IT Security Engineer

Job type: Full Time · Department: Infrastructure · Work type: Remote

Europe; Middle East

About us

Relay is a cross-chain payments protocol that provides instant, low-cost cross-chain bridging, swaps, and transactions. We're the fastest and cheapest way to bridge and transact across chains, serving over 5 million users who have completed 59+ million transactions with $6+ billion in volume across 85+ chains.

Our company mission is to make transacting across chains as fast, cheap, and reliable as online payments. We are building the core infrastructure to abstract chains from end user payments, enabling the next billion users to experience the benefits of blockchain without the UX burdens.

About the role

Relay is scaling and we’re looking for someone who’ll be someone dedicated to the operational layer: device management, identity and access management, and the compliance infrastructure that makes us trustworthy at scale.

In this role, you'll help to design and deploy our MDM strategy, manage access across our tool stack, and lead identity management initiatives. You will champion internal systems and help build the policies that govern how the whole company works.

Right now, we are targeting candidates who work in UTC through UTC+ 5 time zones. Occasional on-call hours will be required.

What you'll do

Build and operate our device fleet

  • Design and deploy our MDM solution, including platform selection, policy configuration, device enrollment, and secure configurations

  • Enforce device security standards: full-disk encryption, approved software lists, network access controls, and automatic lock policies

  • Own device lifecycle and equipment policy for company-provided laptops

  • Support new hire IT setup and workstation provisioning end to end

Own identity and access management

  • Manage access provisioning and deprovisioning across Google Workspace, Slack, AWS, GitHub, and other internal tools

  • Enforce SSO and MFA policies across the stack; identify and close gaps where access bypasses SSO

  • Work cross-functionally with HR, Finance, and Engineering to integrate SSO across their respective tool stacks (HRIS, payroll/finance systems, engineering tooling)

  • Own contractor access lifecycle: identity verification, provisioning, and revocation

  • Maintain a current inventory of who has access to what

Drive Security Operations

  • Lead incident response during your time zone: triage, pull in the right people, and drive clear communication through to resolution

  • Aggregate logging into a central solution, and use AI-assisted tooling to review logs and proactive threat hunting

  • Partner with engineering to prioritize and track vulnerability findings, whether from internal tooling, third-party audits, or dependency scans, against defined severity-based SLAs

  • Coordinate on policy documentation and own the operational controls including access reviews, device compliance, and onboarding and offboarding checklists

Establish IT operations infrastructure

  • Be the first point of contact for internal IT issues and security questions across the team

  • Implement and manage an Identity Provider

  • Build runbooks and playbooks for common IT and access management workflows

  • Coordinate on policy documentation and own operational controls, including access reviews, device compliance, and onboarding/offboarding checklists

  • Stay abreast of industry best practices and emerging technologies

About you

  • You've built Security Operations at a startup before, ideally, you’ve also operated in a regulated industry

  • You operate under a breach mentality and implement zero trust systematically.

  • You communicate clearly with non-technical stakeholders and can explain security tradeoffs without making people feel judged

  • You're organized and process-oriented, and you rigorously build documentation and workflows

  • You're excited about crypto and the unique security environment it creates: high-value systems, smart adversaries, and a global distributed team

Skills and abilities

  • Must-have

    • 5+ years in IT/Security operations, or a closely adjacent role

    • Hands-on experience deploying and managing MDM platforms (Jamf, Kandji, Workspace ONE, or similar)

    • Experience managing identity and access at scale: SSO configuration, MFA enforcement, directory management (Google Workspace, Okta, or similar)

    • Working knowledge of compliance frameworks and what it takes to implement adequate security controls

    • Cloud access and security fundamentals (AWS, Google Cloud, or equivalent)

    • Experience building and maintaining contractor access policies and device compliance programs

    Nice to have

    • Experience deploying remote desktop environments.

    • Background in crypto/Web3 or fintech with similar compliance pressures

    • Experience at a company scaling from 50 to 100+ employees

    • Familiarity with MacOS and Apple Products

What we offer

  • Competitive base salary

  • Equity package

  • Comprehensive health benefits

  • Unlimited PTO policy with encouraged minimum

  • Remote-first culture with emphasis on collaboration, communication, and flexibility

Made with