DORA.
  • Familiarize yourself with scheduling intervals for each framework.
  • Assist team members in gathering evidence to support our compliance program.
  • Review evidence critically, identify risks, and recommend counter‑measures or process revisions.
  • Advise internal teams on findings, enabling remedial action before external audits.
  • Safeguard assets by ensuring the team understands security requirements.

About You

  • Minimum of 3‑5 years in Governance, Risk, and Compliance.
  • Experience with IT Operations, Secure Development, Change Management, Access Control, and Information Security.
  • Performed reviews under at least two of the following: ISO 27001, SOC 2, SOX 404A/B, or PCI‑DSS.
  • Strong understanding of cybersecurity principles and best practices.
  • Excellent critical thinking, analytical, and problem‑solving skills.
  • Ability to demonstrate completeness and accuracy when providing evidence to audit teams.
  • Organization skills to manage large amounts of documentation and evidence.
  • Capacity to work effectively under pressure and handle multiple audit reviews simultaneously.
  • Strong communication and interpersonal skills.

Bonus Qualifications & Certifications

  • CISSP, CISM, or equivalent certifications.

Technical Proficiency

  • Proven experience with tools such as Google Workspace, Mac OS, SharePoint/GRC Platforms, Okta/Active Directory, Jira/Linear.
  • Ability to understand a variety of technology platforms and identify evidence to collect.

Values

  • Be Hungry
  • Level Up
  • Own It
  • Crypto Curious
  • Kaizen

Benefits & Perks

  • Competitive salary package with equity components, performance equity bonuses, and a “Moonshot” award offering $250,000 equity grants to 10 employees twice a year.
  • Unlimited holidays, hybrid working schedule, private healthcare benefits, enhanced parental leave, annual training budget, home office setup allowance, remote working allowance, a monthly budget for our products, an employee referral program offering 10K USDC, and regular remote company offsites.

Commitment To Diversity

MoonPay believes every voice matters. We foster a respectful environment free from harassment, racism, and discrimination. We are a proud equal‑opportunity employer and commit to inclusivity for all employees, including providing reasonable accommodations for qualified individuals with disabilities and adhering to non‑discriminatory hiring practices.

InfoSec GRC Analyst employer: Crypto Pro Network

Blockstream is an exceptional employer for the Director of Business Development role, offering a dynamic work culture that fosters innovation and collaboration within the rapidly evolving digital asset landscape. Employees benefit from extensive professional growth opportunities, including participation in major European industry events, while being part of a forward-thinking team dedicated to shaping the future of Bitcoin technology. With a strong emphasis on leadership development and a commitment to aligning with the long-term vision of the company, Blockstream provides a rewarding environment for those looking to make a significant impact in the financial sector.

C

Contact Details:

Crypto Pro Network Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land InfoSec GRC Analyst

Tip Number 1

Network like a pro! Reach out to folks in the InfoSec and GRC space on LinkedIn or at industry events. A friendly chat can open doors that a CV just can't.

Tip Number 2

Show off your skills! Prepare a portfolio or case studies that highlight your experience with compliance frameworks like SOC 2 or ISO 27001. This will give you an edge during interviews.

Tip Number 3

Practice makes perfect! Mock interviews with friends or mentors can help you nail those tricky questions about risk management and governance processes. Get comfortable talking about your expertise.

Tip Number 4

Apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you're genuinely interested in joining the MoonPay team!

We think you need these skills to ace InfoSec GRC Analyst

Governance, Risk, and Compliance (GRC)
Compliance Frameworks (SOC 2, ISO 27001, PCI-DSS, NIST 800-171)
IT Operations
Secure Development
Change Management
Access Control
Information Security

Some tips for your application 🫡

Tailor Your CV:Make sure your CV is tailored to the InfoSec GRC Analyst role. Highlight your experience with compliance frameworks and any relevant certifications. We want to see how your skills align with what we're looking for!

Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you're passionate about the role and how your background makes you a perfect fit for MoonPay. Let us know what excites you about working in the blockchain and payments industry.

Showcase Your Problem-Solving Skills:In your application, give examples of how you've tackled challenges in Governance, Risk, and Compliance. We love seeing critical thinking in action, so share specific instances where you identified risks and implemented solutions.

Apply Through Our Website:We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows us you’re keen on joining the MoonPay team!

How to prepare for a job interview at Crypto Pro Network

Know Your Compliance Frameworks

Make sure you’re well-versed in compliance frameworks like SOC 2, ISO 27001, and PCI-DSS. Brush up on their requirements and be ready to discuss how your experience aligns with these standards during the interview.

Showcase Your Analytical Skills

Prepare to demonstrate your critical thinking and problem-solving abilities. Think of specific examples where you've identified risks or improved processes in previous roles, as this will highlight your fit for the GRC Analyst position.

Communicate Clearly

Strong communication skills are key for this role. Practice explaining complex security concepts in simple terms, as you’ll need to advise internal teams effectively. Consider mock interviews to refine your delivery.

Be Ready for Scenario Questions

Expect scenario-based questions that assess your ability to handle real-world compliance challenges. Prepare by thinking through potential situations you might face at MoonPay and how you would approach them.