IT Security Engineer
Job type: Full Time · Department: Infrastructure · Work type: Remote
Europe; Middle East
Relay is a cross-chain payments protocol that provides instant, low-cost cross-chain bridging, swaps, and transactions. We're the fastest and cheapest way to bridge and transact across chains, serving over 5 million users who have completed 59+ million transactions with $6+ billion in volume across 85+ chains.
Our company mission is to make transacting across chains as fast, cheap, and reliable as online payments. We are building the core infrastructure to abstract chains from end user payments, enabling the next billion users to experience the benefits of blockchain without the UX burdens.
Relay is scaling and we’re looking for someone who’ll be someone dedicated to the operational layer: device management, identity and access management, and the compliance infrastructure that makes us trustworthy at scale.
In this role, you'll help to design and deploy our MDM strategy, manage access across our tool stack, and lead identity management initiatives. You will champion internal systems and help build the policies that govern how the whole company works.
Right now, we are targeting candidates who work in UTC through UTC+ 5 time zones. Occasional on-call hours will be required.
Build and operate our device fleet
Design and deploy our MDM solution, including platform selection, policy configuration, device enrollment, and secure configurations
Enforce device security standards: full-disk encryption, approved software lists, network access controls, and automatic lock policies
Own device lifecycle and equipment policy for company-provided laptops
Support new hire IT setup and workstation provisioning end to end
Own identity and access management
Manage access provisioning and deprovisioning across Google Workspace, Slack, AWS, GitHub, and other internal tools
Enforce SSO and MFA policies across the stack; identify and close gaps where access bypasses SSO
Work cross-functionally with HR, Finance, and Engineering to integrate SSO across their respective tool stacks (HRIS, payroll/finance systems, engineering tooling)
Own contractor access lifecycle: identity verification, provisioning, and revocation
Maintain a current inventory of who has access to what
Drive Security Operations
Lead incident response during your time zone: triage, pull in the right people, and drive clear communication through to resolution
Aggregate logging into a central solution, and use AI-assisted tooling to review logs and proactive threat hunting
Partner with engineering to prioritize and track vulnerability findings, whether from internal tooling, third-party audits, or dependency scans, against defined severity-based SLAs
Coordinate on policy documentation and own the operational controls including access reviews, device compliance, and onboarding and offboarding checklists
Establish IT operations infrastructure
Be the first point of contact for internal IT issues and security questions across the team
Implement and manage an Identity Provider
Build runbooks and playbooks for common IT and access management workflows
Coordinate on policy documentation and own operational controls, including access reviews, device compliance, and onboarding/offboarding checklists
Stay abreast of industry best practices and emerging technologies
You've built Security Operations at a startup before, ideally, you’ve also operated in a regulated industry
You operate under a breach mentality and implement zero trust systematically.
You communicate clearly with non-technical stakeholders and can explain security tradeoffs without making people feel judged
You're organized and process-oriented, and you rigorously build documentation and workflows
You're excited about crypto and the unique security environment it creates: high-value systems, smart adversaries, and a global distributed team
Must-have
5+ years in IT/Security operations, or a closely adjacent role
Hands-on experience deploying and managing MDM platforms (Jamf, Kandji, Workspace ONE, or similar)
Experience managing identity and access at scale: SSO configuration, MFA enforcement, directory management (Google Workspace, Okta, or similar)
Working knowledge of compliance frameworks and what it takes to implement adequate security controls
Cloud access and security fundamentals (AWS, Google Cloud, or equivalent)
Experience building and maintaining contractor access policies and device compliance programs
Nice to have
Experience deploying remote desktop environments.
Background in crypto/Web3 or fintech with similar compliance pressures
Experience at a company scaling from 50 to 100+ employees
Familiarity with MacOS and Apple Products
Competitive base salary
Equity package
Comprehensive health benefits
Unlimited PTO policy with encouraged minimum
Remote-first culture with emphasis on collaboration, communication, and flexibility
Autofill from resume
Save time by uploading your resume. (Only PDF or DOCX format supported)