Information Security Engineer, DLP & Insider Risk
Moonpay
About MoonPay
MoonPay is for builders with something to prove.
This isn't a "work on cool crypto stuff" company. It's a high-standards, high-velocity, high-accountability company building the operating system for value movement. If the internet moves information, we move value: crypto, stablecoins, tokenized assets, and whatever comes next. Four offerings make that real: fund, tokenize, trade, and spend. 30M+ customers and 500+ ecosystem partners run on us. Licensed in the U.S. Regulated across the UK, EU, Canada, and Australia.
AI is the default operating mode here. It's woven into every role, and we expect you to use it daily. It handles the manual work so you can deliver on what actually matters.
You'll thrive here if outcomes excite you more than process, if impact motivates you more than titles, and if you want hard problems, real ownership, and teammates who love winning, building, and doing it together.
The bar is high. The pace is real. We're building for what's next, for humans and agents.
**Recent recognition:**
[Forbes' America's Best Startup Employers 2026 .](
2nd in Crypto Services on [Fortune's inaugural Crypto 100](
[The Sunday Times Best Places to Work]( two years running
Locations Supported
- India, Bengaluru
- This role will be in the office.
- Working hours: 6:30 PM to 3:30 AM IST
About the Opportunity
The Security Operations (SecOps) team at MoonPay is dedicated to ensuring the security and integrity of our systems and data in an increasingly complex digital landscape. Comprising a diverse group of professionals from various regions around the globe, our multicultural team brings together a wealth of expertise and perspectives to tackle security challenges effectively.
Our mission is to identify and mitigate vulnerabilities and threats while maintaining strict compliance with security policies and relevant regulations. By leveraging advanced security measures and proactive threat detection techniques, we work diligently to safeguard our infrastructure and protect our customers’ information.
In collaboration with the IT team and other departments, we foster a culture of security awareness, sharing best practices and ensuring that everyone at MoonPay understands their role in maintaining a secure environment.
Our key responsibilities include incident response, security monitoring, endpoint security, VPN, vulnerability management, data leak protection and third-party risk management (TPRM), all of which contribute to our overarching goal: to create a secure environment for our employees, clients and partners.
Join us in our commitment to security excellence and help us build a safer future in the blockchain and payments industry!
What You Will Do
We are looking for an Information Security Engineer, DLP & Insider Risk, to join our Information Security team, focused on protecting sensitive data and reducing insider risk across the organization. In this role, you will own our Data Loss Prevention program end to end, build out our Insider Risk and UEBA capabilities, and contribute to incident response. You are a hands-on individual contributor who is comfortable working across technical tooling, process development, and cross-functional collaboration.
- Data Loss Prevention
- Deploy, configure, optimize, and maintain Mimecast Code42, Slack, Google Workspace to protect against data exfiltration.
- Design and roll out technical controls to prevent data leakage from endpoints across email, browsers, and messaging applications.
- Implement and manage Google Workspace Data Loss Prevention policies and Labels.
- Apply a solid understanding of GRC frameworks, data management principles, and data classification schemes to inform DLP strategy and policy.
- Insider Risk & UEBA
- Familiarity with UEBA concepts and the ability to correlate signals from SaaS platforms, endpoints, and email security tools to identify and investigate risky user behavior.
- Develop and manage a pre-hire insider risk process in partnership with Talent Acquisition to identify risk signals early in the hiring pipeline.
- Build and maintain a defensive program to address deepfake threats, including detection capabilities, incident response procedures, and employee awareness.
- Collaborate with the Security Awareness team to promote healthy data-sharing practices across the organization.
- L2 Incident Response (Operational Role)
- Actively participate in Security Operations activities as an L2 Incident Responder.
- Lead incidents through all stages: identification, containment, eradication, recovery, and lessons learned.
- Serve as the primary point of contact for the SOC regarding SIEM investigations, platform behavior, detection logic, and operational troubleshooting.
- Support continuous improvement by translating incident learnings into better detections, dashboards, and playbooks.
About You
Describe the ideal candidate’s qualifications, skills, experience, and behaviours that show strong culture alignment. You’re an Information Security Engineer who can both build and operate at scale. You have strong expertise in DLP and are equally comfortable with leading incident response. You will be working primarily on the following stack: Apple systems, Google Workspace, Slack, Mimecast Code42, Okta, Crowdstrike, Cloudflare WARP, Tenable Nessus and Jamf Pro. Must-have experience and skills- Experiences
- 3–5 years of experience in information security, with a focus on data protection, DLP, or insider threat.
- Experience building and operationalizing DLP programs, including policy development, tuning detection rules, managing alerts, and documenting response runbooks for data exfiltration scenarios.
- Cybersecurity Principles
- Working knowledge of GRC principles, data classification frameworks, and regulatory requirements.
- Experience with data classification standards and the ability to translate policies into technical controls.
- Familiarity with security frameworks such as NIST, ISO 27001, or SOC 2.
- Understanding of relevant regulatory requirements such as GDPR, CCPA, or HIPAA.
- Technical Proficiency
- Google Workspace experience in the areas of responsibility for at least 1 year.
- Exposure to SSPM tooling and CIS hardening standards for SaaS and endpoint environments.
- Proficiency with SIEM such as Google SecOps for security operations and investigation workflows.
- Familiarity with email security gateway solutions for threat prevention, filtering, and analysis.
- Hands-on experience with Okta for identity and access management in a security context.
- Experience with YARA rules or similar pattern-matching detection methods.
- Analytical Skills
- Excellent analytical and problem-solving abilities.
- Crisis Management
- Ability to work effectively under pressure.
- Capable of handling multiple incidents simultaneously.
- Communication
- Strong communication and interpersonal skills to collaborate with various teams.
- Education
- Bachelor's degree in Computer Science, Information Security, or a related field. Equivalent work experience will be considered.
- Security Frameworks
- Experience with frameworks such as ISO 27001, SOC 2, and PCI-DSS.
- Responsible for defining and implementing key security controls.
- Incident Response
- Practical incident response experience including triage, investigation, containment, and communications.
- Vulnerability Management
- Identifying, prioritizing, and automating remediation of security vulnerabilities.
- Vendor / Third-Party Security
- Experience conducting vendor and third-party security assessments, including evaluating risk posture, reviewing security questionnaires, and ensuring third parties meet organizational security standards.
Bonus Points
Optional extras that would help a candidate stand out (keep this short).- Certifications
- CompTIA Security+, CySA+, CCSP or equivalent certifications are a plus.
- GCIH, GCFA are a plus.
- Technical Proficiency
- Proven experience with tools such as:
- Google Workspace / Cloud Platform
- Mimecast Code42
- Slack
- Okta
- Crowdstrike
- Cloudflare Zero Trust
- Tenable Nessus
Benefits & Perks
- Competitive salary package
- Equity package: financial freedom starts with our employees, so all employees have ownership at MoonPay
- Pay-for-performance equity bonus: those who drive outsized outcomes receive outsized rewards
- Moonshot award: we honor exceptional impact. 10 employees twice a year, each earning a $250,000 equity grant
- Pension: employer contributions from day one
- Employee referral program: refer great people, earn 10K in USDC
- Flexible Time Off: choose when to work and when to switch off
- Birthday leave: take the day off to celebrate you
- Enhanced parental leave: more time with family, no second thought
- Hybrid working schedule: work fully remotely or from your nearest Moonbase
- Commuter benefits: public transport to and from the office
- Private healthcare benefits: to protect you and your loved ones
- Wellhub wellness membership: access to gyms, studios, classes, and wellness apps in one membership
- Unlimited enterprise access to the latest AI tools: Claude, ChatGPT, Gemini and whatever's next
- Lunch credit: meals covered on the days you're in the office
- Home office setup allowance: build the home office of your dreams
- Remote working allowance: those working fully remotely get a little extra for utilities
- Monthly product budget and zero-fee crypto transactions
- $1,000 Annual training budget: we support your learning journey
- High Potential Program: structured development, mentorship, and stretch opportunities
- ✈️ Regular remote company offsites: high-impact in-person sessions and hackathons
- (Ireland) Cycle to Work scheme: tax-efficient bike, gear, and safety kit
- (UK) EV Salary Sacrifice: lease an electric vehicle through pre-tax salary
- Summary:The DLP / Data Security Engineer is responsible for engineering, administering... ...that protect sensitive information across Microsoft 365, Google... ...implement measured tuning based on risk and evidence.Maintain... ...suspected data exposure, insider risk, unauthorized sharing,...Risk
$120.8k - $181.2k
OverviewMcGuireWoods is hiring a Senior Information Security Engineer. This is a hands-on technical lead... ...controls, including EDR/AV, firewalls, DLP, email security, web filtering, and identity... ...-surface visibility, and conduct risk/threat modeling aligned with the MITRE...RiskRemote work$92k - $211k
...world together, anything is possible. Information Security Engineer Date: Jul 6, 2026 Location:... ...cloud security, Data Loss Prevention (DLP), Endpoint Privilege Management (EPM),... ...of vulnerability management practices, risk assessment methodologies, and remediation...RiskLocal areaRemote workFlexible hours2 days per week3 days per week1 day per week$105k - $120k
...As a member of the Cooper’s Hawk Information Security Team, the Information Security Engineer – Application, Cloud, and Infrastructure... ...is prioritized based on risk and tracked to closure. Assist... ...tools, including EDR, IPS, IAM, DLP, and vulnerability management platforms...RiskTemporary workCasual workWork at officeRemote workFlexible hours$170k - $220k
...Staff Information Security Engineer - AI First Strong AI-first focus — integrates LLMs and AI assistants... ...-as-code, and enable fast, low-risk AI usage across engineering and platform... ...protection programs.Experience with EDR, CASB, DLP, security automation, and SAST/DAST/...RiskFull timeRemote work$220k - $280k
...provides innovative identity and risk solutions, empowering... ...Bloomberg, Forbes, Business Insider, PYMNTS, American Banker, LendIt... ...by design. For example, our engineering team in India works... ...’re looking for a Principal Information Security Engineer to lead and elevate...RiskWork at officeRemote workHome officeFlexible hours$91.7k - $163.7k
...of health data and information to create a more... ...costs while improving risk management,... ...Connected Device Security and Data Protection... ...Data Protection & Insider Risk programs across... ...Response, Security Engineering, Clinical Engineering... ...Loss Prevention (DLP), Information...RiskMinimum wageFull timeWork experience placementWork at officeLocal areaRemote work$140k - $165k
...The Microsoft Purview Data Security Engineer administers Microsoft Purview... ..., data loss prevention, insider risk, and records retention. The... ...RESPONSIBILITIES: Information Protection and Data Classification... .... Maintain a DLP scenario register mapping each...RiskFor contractorsWork at office- ...Sr. Information Security Engineer Hybrid/Remote About Reveleer Reveleer delivers a unified platform spanning risk adjustment, quality improvement, clinical intelligence, and member... ...of unsanctioned generative AI tools, DLP policies for AI endpoints, and enterprise...RiskFull timeLocal areaRemote work
$140k - $160k
...steps. Our partner is looking for a Sr. Information Security Engineer based in the United States. This is... ...combinations, and other security risks. Secure containerized and serverless... ...classification, tokenization, de-identification, DLP, and appropriate access controls....RiskFull timeRemote work- ...If the internet moves information, we move value: crypto,... ...the Opportunity The Security Operations (SecOps) team... ...protection and third-party risk management (TPRM), all... ...Information Security Engineer, SaaS & Integration... ...have strong expertise in DLP and are equally comfortable...RiskFull timeWork experience placementWork at officeRemote workRelocationHome officeFlexible hours
$170k - $220k
...corner of how it operates — and security is no exception. As a Staff AI-First Information Security Engineer, you own the intersection of... ...Rithum move fast without creating risk they cannot see. This is not a... ...Experience with EDR, CASB, DLP, Security automation and SAST,...RiskFull timeRemote work- ...generations.ABOUT THE ROLEThe Global Information Security Engineering team is looking for an Information Security... ..., and emerging technologies to reduce risk, simplify the environment, and... ...capabilities; exposure to SIEM/SOAR, IAM/PAM, DLP/DSPM, vulnerability management, or...RiskFull timeRemote workWorldwideRelocation1 day per week
- ...Job Title: Security Engineer Location: Remote Required Skills: Engineering... ...Data Security background (DLP, Data Classification)... ...capabilities across a wide range of information technology systems and... ...requirements. • Identify risks and vulnerabilities, and...RiskRemote work
- ...Highland is seeking an experienced Senior Security Engineer for an approximate 6-month contract to... ...and mature key components of our information security program. This role will design... ...drive engineering initiatives that reduce risk while supporting business objectives....RiskContract workFor contractorsWork at officeLocal areaRemote work3 days per week
- ...malware works, and can evangelize the risks and issues across a broad... ...will allow you to shape the future of security across the Internet? Do you thrive on... ...research.Lancope is looking for a full time Information Security Engineer for Lancope's Threat Intelligence Team...RiskFull timeRemote work
- ...Defense and National Security mission sets. We leverage... ..., Analytics, Engineering, Mission Support, and... ...that protect sensitive information throughout its lifecycle... ...Data Loss Prevention (DLP), Microsoft Purview Information... ..., Microsoft Purview Insider Risk Management, Microsoft...RiskFor contractorsWork at office
$150k - $180k
Job Title: Senior Information Security EngineerLocation: Hybrid - Andover, MA | Full-TimePay: $150,... ...seeking a Senior Information Security Engineer to lead our cybersecurity function, a hands... ...), and the ability to communicate risk clearly to leadership.Key Responsibilities...RiskLocal areaRemote workWork visa$90k - $120k
...talented, passionate, and committed engineers, technologists, and business... ...role within the Global Security Operations Center (GSOC) monitoring... ...history), and execute low-risk first-response actions under... ...with an emphasis in Information Security or a related field,...RiskRemote workWorldwideShift work$137k - $287k
The group you’ll be a part ofThe Global Information Systems Group is dedicated to the success... ...for the planning, design and build of security architectures; oversees the implementation... ...and vulnerability testing and risk analysis. Configures and installs firewalls...RiskLocal areaImmediate startRemote workFlexible hours2 days per week3 days per week1 day per week- ...Keyfactor Our mission is to securely connect the world: humans, machines... ...future with Keyfactor!Title: Information Security EngineerLocation:... ...Information Security Engineer with a strong background in implementing... ..., system audits, and risk analysis using industry-standard...RiskRemote work
$86.8k - $198k
Data Security Engineer, SeniorThe Opportunity:Architect, deploy, and configure... ...with Data Loss Prevention (DLP) tools such as Forcepoint,... ...of federal information security policies, standards... ...authorizations, assessment, and risk management processes for enterprise...RiskFull timeContract workPart timeWork at officeLocal areaRemote work$10k
...Match Group runs one unified security program across Tinder, Hinge,... ...standing privileges and secure high-risk administrative actions.... ...and accelerate delivery by engineering automated solutions—using scripting... ...or veteran status, genetic information, or any other legally...RiskFull timeWork experience placementWorldwide3 days per week$99.27k - $169.9k
...The Opportunity with McKinstryMcKinstry is seeking a Senior Information Security Engineer to join our growing Enterprise Tech Projects team in... ...roadmaps, policies, procedures, and protocols to mitigate risks and ensure compliance with regulatory requirements. The role...RiskWork experience placementRemote workVisa sponsorship$86.9k - $198k
Data Security EngineerThe Opportunity: As a senior data security engineer on our team, you’ll be integral to architecting... ...Data Loss Prevention (DLP) tools such as... ...Knowledge of federal information security policies, standards... ..., assessment, and risk management processes...RiskFull timeContract workPart timeWork at officeLocal areaRemote work$92k - $211k
...part ofThis position will be part of Lam Information Security’s Application Security team,... ...Secure SDLC, product security, application risk assessments, threat modeling, vulnerability... ...and AI-enabled solutions, and support engineering teams in delivering secure software...RiskWork experience placementLocal areaRemote workFlexible hours2 days per week3 days per week1 day per week$100k - $150k
...ability to relocate to the area. Curious how Shared Services fits into Red Ventures? Click here. As a Information Security Engineer, you will identify and reduce risk across our cloud and SaaS environments by surfacing vulnerabilities, tuning detections, and driving remediation...RiskFull timeLocal areaRemote workRelocationMonday to FridayFlexible hours- ...We are seeking a knowledgeable Security Specialist to enhance our security posture across cloud environments, specifically AWS and Azure... ...and compliance standards (e.g., GDPR, HIPAA) • Ability to conduct risk assessments and develop mitigation strategies • Experience with...RiskRemote work
- ...official title for this position is Info Sec Engineer Sr Lead.***Brief Position Description:The Senior Information Security Engineer is responsible for proactively improving... ...necessary, remediate security incidents and risks. This role is focused on interpreting cyber security...RiskWork experience placementWork at officeLocal areaRelocationVisa sponsorshipWork visaRelocation package
- ..., Florida. Learn more at .OVERVIEWThe Principal IT Security Engineer reports to the Sr. Manager of Information Security and serves as the technical lead for securing... ...and integrations, identifying and mitigating risks introduced by new connectivity, vendors, and technologies...RiskLocal areaRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security Engineer, DLP & Insider Risk. Be the first to apply!





