About the company
MoonPay is the worldās leading web3 infrastructure company. We provide end-to-end solutions for payments, enterprise-scale smart contract development, and digital asset management. Many of the worldās most iconic brands rely on MoonPay to power their web3 strategies and ideas.
Job Summary
What you will do
šPerform Threat Modelling of architectural infrastructure changes and new cloud infrastructure and Kubernetes deployments in GCP. šDesign, implement, and manage robust security controls and configurations for our GCP environments. šDevelop and maintain secure Infrastructure as Code (IaC) using Terraform and tools šImplement, manage, and enhance Cloud Security monitoring using DataDog, including alert configuration, response procedures and not just rely on out of box (OOTB) rules šImplement and manage Just-in-Time (JIT) access solutions for elevated privilege access to cloud resources. šEstablish and manage the cloud incident management process and program, including leading incident response activities for cloud security events. šCollaborate with infrastructure and development teams to integrate cloud security best practices throughout the infrastructure lifecycle. šResearch and evaluate emerging cloud security threats and vulnerabilities, and develop effective mitigation strategies šDevelop and deliver cloud security training and awareness programs to engineering and relevant teams. šContribute to the development and maintenance of cloud security standards, policies, and documentation, ensuring they are up-to-date. šManage the future of our cloud security posture, driving continuous improvement and strategic initiatives šAccurately document cloud security configurations, processes, and knowledge, and effectively disseminate this information to other teams. šConduct vulnerability assessments and drive remediation for cloud infrastructure. šSupport requirements and evidence requested from auditors, compliance and regulators
What you'll be working on
šAs part of our Cloud Security team, you'll be instrumental in designing, building, and maintaining the security of our cloud platform (GCP). You'll conduct in-depth threat models of cloud architecture, ensuring robust defences are implemented from the outset. You'll actively manage and enhance our cloud security posture using tools like DataDog and automate security controls with Terraform. You'll be responsible for implementing and managing JIT access controls and establishing our cloud incident response framework. You'll collaborate closely with infrastructure and engineering teams, integrating cloud security seamlessly into their workflows.
The crypto industry is evolving rapidly, offering new opportunities in blockchain, web3, and remote crypto roles ā donāt miss your chance to be part of it.