At a Glance
- Tasks: Ensure security and compliance in a fast-paced crypto environment.
- Company: Join MoonPay, a leader in the digital finance revolution.
- Benefits: Enjoy competitive salary, unlimited holidays, and equity opportunities.
- Why this job: Be part of a mission to empower global financial freedom through blockchain.
- Qualifications: 3-5 years in Governance, Risk, and Compliance with strong analytical skills.
- Other info: Diverse and inclusive workplace with excellent career growth potential.
The predicted salary is between 50000 - 65000 ÂŁ per year.
About MoonPay â weâre MoonPay. Weâre here to onboard the world to the decentralized economy by making digital money move as universally and effortlessly as the internet. Crypto, stablecoins, and blockchain are tools for global financial empowerment, giving people and businesses more control over their money and digital assets. MoonPay is a unified payments platform that makes buying, selling, swapping, and paying in digital currencies as easy as sending an email. We power the entire flow between fiat and crypto endâtoâend, with compliance, identity checks, fraud prevention, and settlement built in. Trusted by over 30 million customers and more than 500 ecosystem partners, our secure, enterpriseâgrade platform is driving mainstream crypto adoption worldwide. Fully licensed in the U.S. and regulated across the UK, EU, Canada, and Australia, we are committed to trust and compliance while delivering a consumer app that is accessible, intuitive, and growing fast.
About the Opportunity The Information Security Audit team at MoonPay is dedicated to verifying the security and integrity of our internal systems and data. The GRC Analyst's mission is to provide independent, objective assurance and consulting principles to improve MoonPay's regulatory compliance program. In collaboration with IT, People Ops, Compliance, Legal, and Procurement, you will report to the Director of Information Security Audit & ISMS Program and work with TSS and Engineering teams to collect and review evidence in support of our compliance audits.
Key responsibilities
- Assessing the company's internal control structure, risk management, and governance processes to confirm they work as intended.
- Identifying opportunities to improve MoonPay's efficiency and effectiveness by recommending solutions to management.
- Safeguarding assets, ensuring compliance with laws and policies, and identifying potential fraud or other concerns.
- Acting as an advisor to team members, providing insight and helping enhance the overall control environment and operational performance.
- Promoting a culture of integrity and accountability throughout the organization.
What you will do:
- Become fully knowledgeable with compliance frameworks such as SOC 2, ISO 27001, 27701, 27018, PCIâDSS, NIST 800â171, MiCA, and DORA.
- Familiarize yourself with scheduling intervals for each framework.
- Assist team members in gathering evidence to support our compliance program.
- Review evidence critically, identify risks, and recommend counterâmeasures or process revisions.
- Advise internal teams on findings, enabling remedial action before external audits.
- Safeguard assets by ensuring the team understands security requirements.
About You
- Minimum of 3â5 years in Governance, Risk, and Compliance.
- Experience with IT Operations, Secure Development, Change Management, Access Control, and Information Security.
- Performed reviews under at least two of the following: ISO 27001, SOC 2, SOX 404A/B, or PCIâDSS.
- Strong understanding of cybersecurity principles and best practices.
- Excellent critical thinking, analytical, and problemâsolving skills.
- Ability to demonstrate completeness and accuracy when providing evidence to audit teams.
- Organization skills to manage large amounts of documentation and evidence.
- Capacity to work effectively under pressure and handle multiple audit reviews simultaneously.
- Strong communication and interpersonal skills.
Bonus Qualifications & Certifications
- CISSP, CISM, or equivalent certifications.
Technical Proficiency
- Proven experience with tools such as Google Workspace, Mac OS, SharePoint/GRC Platforms, Okta/Active Directory, Jira/Linear.
- Ability to understand a variety of technology platforms and identify evidence to collect.
Values
- Be Hungry
- Level Up
- Own It
- Crypto Curious
- Kaizen
Benefits & Perks
- Competitive salary package with equity components, performance equity bonuses, and a "Moonshot" award offering $250,000 equity grants to 10 employees twice a year.
- Unlimited holidays, hybrid working schedule, private healthcare benefits, enhanced parental leave, annual training budget, home office setup allowance, remote working allowance, a monthly budget for our products, an employee referral program offering 10K USDC, and regular remote company offsites.
Commitment To Diversity
MoonPay believes every voice matters. We foster a respectful environment free from harassment, racism, and discrimination. We are a proud equalâopportunity employer and commit to inclusivity for all employees, including providing reasonable accommodations for qualified individuals with disabilities and adhering to nonâdiscriminatory hiring practices.
InfoSec GRC Analyst in London employer: Crypto Pro Network
Contact Detail:
Crypto Pro Network Recruiting Team
StudySmarter Expert Advice đ¤Ť
We think this is how you could land InfoSec GRC Analyst in London
â¨Tip Number 1
Get to know the company inside out! Research MoonPay's mission, values, and recent news. This will help you tailor your conversations and show that you're genuinely interested in being part of their journey.
â¨Tip Number 2
Network like a pro! Connect with current employees on LinkedIn or attend industry events. Building relationships can give you insider info and might even lead to a referral, which is always a bonus!
â¨Tip Number 3
Prepare for the interview by practising common questions related to InfoSec and GRC. Think about how your experience aligns with MoonPay's needs and be ready to share specific examples that highlight your skills.
â¨Tip Number 4
Don't forget to follow up after your interview! A quick thank-you email reiterating your interest can keep you top of mind. Plus, it shows you're proactive and keen on the role!
We think you need these skills to ace InfoSec GRC Analyst in London
Some tips for your application đŤĄ
Know Your Stuff: Make sure youâre familiar with the compliance frameworks mentioned in the job description. Show us that youâve got a solid understanding of SOC 2, ISO 27001, and others. This will help us see that youâre ready to hit the ground running!
Tailor Your Application: Donât just send a generic CV and cover letter. Tailor your application to highlight your experience in Governance, Risk, and Compliance. We want to see how your skills align with what weâre looking for at MoonPay.
Show Off Your Skills: Use your application to showcase your critical thinking and problem-solving skills. Give us examples of how youâve tackled challenges in the past, especially in relation to compliance audits or risk management.
Apply Through Our Website: We encourage you to apply directly through our website. Itâs the best way to ensure your application gets into the right hands. Plus, it shows us youâre genuinely interested in joining the MoonPay team!
How to prepare for a job interview at Crypto Pro Network
â¨Know Your Compliance Frameworks
Make sure youâre well-versed in compliance frameworks like SOC 2, ISO 27001, and PCI-DSS. Brush up on their requirements and be ready to discuss how your experience aligns with these standards during the interview.
â¨Showcase Your Analytical Skills
Prepare to demonstrate your critical thinking and problem-solving abilities. Think of specific examples where you've identified risks or improved processes in previous roles, as this will highlight your value to the team.
â¨Communicate Effectively
Strong communication is key in this role. Practice articulating complex ideas clearly and concisely. Be ready to explain technical concepts in a way that non-technical stakeholders can understand.
â¨Be Ready for Scenario Questions
Expect scenario-based questions that assess your ability to handle real-world compliance challenges. Prepare by thinking through potential situations you might face and how you would approach them, showcasing your proactive mindset.