Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Information Security Engineer [Remote]

Full-time

Moonpay

Remote
  • Remote job

About MoonPay

MoonPay is for builders with something to prove.

This isn't a "work on cool crypto stuff" company. It's a high-standards, high-velocity, high-accountability company building the operating system for value movement. If the internet moves information, we move value: crypto, stablecoins, tokenized assets, and whatever comes next. Four offerings make that real: fund, tokenize, trade, and spend. 30M+ customers and 500+ ecosystem partners run on us. Licensed in the U.S. Regulated across the UK, EU, Canada, and Australia.

AI is the default operating mode here. It's woven into every role, and we expect you to use it daily. It handles the manual work so you can deliver on what actually matters.

You'll thrive here if outcomes excite you more than process, if impact motivates you more than titles, and if you want hard problems, real ownership, and teammates who love winning, building, and doing it together.

The bar is high. The pace is real. We're building for what's next, for humans and agents.

Recent recognition:
[Forbes' America's Best Startup Employers 2026 .]( 2nd in Crypto Services on [Fortune's inaugural Crypto 100](
[The Sunday Times Best Places to Work]( two years running.

Research has shown that women are less likely than men to apply for this role if they do not have experience in 100% of these areas. Please know that this list is indicative, and that we would still love to hear from you even if you feel that you are only a 75% match. Skills can be learned, diversity cannot. __

Locations Supported

  • India, Bengaluru
Relocation available: No Work pattern:
  • This role will be in the office.
  • On-site 5 days per week.
  • Working hours: 12:00 to 9:00 PM IST
*

About the Opportunity

The Security Operations (SecOps) team at MoonPay is dedicated to ensuring the security and integrity of our systems and data in an increasingly complex digital landscape. Comprising a diverse group of professionals from various regions around the globe, our multicultural team brings together a wealth of expertise and perspectives to tackle security challenges effectively.

Our mission is to identify and mitigate vulnerabilities and threats while maintaining strict compliance with security policies and relevant regulations. By leveraging advanced security measures and proactive threat detection techniques, we work diligently to safeguard our infrastructure and protect our customers’ information.

In collaboration with the IT team and other departments, we foster a culture of security awareness, sharing best practices and ensuring that everyone at MoonPay understands their role in maintaining a secure environment.

Our key responsibilities include incident response, security monitoring, endpoint security, VPN, vulnerability management, data leak protection and third-party risk management (TPRM), all of which contribute to our overarching goal: to create a secure environment for our employees, clients and partners.

Join us in our commitment to security excellence and help us build a safer future in the blockchain and payments industry!

*

What You Will Do

We are looking for an Information Security Engineer, SaaS & Integration Security, to join our Information Security team, focused on securing our internal SaaS ecosystem, third-party integrations, APIs, and automation workflows. In this role, you will own the security review process for new SaaS applications and integrations end to end, build out threat modeling and secure design practices across the integration lifecycle, and contribute to incident response for SaaS and identity-related events. You are a hands-on individual contributor who is comfortable working across technical tooling, process development, and cross-functional collaboration.

  • SaaS and integration security

  • Set and maintain security standards for SaaS apps, integrations, APIs, plugins, and automation platforms.

  • Assess new applications and integrations before approval, reviewing architecture, data flows, and trust boundaries.

  • Evaluate OAuth scopes, tokens, service accounts, webhooks, extensions, and marketplace apps for excessive permissions, cross-tenant exposure, and unauthorized access.

  • Define approved security patterns for APIs, non-human identities, and automation workflows.

  • Assess AI assistants and third-party AI integrations accessing company systems.

  • Detects and reduces shadow IT and unsanctioned SaaS-to-SaaS connections.

  • Threat modeling and secure design

  • Facilitate risk-based threat modeling for SaaS apps, integrations, APIs, scripts, and internal tools.

  • Identify trust boundaries, abuse cases, and sensitive-data exposure; ensure risks have owners, mitigations, and timelines.

  • Provide secure design alternatives when proposed solutions create unacceptable risk.

  • Maintain reusable threat models and review checklists for common integration patterns.

  • Script and automation security

  • Review Python, JavaScript, shell, and low-code/no-code automations for secrets handling, injection risks, unsafe data processing, and excessive permissions.

  • Promote centralized secrets management, short-lived credentials, and least privilege.

  • Build automated checks for exposed secrets and insecure configurations.

  • Provide clear remediation guidance to engineers and automation owners.

  • Perform targeted testing of integrations, APIs, identity flows, and configurations.

  • Vendor / Third-Party Security

  • Conduct vendor and third-party security assessments, evaluating risk posture and reviewing security questionnaires.

  • Review vendor documentation (SOC 2 reports, pen test summaries) as part of the SaaS approval process.

  • Assess third-party access to company systems and data, including sub-processor risk.

  • Reassess vendor risk over time as scope or posture changes.

  • Partner with Legal and Privacy on contractual security requirements.

  • L2 Incident Response (Operational Role)

  • Monitor SaaS environments for suspicious activity, unauthorized integrations, and data-leakage risks

  • Actively participate in Security Operations activities as an L2 Incident Responder.

  • Lead incidents through all stages: identification, containment, eradication, recovery, and lessons learned. 

  • Serve as the primary point of contact for the SOC regarding SIEM investigations, platform behavior, detection logic, and operational troubleshooting.

  • Support continuous improvement by translating incident learnings into better detections, dashboards, and playbooks.

*

About You

Describe the ideal candidate’s qualifications, skills, experience, and behaviours that show strong culture alignment. You’re an Information Security Engineer who can both build and operate at scale. You have strong expertise in DLP and are equally comfortable with leading incident response. You will be working primarily on the following stack: Apple systems, Google Workspace, Slack, Mimecast Code42, Okta, Crowdstrike, Cloudflare WARP, Tenable Nessus and Jamf Pro. Must-have experience and skills
  • Experiences
  • 3+ years in SaaS security, application security, cloud security, or a related defensive security role
  • Experience conducting technical security reviews and risk-based threat modeling
  • Track record of assessing third-party integrations, APIs, and vendor risk before adoption
  • Experience validating security findings and driving remediation with engineering/business teams
  • Cybersecurity Principles
  • Strong grasp of least privilege, defense in depth, and trust boundary analysis
  • Solid understanding of identity and access concepts: OAuth, SAML, OIDC, SSO, MFA
  • Familiarity with common integration risks: excessive permissions, cross-tenant exposure, insecure data flows, injection, credential exposure, supply-chain compromise
  • Working knowledge of frameworks such as OWASP, MITRE ATT&CK, NIST, or CIS Controls
  • Technical Proficiency
  • Ability to read and review scripts in Python, JavaScript, or shell for security weaknesses
  • Understanding of secrets management, short-lived credentials, and secure API design
  • Hands-on experience securing identity and productivity platforms such as Okta, Google Workspace, and Google Cloud Platform
  • Experience assessing security and access controls in collaboration/SaaS tools such as Linear, Slack, Notion, Intercom, and Atlassian (Jira/Confluence)
  • Comfort building or using automated checks/tooling to detect exposed secrets, misconfigurations, or permission risks across a SaaS-first stack
  • Analytical Skills
  • Excellent analytical and problem-solving abilities.
  • Crisis Management
  • Ability to work effectively under pressure.
  • Capable of handling multiple incidents simultaneously.
  • Communication
  • Strong communication and interpersonal skills to collaborate with various teams.
Nice-to-have experience
  • Education
  • Bachelor's degree in Computer Science, Information Security, or a related field. Equivalent work experience will be considered.
  • Security Frameworks
  • Experience with frameworks such as ISO 27001, SOC 2, and PCI-DSS.
  • Responsible for defining and implementing key security controls. 
  • Incident Response
  • Practical incident response experience including triage, investigation, containment, and communications.
  • Vulnerability Management
  • Identifying, prioritizing, and automating remediation of security vulnerabilities.
  • Vendor / Third-Party Security
  • Experience conducting vendor and third-party security assessments, including evaluating risk posture, reviewing security questionnaires, and ensuring third parties meet organizational security standards.
*

Bonus Points

Optional extras that would help a candidate stand out (keep this short).
  • Certifications
  • CompTIA Security+, CySA+, CCSP or equivalent certifications are a plus.
  • OSCP, GWAPT are a plus.
  • Technical Proficiency
  • Proven experience with tools such as:
  • Google Workspace / Cloud Platform
  • Okta
  • Slack
  • Intercom
  • Notion
  • Linear
  • Crowdstrike

**__
**

Benefits & Perks

  • Competitive salary package
  • Equity package: financial freedom starts with our employees, so all employees have ownership at MoonPay
  • Pay-for-performance equity bonus: those who drive outsized outcomes receive outsized rewards
  • Moonshot award: we honor exceptional impact. 10 employees twice a year, each earning a $250,000 equity grant
  • Pension: employer contributions from day one
  • Employee referral program: refer great people, earn 10K in USDC
  • Flexible Time Off: choose when to work and when to switch off
  • Birthday leave: take the day off to celebrate you
  • Enhanced parental leave: more time with family, no second thought
  • Hybrid working schedule: work fully remotely or from your nearest Moonbase
  • Commuter benefits: public transport to and from the office
  • Private healthcare benefits: to protect you and your loved ones
  • Wellhub wellness membership: access to gyms, studios, classes, and wellness apps in one membership
  • Unlimited enterprise access to the latest AI tools: Claude, ChatGPT, Gemini and whatever's next
  • Lunch credit: meals covered on the days you're in the office
  • Home office setup allowance: build the home office of your dreams
  • Remote working allowance: those working fully remotely get a little extra for utilities
  • Monthly product budget and zero-fee crypto transactions
  • $1,000 Annual training budget: we support your learning journey
  • High Potential Program: structured development, mentorship, and stretch opportunities
  • ✈️ Regular remote company offsites: high-impact in-person sessions and hackathons
  • (Ireland) Cycle to Work scheme: tax-efficient bike, gear, and safety kit
  • (UK) EV Salary Sacrifice: lease an electric vehicle through pre-tax salary
Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Information Security Engineer [Remote] in Remote vacancy
  • Job Title: Information Security EngineerLocation: Hybrid role based in Andover, MA with flexibility for remote work. Fast-paced, collaborative...  ...Managed Service Provider (MSP). You bring deep security engineering experience, a strong networking foundation, and the ability... 
    Suggested
    Full time
    Local area
    Remote work
    Work visa

    ALKU

    Andover, MA
    4 days ago
  • $90k - $120k

     ...seek talented, passionate, and committed engineers, technologists, and business leaders to...  ...:Frontline role within the Global Security Operations Center (GSOC) monitoring IT...  ...science or engineering with an emphasis in Information Security or a related field, or equivalent... 
    Suggested
    Remote work
    Worldwide
    Shift work

    Supermicro

    San Jose, CA
    5 hours ago
  • $77.6k - $176k

    Information Security Engineer, SeniorThe Opportunity:Designs, implements, and manages policies and procedures to ensure database and software security. Applies advanced advisory skills or extensive technical expertise with full industry knowledge. Develops innovative solutions... 
    Suggested
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Belcamp, MD
    2 days ago
  • About Keyfactor Our mission is to securely connect the world: humans, machines, and AI. Keyfactor...  ...trust your future with Keyfactor!Title: Information Security EngineerLocation: USA; Remote (...  ...an experienced Information Security Engineer with a strong background in implementing... 
    Suggested
    Remote work

    Keyfactor

    Atlanta, GA
    1 day ago
  • $137k - $287k

    The group you’ll be a part ofThe Global Information Systems Group is dedicated to the success of Lam through providing best-in-class...  ...business objectives.What you’ll doLam Research is looking for a Security Engineer to join our team. The Cloud Security Engineer is responsible... 
    Suggested
    Local area
    Immediate start
    Remote work
    Flexible hours
    2 days per week
    3 days per week
    1 day per week

    Lam Research Corporation

    Fremont, CA
    2 days ago
  • Job SummaryWe are hiring a full-time Cybersecurity Engineer who is technical, dedicated to learning new things, security-minded, has strong initiative, and is able to manage projects autonomously. The Information Security team defends the company’s digital infrastructure... 
    Full time
    Contract work
    Work from home

    Medpace

    Cincinnati, OH
    1 day ago
  • $92k - $211k

    Job SummaryLam Research is seeking an Information Security Engineer to support the engineering, implementation, and ongoing operation of enterprise security platforms. This role is responsible for maintaining and improving security tooling to strengthen the organization... 
    Local area
    Remote work
    Flexible hours
    2 days per week
    3 days per week
    1 day per week

    Lam Research Corporation

    Fremont, CA
    4 days ago
  •  ...leadership position that will allow you to shape the future of security across the Internet? Do you thrive on working with a...  ...and original research.Lancope is looking for a full time Information Security Engineer for Lancope's Threat Intelligence Team. Analysts in this... 
    Full time
    Remote work

    CISCO Systems

    Alpharetta, GA
    1 day ago
  • $91.7k - $163.7k

     ...infrastructure-as-code practicesPartner with security architecture, enterprise infrastructure...  ...:High School Diploma/GED4+ years of information security experience with a primary...  ...Access Management (PAM)3+ years of hands-on engineering and administration experience with... 
    Minimum wage
    Full time
    Work experience placement
    Local area
    Remote work

    UnitedHealth Group

    Eden Prairie, MN
    4 days ago
  • POSITION OVERVIEWThe Senior Information Security Engineer - OT/IoT Security is responsible for leading the design, implementation, and ongoing management of cybersecurity controls across QTS operational technology (OT), industrial control systems (ICS), and IoT environments... 
    Remote work

    Quality Technology Services

    Suwanee, GA
    5 hours ago
  • We are seeking a highly experienced and skilled Senior Information Security Engineer to join our IT Security organization in our Worcester, MA office or remote work arrangement.POSITION OVERVIEW: The Senior Information Security Engineer (SIEM & IDS/IPS Administrator) is... 
    Full time
    Work at office
    Remote work

    The Hanover Insurance Group

    Worcester, MA
    3 days ago
  • $95k - $115k

     ...and we’re looking for driven individuals to join our team. That’s where you come in!Base Pay Range:$95,000-$115,000As an Information Security Engineer, your essential job functions will include the following:Key Responsibilities:    Vendor Risk Assessment Management (25%... 
    Full time
    Work experience placement
    Remote work

    Dealer Tire

    Cleveland, OH
    5 hours ago
  • $135k - $200k

    Washington, D.C.Information Security /Full-time /HybridA World-Changing CompanyPalantir builds the world’s leading software for data-driven decisions...  ...children, and more.The RoleAs an Information Security Engineer, you are responsible for the security of Palantir’s people... 
    Full time
    Work experience placement
    Work at office
    Remote work
    Work from home
    Relocation package

    Palantir Technologies

    Washington DC
    1 day ago
  • $92.4k - $159.13k

     ...for older adults, grounded in purpose, accountability, and respect for the people and communities we serve.The Job:The Information Security Engineer is responsible for safeguarding the organization's digital assets and information systems by implementing, monitoring, and... 
    Full time
    For contractors
    Work at office

    SCAN Health Plan

    Long Beach, CA
    4 days ago
  • $72.8k - $130k

     ...on a global scale. Join us to start Caring. Connecting. Growing together. We are seeking a proactive and detail-oriented Information Security Engineer with a strong focus on triage and user support. This role is critical in our front-line defense, responsible for quickly... 
    Minimum wage
    Full time
    Work experience placement
    Local area
    Remote work

    UnitedHealth Group

    Eden Prairie, MN
    1 day ago
  • $92.7k - $120.5k

     ...incredible benefits, and work/life balance; we believe you will feel the Affinity Plus difference. Position Summary The Information Security Engineer plays a key role in protecting Affinity Plus Federal Credit Union from cybersecurity threats by designing, implementing,... 
    Full time
    Live in
    Immediate start
    Home office
    Monday to Friday
    Flexible hours

    Affinity Plus Federal Credit Union

    Saint Paul, MN
    2 days ago
  • $91.7k - $163.7k

     ...Connecting. Growing together. The Imprivata EAM Engineer / Imprivata EAM Administrator is...  ...organization in deploying and maintaining secure, efficient, and reliable authentication...  ...:8+ years of experience with Information Technology delivery or support experience... 
    Minimum wage
    Full time
    Work experience placement
    Local area
    Remote work

    UnitedHealth Group

    Eden Prairie, MN
    1 day ago
  • $110k - $150k

    Lafayette, COTechnology - IT /Full-time - Remote /RemotePosition Description:KPA is seeking a Senior Information Security Engineer to serve as the senior technical counterpart to the Director of Security & Technology. This role owns KPA's security platforms, cloud security... 
    Full time
    Remote work

    KPA

    Lafayette, CO
    1 day ago
  • $89.01k - $151.3k

     ...McKinstryMcKinstry is actively integrating artificial intelligence across our business and client solutions—and we’re looking for an Information Security Engineer to help ensure this adoption is secure, responsible, and defensible.This role sits at the intersection of AI security,... 
    Work at office
    Remote work
    Visa sponsorship

    McKinstry Co.

    Seattle, WA
    3 days ago
  • $92k - $211k

     ...group you’ll be a part ofThis position will be part of Lam Information Security’s Application Security team, supporting Secure SDLC, product...  ...applications and AI-enabled solutions, and support engineering teams in delivering secure software with appropriate controls... 
    Work experience placement
    Local area
    Remote work
    Flexible hours
    2 days per week
    3 days per week
    1 day per week

    Lam Research Corporation

    Fremont, CA
    3 days ago
  • $145k - $200k

    Washington, D.C.Information Security /Full-time /HybridA World-Changing CompanyPalantir builds the world’s leading software for data-driven...  ...hunting pipelines around Kerberos ticket anomalies, or reverse-engineered a novel persistence mechanism in a Windows kernel driver,... 
    Full time
    Work experience placement
    Work at office
    Remote work
    Work from home
    Relocation package

    Palantir Technologies

    Washington DC
    1 day ago
  •  .... Florida Crystals is headquartered in West Palm Beach, Florida. Learn more at .OVERVIEWThe Principal IT Security Engineer reports to the Sr. Manager of Information Security and serves as the technical lead for securing the company's enterprise IT environment across data... 
    Local area
    Remote work

    ASR Group

    West Palm Beach, FL
    1 day ago
  •  ...$150kOur client, a fiber-optic infrastructure and connectivity provider, is looking for a skilled and experienced Staff Information Security Engineer to join their technology team. Information security plays a critical role in protecting the confidentiality, integrity,... 
    Full time
    Work at office
    Remote work
    Flexible hours
    2 days per week

    Motion Recruitment

    Charlotte, NC
    1 day ago
  • $156k - $255k

     ...Mountain View office location. About the Team LinkedIn’s Information Security organization protects our members, data, and platforms by...  ...controls, detecting threats early, and partnering across engineering to reduce risk at scale. The Detection Engineering team... 
    Full time
    For contractors
    Work experience placement
    Work at office
    Remote work
    Work from home
    Flexible hours

    LinkedIn

    Mountain View, CA
    2 days ago
  • $191k - $286k

    General Information Job Title Senior Staff Information Security Engineer Job ID 17214 City Exton State/Province Pennsylvania Date Posted 24-Apr-2026 Job Category Engineering Job Subcategory Cyber Security Engineering Hire Type... 
    Remote work

    ANSYS

    Exton, PA
    4 days ago
  • $105k - $110k

     ...About the job Information Security Engineer Job Title: Information Security Engineer - Security Automation and Response Primary Location: Remote Position Type: Direct Hire Overview: TalentFish is casting a line for an Information Security Engineer... 
    Work experience placement
    Remote work
    Visa sponsorship

    Gulf Coast Automation Group LLC

    Chicago, IL
    5 days ago
  •  ...Information Security EngineerUnder the supervision of the Director of IT - Engineering, the Information Security Engineer develops and implements security standards and best practices to protect GPA's virtual data resources. The Information Security Engineer installs,... 
    Work at office
    Remote work

    Georgia Ports Authority

    Savannah, GA
    1 day ago
  •  ...Seeking a mid-level Information Security Engineer, this remote role will manage vulnerabilities across SaaS products and infrastructure, lead SOC 2 compliance efforts, and enhance security posture in Microsoft Azure while collaborating with cross-functional teams. Key... 
    Remote work

    Virtual Vocations Inc

    United States
    2 days ago
  •  ...Akkodis Sr. Recruitment Consultant I @ Akkodis (GRC) Connecing people with great opportunities Akkodis is seeking an Information Security Engineer for a Contract To Hire position based in Kansas (Remote 100%). We’re ideally looking for applicants with solid... 
    Contract work
    Local area
    Remote work

    Akkodis

    New York, NY
    1 day ago
  • 1 week ago Be among the first 25 applicants Job Title - Information Security Engineer - Vulnerability Management III Location – Remote (Someone from EST only) Duration – 12 months contract Candidate should be in below EST locations only. Must Have Strong Experience with... 
    Full time
    Contract work
    Remote work
    Worldwide
    Afternoon shift

    Voto Consulting LLC

    New York, NY
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Information Security Engineer [Remote]. Be the first to apply!