Senior Security Engineer - Automation
$209.66k - $220.7kMoonPay
Join MoonPay's Product Security Squad
MoonPay is a unified payments platform for digital currency. We make it easy for anyone, anywhere, to buy, sell, swap and pay in digital currencies as easy as sending an email. That simplicity is intentional, our focus is reducing complexity so people can participate confidently, without needing to be crypto experts. We power the entire flow between fiat and crypto end to end, with compliance, identity checks, fraud prevention, and settlement all built in. This end-to-end approach reflects how we work internally: with accountability, rigor, and trust built into everything we ship.
Proven at scale, trusted by over 30 million customers and over 500 ecosystem partners, our secure, enterprise-grade platform is driving mainstream crypto adoption worldwide. Behind those numbers are millions of real people and organizations relying on MoonPay every day.
We collaborate with innovative brands and projects to build secure, scalable solutions for a blockchain-powered future. This is an opportunity to help shape systems, not just scale them. And we're committed to doing it right. Fully licensed in the U.S. and regulated across the UK, EU, Canada, and Australia, because trust and compliance are non-negotiable.
But we're just getting started. We've launched a consumer app that makes crypto accessible, intuitive, and usable for everyone, and it's growing fast. We're iterating every day to make it the best it can be.
If you believe financial freedom should be for everyone. If you believe in building a fairer, more open financial system - we want you with us. To build systems that benefit all, we need contributions from all, regardless of background.
Come build the future of payments and the decentralized economy with MoonPay. Let's make financial freedom and autonomy the new normal.
About the Opportunity
Our Product Security Squad is a dynamic blend of proactive defenders and inquisitive problem-solvers. We're dedicated to fortifying our systems through rigorous security reviews, hands-on penetration testing, and proactive threat modelling. We actively manage our Bug Bounty program, ensuring swift response and remediation, and leverage cutting-edge tools like Cloudflare's WAF to build robust defenses. We offer an extensive number of security services to our Engineering teams including cloud security, tailored security advice, threat modelling and penetration testing. Collaboration is key, as we embed security best practices throughout the SDLC. Crucially, we are expanding our capabilities in security automation and vulnerability management, integrating tooling directly into development workflows and driving efficient vulnerability resolution across the organization. We are constantly researching emerging threats, crafting effective mitigation strategies, empowering our engineering teams with comprehensive training, maintaining up-to-date security standards, and leading incident response with precision. We are passionate about fostering a secure environment and contributing to the wider security community.
What You Will Do
- Design, implement, and manage the integration of security tooling (SAST, DAST, SCA, Secrets Scanning) into our CI/CD pipelines.
- Develop and maintain automation scripts and platforms to streamline security processes and workflows.
- Own and operate the end-to-end vulnerability management lifecycle: identification, triage, prioritization, distribution, tracking, and reporting.
- Collaborate closely with engineering teams to ensure timely remediation of identified vulnerabilities and provide guidance on secure coding practices.
- Drive the adoption and implementation of the SLSA framework to enhance supply chain security.
- Continuously evaluate and improve existing security automation and vulnerability management workflows, bringing innovation and ownership to the process.
- Research emerging threats and vulnerabilities, particularly those relevant to our tech stack and development practices, translating findings into actionable detection or prevention mechanisms.
- Develop and maintain documentation for security automation tools, processes, and vulnerability management procedures.
- Assist in triaging and validating findings from various sources, including automated scanners, penetration tests, and bug bounty programs.
- Contribute to security training materials focused on secure development practices and the tools you implement.
- Support incident response activities, particularly where automation or vulnerability data can aid investigation and remediation.
- Champion and execute the security team's automation strategy for cross-functional needs, actively seeking and implementing automation opportunities based on team feedback.
About You
- You have a solid background in software development with demonstrable experience, ideally using languages common in backend or infrastructure development (e.g., Go, Python, Node.js).
- You possess a strong passion for cybersecurity and have transitioned or are keen to focus your career on security automation and vulnerability management.
- You have understanding on security tools like SAST, DAST, SCA, and secrets scanning solutions within a CI/CD environment (here at MoonPay we use Github)
- You understand the principles of vulnerability management, including prioritization frameworks (e.g., CVSS) and remediation tracking.
- You are familiar with the concepts and goals of the SLSA framework or similar supply chain security initiatives.
- You excel at collaborating with technical teams, explaining security concepts and tooling requirements clearly, and driving adoption of new processes.
- You possess strong analytical and problem-solving skills, with an ability to identify inefficiencies and propose automated solutions.
- You are self-motivated, innovative, take ownership of your work, and can operate effectively in a remote, fast-paced environment.
- You will collaborate closely with Application Security and Cloud Security teams to translate their operational needs into actionable automation requirements, taking ownership of implementing related security initiatives.
- Experience working in disruptive technology, FinTech, SaaS, or Crypto sectors is a plus.
- Familiarity with cloud security principles (AWS, GCP) is beneficial.
- Possess a deep understanding of GitHub's functionalities, including advanced features, security settings, and API capabilities.
- Demonstrate strong administrative skills in managing and maintaining GitHub Enterprise environments, including user access, repository management, and organization settings.
- Familiarity with GitHub Actions for workflow automation and security enforcement.
As a key member of our Product Security squad, specifically in the Automation and Vulnerability Management Team, you will focus on embedding security seamlessly into our Software Development Lifecycle (SDLC). You'll be hands-on in building, integrating, and optimizing security automation pipelines, incorporating tools for static analysis (SAST), dynamic analysis (DAST), software composition analysis (SCA), and secrets detection directly into our CI/CD processes. You will champion and manage our vulnerability management program, ensuring vulnerabilities are identified, prioritized, tracked, and remediated efficiently. You'll drive improvements in our supply chain security through initiatives like the SLSA framework. Collaborating closely with engineering teams, you'll automate security workflows, enhance our security posture through innovation, and play a vital role in protecting MoonPay's infrastructure and applications.
$209,664 - $220,699 a year
BLOCK Values
We're looking for people who live our core values, those who strive for excellence and want to leave a lasting legacy on the global financial system. Our values:
- Be Hungry
- Level Up
- Own It
- Crypto Curious
- Kaizen
Research has shown that women are less likely than men to apply for this role if they do not have experience in 100% of these areas. Please know that this list is indicative, and that we would still love to hear from you even if you feel that you are only a 75% match. Skills can be learnt, diversity cannot.
Benefits & Perks
Competitive salary package
Equity package: We believe financial freedom starts with our employees, so all employees have ownership at MoonPay
Pay for performance equity bonus: Those who drive outsized outcomes receive outsized rewards
Moonshot award. We honor exceptional impact - 10 employees twice a year, each earning a $250,000 equity grant.
Unlimited holidays: We give you the autonomy to choose when to work (and when to switch off)
Hybrid working schedule: Work fully remotely or your nearest Moonbase, the choice is yours
Private Healthcare benefits: To protect you and your loved ones
Enhanced parental leave: So you can spend more time with your loved ones without a second thought
Annual training budget: We support your training journey every step of the way
Home office setup allowance: Create the home office of your dreams
Remote working allowance: Those working fully remotely get a little extra for utilities
Monthly budget to spend on our products
- ...leading fintech company in the United Kingdom seeks a security operations expert to enhance incident response and... ...role involves responding to security incidents, automating processes, and collaborating with engineering teams to foster a security-first culture. The ideal...Senior
- ...A premier asset management firm seeks a Security Operations professional to enhance process efficiency and leverage AI integration in their operational workflows. The ideal candidate will have over 10 years experience in security operations and be skilled in Python, with...SeniorRemote work
- A regulated crypto platform is seeking a Security Engineer to build and maintain security automation and tooling. The role involves conducting application security assessments and managing the vulnerability lifecycle. Candidates should have 3+ years of experience in security...SeniorWork at officeRemote work
- ...A leading cloud technology company is looking for a Cloud Security Engineer to enhance the security of its multi-cloud environments. In this role, you will design and implement automated security controls and assist in hardening infrastructure. Candidates should have...Senior
$355k
...Bridgewater Associates Referrals is seeking a Senior Security Engineer with a passion for security, software engineering, and automation. You will build secure platforms and ensure safety in software delivery. Responsibilities include securing CI/CD pipelines and collaborating...SeniorRemote work- ...A leading fintech company in the U.S. is seeking a Senior Infrastructure Security Engineer with a strong focus on cloud security, particularly within Google Cloud Platform (GCP). The ideal candidate must have at least 8 years of experience and skills in GCP and Azure....SeniorRemote workFlexible hours
- ...Insight Global Technologies is seeking a Senior Enterprise Systems & Security Applications Engineer to design and maintain enterprise applications and automation platforms, focusing on security tools, cloud applications, and integrations. The ideal candidate must have...SeniorRemote work
$160k - $240k
A leading financial services firm is seeking a Senior Software Engineer to manage and automate network infrastructure. This role focuses on building scalable solutions and enhancing observability for global network support. Candidates should have experience in Python and...Senior$168k - $195k
...services and ensures the necessary IT risk management and security measures are in place and aligned with enterprise... ...The Role We are seeking a highly skilled Senior Cyber Security Engineer - SIEM and Automation to lead and enhance our detection engineering capabilities...SeniorWork at officeLocal areaImmediate startRemote workRelocation- ...A tech consulting firm is looking for a Sr. Infrastructure Security Engineer to develop and enhance security systems across AWS, GCP, and... .... This remote role requires expertise in cloud security and automation, with responsibilities including architecting security systems...SeniorRemote work
- ...A fast-growing fintech company in the U.S. is seeking a Senior Security Engineer to enhance security within their innovative platform. This remote role involves leading security initiatives across application and cloud environments, conducting vulnerability assessments...SeniorRemote work
- ...You'll be the force multiplier for a security team that needs to operate like it's three... ...pipelines to tune, lifecycle workflows to automate, and security tooling to integrate... ...-of-concept scripts ~ Strong software engineering skills in Python, TypeScript, or Go - you...Work at officeImmediate startRemote workRelocation package
- Jobright.ai is hiring a proactive IT Support Specialist to maintain seamless IT experience for its remote workforce. This role involves providing Tier 1 and Tier 2 support for users on MacBooks, managing user accounts, and ensuring compliance across the organization. The...Work at officeRemote work
- ...GitLab is seeking a Senior Corporate Security Engineer to enhance security across endpoints in an all-remote environment. The role focuses on architecting... ...Terraform and Jamf Pro. The ideal candidate will drive automation, manage security configurations, and mentor fellow...Remote work
- ...A leading learning technology firm is seeking a Security Engineer to enhance security measures within their cloud-based systems. You will work on automating security processes, lead incident responses, and mentor team members in secure coding practices. Ideal candidates...Remote work
- ...Senior Security Engineer, Security Incident Response Team (SIRT) Remote, US GitLab is the intelligent orchestration platform for DevSecOps.... ...capabilities, and help scale security operations through automation and intelligent workflows. Operating within a 24/7 global...SeniorRemote work
- ...Overstory is looking for a talented Senior Security Engineer to enhance the company's security and compliance posture. The ideal candidate will lead security initiatives across vulnerability management, compliance, and security operations while collaborating with various...SeniorRemote workFlexible hours
$195k - $240k
...Datadog, we think about offensive security a little bit differently. We embrace automation and AI to run adversary... ...environment, and we expect our offensive engineers to build the tooling that makes... ...possible. We're looking for a Senior Security Engineer who can execute...SeniorWork at office$145k - $155k
...Thrive is seeking a Security Engineer to join their Offensive Security team in the United States. This role involves vulnerability management, penetration testing, and client relationship management. Ideal candidates will possess strong understanding of network protocols...Senior$100k - $160k
...A cybersecurity firm is looking for a Senior/Principal Federal Security Engineer experienced in managing detection, response, and vulnerability issues... ...detection frameworks, incident response, and developing automated playbooks. This position offers a competitive salary...Senior$167.5k - $226.3k
...Senior Security Engineer (AI Security) New York, New York Apply Who We Are At Justworks, you’ll enjoy a welcoming and casual environment... ...(AWS) environment ~ Experience with scripting and automation using languages such as Python, Ruby or Javascript. ~ Proven...SeniorCasual workWork at officeLocal area- ...Sum Theory, Inc. is seeking a Senior Cybersecurity Engineer to lead endpoint management services. This remote part-time role involves designing... ..., and overseeing operational excellence in endpoint security and automation. The successful candidate will collaborate with...SeniorPart timeRemote work
- ...A leading restaurant technology provider is seeking a Staff Security Engineer (Blue Team) to act as the technical lead for cybersecurity initiatives. This role involves guiding the Blue Team, enhancing information protection, and managing incident detection and response...SeniorRemote work
- Job Title For positions that will be based in NY, the annual salary range for this position is below. Actual salaries may vary based on numerous factors including, among other things, an individual applicant's experience and qualifications for the position. This range...Senior
- ...A leading technology staffing company is seeking a Senior Information Security Engineer to maintain and evolve security monitoring processes. The role is fully remote and requires strong skills in Python and Bash scripting, with 6+ years in Information Security or related...SeniorRemote work
- ...A rapidly-growing technology company in the United States is seeking a Senior Security Engineer to enhance the security of their SaaS platform and infrastructure. The ideal candidate has a strong background in secure software development, risk assessment, and compliance...SeniorRemote work
$235k - $255k
...WeightWatchers is looking for a Senior Security Engineer - Detection and Response to join their remote team. In this role, you will build and enhance a detection and response program, collaborate with multiple teams to secure infrastructure, and mentor others on security...SeniorRemote work- ...A cybersecurity firm seeks a Senior Security Engineer specializing in Application Security for Agentic AI systems. This role involves conducting security assessments, developing prompt injection techniques, and engaging with clients on AI security concepts. Applicants...SeniorRemote work
$150k - $200k
...About the role This is an opportunity to join K's critical InfoSec team as a Senior Security Engineer and operate with foresight in protecting our infrastructure, applications, cloud security, and customer trust. As a lean team, we span across multiple areas such...SeniorFull timeLocal area- ...A leading data streaming company in the United States is seeking an experienced security engineer to join their infrastructure security engineering team. This role focuses on threat detection and response, collaborating with engineering teams to enhance security across...Senior
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Security Engineer - Automation. Be the first to apply!
- staff security engineer New York, NY
- senior application security engineer New York, NY
- sr information security engineer New York, NY
- security engineering manager New York, NY
- security operations engineer New York, NY
- cloud security engineer New York, NY
- azure security engineer New York, NY
- endpoint security engineer New York, NY
- physical security engineer New York, NY
- systems security engineer New York, NY

