About the company
MoonPay is the worldās leading web3 infrastructure company. We provide end-to-end solutions for payments, enterprise-scale smart contract development, and digital asset management. Many of the worldās most iconic brands rely on MoonPay to power their web3 strategies and ideas.
Job Summary
About the role:
As the Product Security Manager, you will play a pivotal role in securing the infrastructure that powers the Web3 economy. You will lead and scale two high-impact teams: Application Security and Vulnerability Management & Automation. Your mission is to ensure that security is woven into the fabric of our product development lifecycle, empowering our engineers to build fast without compromising on safety. You will be a mentor, a strategist, and a leader helping MoonPay maintain its reputation as the most trusted brand in the space.
Responsibilities:
šOversee the day-to-day operations and career development of the Application Security and Vulnerability Management & Automation teams. šDefine the roadmap for product security, focusing on scalable automation and proactive defense mechanisms. šDrive the end-to-end lifecycle of vulnerability discovery, triaging, and remediation across our entire ecosystem. šImprove security tooling (SAST, DAST, SCA) into CI/CD pipelines and lead threat modeling sessions and penetration testing for new features. šPartner with Engineering and Product leaders and help and influence with security topics new business units and acquisitions to prioritize security debt and promote a culture of Security by Design. šLead high-priority security incidents and investigations and improve processes, manage team rotas and escalations. šSupport organisation maintain or acquire new critical certifications such as SOC2, PCI, CIS TOP 18, ISO27001.
Requirements:
šProven track record of managing technical security teams in high-growth, cloud-native environments. šComfortable navigating ambiguity and resolving unclear or evolving topics effectively in a fast-paced environment. šStrong background in application security, penetration testing and software engineering. šExperience building or implementing automated security scanning and reporting tools. šAbility to balance immediate tactical needs with long-term security goals. šCuriosity about (or experience in) blockchain technology, smart contract security, and the unique challenges of the Web3 landscape.
If this role isn't the perfect fit, there are plenty of exciting opportunities in blockchain technology, cryptocurrency startups, and remote crypto jobs to explore. Check them on our Jobs Board.




