SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
MoonPay is a high-growth fintech company building the operating system for value movement—crypto, stablecoins, tokenized assets, and beyond. With 30M+ customers and 500+ ecosystem partners, the company is licensed in the U.S. and regulated across the UK, EU, Canada, and Australia.
As a SOC Analyst, you'll be a critical frontline defender in the Security Operations Center, working 24×7 rotational shifts to protect the organization against security threats and operational disruptions. This role sits at the intersection of security and operations, requiring you to monitor real-time alerts, investigate suspicious activity, respond to incidents, and support infrastructure operations in a fast-paced environment where multiple security and IT issues converge simultaneously.
Key responsibilities include:
- Monitor real-time security alerts and investigate suspicious network, endpoint, and cloud activity using SIEM queries and threat-analysis tools
- Identify, declare, document, and escalate security incidents following established incident-response playbooks for rapid containment and remediation
- Analyze and remediate email-based threats (phishing, malware, spoofing) and manage endpoint device security through EDR workflows and MDM policies
- Serve as first-line support for IT requests including password resets, account unlocks, hardware provisioning, and application access issues
- Maintain accurate ticket documentation, case notes, and incident summaries; contribute to runbook improvements and knowledge base articles
- Monitor external attack surface including brand-impersonation activity, fraudulent domain registrations, and social-engineering threats
You'll need 2+ years of hands-on SOC, security monitoring, or incident-response experience with demonstrated ability to triage alerts and execute IR procedures. Strong understanding of IT infrastructure (networks, endpoints, identity systems), familiarity with incident-response frameworks (MITRE ATT&CK), and proficiency with ticketing systems (Jira, Linear) are essential. Detail-oriented documentation discipline, proactive problem-solving, and sound judgment about escalation are critical.
Nice-to-have skills include a degree in Cybersecurity/Computer Science, proficiency with Okta, Jamf, Google SecOps, DoControl, Code42, and Cloudflare email security.