
Coinbase · Remote - UK
Ready to do the most impactful work of your career? At Coinbase, we are uncompromising on our mission to increase economic freedom. The bar is high, the environ...
Ready to do the most impactful work of your career? At Coinbase, we are uncompromising on our mission to increase economic
freedom. The bar is high, the environment is intense, and we like it that way. This isn't a place for complacency, it’s a place to
be pushed past your perceived limits. If you're ready to build the future of finance alongside people who refuse to settle for
"good enough," you belong here. Coinbase is a remote-first, but not remote-only company. Expect to get together quarterly for
intense in-person working sessions called “surges.” learn more about working at Coinbase.
As a Risk & Monitoring Analyst IV on the Operational Risk and Controls (ORC) team within Global Financial Crimes Operations
(GFCO), you'll own quality assurance reviews of TMS investigations that support Coinbase's AML/CFT program. You'll strengthen
consistency in case execution, surface procedural gaps, and partner across Operations, Compliance, Analytics, and Learning &
Development to turn quality insights into measurable operational improvements.
across priority compliance areas.
complex procedural requirements.
training, and procedural updates.
opportunities to senior stakeholders.
performance.
financial services environment.
reviewing complex investigations.
stakeholders (proficiency in Google Sheets/Excel and Google Slides/PowerPoint).
leaders across multiple regions.
improvements in workflow efficiency, cost, and quality.
Pay Transparency Notice: The target annual base salary for this position can range as detailed below. Total compensation may also
include equity and bonus eligibility and benefits (including medical, dental, and vision).
employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability,
protected veteran status, or genetic information. Applicants with criminal histories will be considered consistent with
applicable federal, state, and local laws.
contact info at accommodations[at]coinbase.com. Need screen reading technology? Click here to download a free compatible screen
reader and view the tutorial.
submitting your application, you agree to Arbitration of Disputes.
Ready to do the most impactful work of your career? At Coinbase, we are uncompromising on our mission to increase economic freedom. The bar is high, the environment is intense, and we like it that way. This isn't a place for complacency, it’s a place to be pushed past your perceived limits. If you're ready to build the future of finance alongside people who refuse to settle for "good enough," you belong here. Coinbase is a remote-first, but not remote-only company. Expect to get together quarterly for intense in-person working sessions called “surges.” learn more about working at Coinbase. As a Risk & Monitoring Analyst IV on the Operational Risk and Controls (ORC) team within Global Financial Crimes Operations (GFCO), you'll own quality assurance reviews of TMS investigations that support Coinbase's AML/CFT program. You'll strengthen consistency in case execution, surface procedural gaps, and partner across Operations, Compliance, Analytics, and Learning & Development to turn quality insights into measurable operational improvements. What you'll do: * Review TMS cases against established QA rubrics, including core sampling for regulatory filings (SARs) and risk-based sampling across priority compliance areas. * Lead calibration sessions, office hours, and structured analyst support to drive consistency and deepen understanding of complex procedural requirements. * Conduct root cause analysis on thematic quality issues and translate findings into actionable recommendations for process, training, and procedural updates. * Partner with second line of defense stakeholders and deliver timely, well-supported responses to review and audit findings. * Build and present weekly metrics, dashboards, and trend analyses that highlight risks, performance themes, and improvement opportunities to senior stakeholders. * Train new joiners, validate practice cases, and provide structured feedback to accelerate analyst readiness and quality performance. Required Skills and Experience: * 6+ years of experience in quality assurance, quality control, audit, or financial crime investigations within a regulated financial services environment. * Working knowledge of BSA/AML laws, regulations, and requirements, with demonstrated ability to apply risk-based judgment when reviewing complex investigations. * ACAMS certification or equivalent AML qualification. * Proven experience producing compliance metrics, dashboards, and performance reporting for operational and compliance stakeholders (proficiency in Google Sheets/Excel and Google Slides/PowerPoint). * Track record of presenting QA findings, root cause analyses, and procedural recommendations to senior compliance and operations leaders across multiple regions. * Utilizes generative AI responsibly, maintaining human oversight to deliver business-ready outputs and drive measurable improvements in workflow efficiency, cost, and quality. Pay Transparency Notice: The target annual base salary for this position can range as detailed below. Total compensation may also include equity and bonus eligibility and benefits (including medical, dental, and vision). Annual base salary range (excluding equity and bonus): €67.000—€67.000 EUR * Application Limit: Candidates may submit a maximum of 3 applications within a 6-month period. * Equal Opportunity Employer: Coinbase is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status, or genetic information. Applicants with criminal histories will be considered consistent with applicable federal, state, and local laws. * US Applicants: View Employee Rights, Know Your Rights, and E-Verify Notice of Participation. * Accommodations: If you are an individual with a disability who needs a reasonable accommodation, email us your request and contact info at accommodations[at]coinbase.com. Need screen reading technology? Click here to download a free compatible screen reader and view the tutorial. * Data Privacy & Arbitration: By submitting your application, you agree to our Candidate Privacy Notice. US applicants: By submitting your application, you agree to Arbitration of Disputes.
Senior Security Analyst - GRC (Massy - France) Founded in 2000, Ivalua is a leading global provider of cloud-based procurement solutions. COMPANY OVERVIEW At Ivalua we are a global community of exceptional professionals, who believe that digital transformation revolutionizes supply chain sustainability and resiliency to unlock the power of supplier collaboration. We achieve this through our leading cloud-based spend management platform that empowers hundreds of the world's most admired brands to effectively manage all categories of spend and all suppliers to increase profitability, improve ESG (environmental, social, and corporate governance) performance, lower risk, and improve productivity. Driven by our passions and fueled by our shared ambitions, we empower and challenge each other to create meaningful experiences for our colleagues, customers, partners, and communities. Learn more at www.ivalua.com. Follow us on LinkedIn THE OPPORTUNITY CONTEXT: You will be part of the InfoSec team with a mission to build, maintain, and continuously improve our Information Security program, providing peace of mind and assurance of protection and safety to our customers. Our team is hands-on, with a strong problem-solving mindset, capable of thinking holistically about implementation and providing solutions to address our customers' long-term challenges. We work hard and play hard, enjoying various indoor and outdoor activities organized by the company, allowing you to focus, collaborate, and unleash your creativity. ROLE: We are looking for a Senior Security Analyst to join our InfoSec team. This role will help drive various GRC activities which include supporting prospect and customer security questions, maintaining security policies, supporting security audits and assessments and driving new security certifications/compliance initiatives. WHAT YOU WILL DO WITH US * Lead and support compliance initiatives across global and regional frameworks including SOC 1/SOC 2, ISO 27001, IRAP, PCI-DSS, SecNumCloud, Cyber Essentials Plus (CE+), BSI C5, NIST 800-53 * Evaluate technical controls across the technology stack, including all layers of the TCP/IP model (e.g. network segmentation, firewall rulesets, TLS/SSL configuration, IDS/IPS, access controls, application security, encryption in transit/at rest, cloud security configurations), and translate security requirements into actionable guidance for engineering and infrastructure teams. * Drive and manage customer security audits, security questionnaires, and contract reviews with a primary focus on the EMEA region. Participate in the negotiation and review of French contracts to ensure alignment with security and compliance obligations. * Attend prospect and customer meetings and effectively present Ivalua’s security architecture and control information to them. * Lead or support internal and third party security risk management processes, including risk identification, analysis, scoring, treatment planning, and ongoing monitoring. * Support continuous compliance monitoring activities using manual and automation and GRC tooling to maintain control effectiveness, generate evidence, and ensure audit readiness. * Own execution and coordination of key security and availability controls such as Business Impact Analysis (BIA), Disaster Recovery testing, security incident response exercises, access reviews, etc. YOUR PROFILE If you have the below experience and strengths this role could be for you: Skills and Experience: * At least 4 years of experience as Security Analyst GRC * Strong working knowledge of security, risk, and compliance frameworks (e.g. NIST CSF & 800-53, ISO 27001, SOC, HITRUST, HIPAA, PCI-DSS, GDPR) * Direct experience managing audits, self-assessments, or risk assessments against one or more InfoSec frameworks listed above * Experience performing or supporting security risk management processes (risk assessments, risk registers, business impact analysis) * Familiarity with continuous compliance and monitoring platforms * Good understanding of cloud platforms (Azure, AWS, GCP) and ability to discuss security architecture and control implementation with technical teams * Knowledge and experience working with IT and security personnel as well as security concepts across all layers of technology (network, infrastructure, web applications, cloud environments) * Knowledge of risk and security industry literature and knowledge bases (e.g. OWASP, MITRE ATT&CK, NIST 800-39) * Relevant audit and/or Information Security certifications (e.g. CISSP, CISA, CISM, Azure Cloud Security) are desired * Prior experience at a Big 4 firm or in a security/compliance function in a cloud/SaaS environment is a plus Soft Skills: * Excellent interpersonal, communication, and organizational skills. Ability to communicate efficiently and professionally in both French and English, including in contractual, regulatory, and technical contexts * Demonstrated ability to work across geographically distributed teams and with external vendors, auditors, or regulators. * Strong organizational skills and attention to detail; able to manage multiple competing priorities in a fast-paced environment * High degree of initiative, self-motivation, and ability to work independently with limited supervision WHAT HAPPENS NEXT If your application fits this specific position’s needs, our skilled Talent team will reach out to schedule an initial screening call. Get one step closer to achieving your goals – apply today! Our Talent team will guide you through every step of the interview process - from preparation to completion. They're here to support you! Our recruitment process is designed to assess your competencies through a series of personalized interviews with internal stakeholders relevant to the role. Interviews will be conducted virtually via video or on-site with face-to-face meetings. LIFE AT IVALUA * Hybrid working model (3 days in the office per week) * We're a team dedicated to pushing the boundaries of product innovation and technology * Sustainable Growth, Privately Held * A stable and cash-flow positive Company since 10 years * Snacks and weekly lunches in the office * Feel empowered to pursue your goals with improved team collaboration and increased creativity/productivity * Unlock and unleash your full professional potential with our exceptional training and career development program * Join a dynamic and international team of top-notch professionals who are experts in their respective fields * Collaborate with like-minded individuals who are deeply passionate and highly motivated about their work * Experience a truly diverse and inclusive work environment where your unique contributions are highly valued * Regular social events, competitive outings, team running events, and musical activities * Comparably recognized Ivalua for the following (https://www.comparably.com/companies/ivalua): Powered by People - Powered by You! United by our values we embrace diversity and equity in the broadest possible sense to create an inclusive workplace. To help our customers make supply chains more efficient, sustainable and resilient, we rely on a global team with a variety of backgrounds, skills and views. We believe in equal opportunity and in diversity as a driver of innovation that cultivates a spirit of inclusiveness, creates a productive and fun place to work, and provides fulfilling career opportunities for all Ivaluans. https://www.linkedin.com/company/ivalua/about/ Experience life at Ivalua - check out our captivating video! Gain insight into our unique company culture and get a glimpse of what it's like to work with us. #LI-MV1 #LI-HYBRID
Senior Security Analyst - GRC (Montreal - Canada) Founded in 2000, Ivalua is a leading global provider of cloud-based procurement solutions. COMPANY OVERVIEW At Ivalua we are a global community of exceptional professionals, who believe that digital transformation revolutionizes supply chain sustainability and resiliency to unlock the power of supplier collaboration. We achieve this through our leading cloud-based spend management platform that empowers hundreds of the world's most admired brands to effectively manage all categories of spend and all suppliers to increase profitability, improve ESG (environmental, social, and corporate governance) performance, lower risk, and improve productivity. Driven by our passions and fueled by our shared ambitions, we empower and challenge each other to create meaningful experiences for our colleagues, customers, partners, and communities. Learn more at www.ivalua.com [http://www.ivalua.com]. Follow us on LinkedIn [https://www.linkedin.com/company/ivalua] THE OPPORTUNITY CONTEXT: You will be part of the InfoSec team with a mission to build, maintain, and continuously improve our Information Security program, providing peace of mind and assurance of protection and safety to our customers. Our team is hands-on, with a strong problem-solving mindset, capable of thinking holistically about implementation and providing solutions to address our customers' long-term challenges. We work hard and play hard, enjoying various indoor and outdoor activities organized by the company, allowing you to focus, collaborate, and unleash your creativity. ROLE: We are looking for a Senior Security Analyst to join our InfoSec team. This role will help drive various GRC activities which include supporting prospect and customer security questions, maintaining security policies, supporting security audits and assessments and driving new security certifications/compliance initiatives. WHAT YOU WILL DO WITH US * Lead and support compliance initiatives across global and regional frameworks including SOC 1/SOC 2, ISO 27001, IRAP, PCI-DSS, SecNumCloud, Cyber Essentials Plus (CE+), BSI C5, NIST 800-53 * Evaluate technical controls across the technology stack, including all layers of the TCP/IP model (e.g. network segmentation, firewall rulesets, TLS/SSL configuration, IDS/IPS, access controls, application security, encryption in transit/at rest, cloud security configurations), and translate security requirements into actionable guidance for engineering and infrastructure teams. * Drive and manage customer security audits, security questionnaires, and contract reviews with a primary focus on the EMEA region. Participate in the negotiation and review of French contracts to ensure alignment with security and compliance obligations. * Attend prospect and customer meetings and effectively present Ivalua’s security architecture and control information to them. * Lead or support internal and third party security risk management processes, including risk identification, analysis, scoring, treatment planning, and ongoing monitoring. * Support continuous compliance monitoring activities using manual and automation and GRC tooling to maintain control effectiveness, generate evidence, and ensure audit readiness. * Own execution and coordination of key security and availability controls such as Business Impact Analysis (BIA), Disaster Recovery testing, security incident response exercises, access reviews, etc. YOUR PROFILE If you have the below experience and strengths this role could be for you: Skills and Experience: * At least 4 years of experience as Security Analyst GRC * Strong working knowledge of security, risk, and compliance frameworks (e.g. NIST CSF & 800-53, ISO 27001, SOC, HITRUST, HIPAA, PCI-DSS, GDPR) * Direct experience managing audits, self-assessments, or risk assessments against one or more InfoSec frameworks listed above * Experience performing or supporting security risk management processes (risk assessments, risk registers, business impact analysis) * Familiarity with continuous compliance and monitoring platforms * Good understanding of cloud platforms (Azure, AWS, GCP) and ability to discuss security architecture and control implementation with technical teams * Knowledge and experience working with IT and security personnel as well as security concepts across all layers of technology (network, infrastructure, web applications, cloud environments) * Knowledge of risk and security industry literature and knowledge bases (e.g. OWASP, MITRE ATT&CK, NIST 800-39) * Relevant audit and/or Information Security certifications (e.g. CISSP, CISA, CISM, Azure Cloud Security) are desired * Prior experience at a Big 4 firm or in a security/compliance function in a cloud/SaaS environment is a plus Soft Skills: * Excellent interpersonal, communication, and organizational skills. Ability to communicate efficiently and professionally in both French and English, including in contractual, regulatory, and technical contexts * Demonstrated ability to work across geographically distributed teams and with external vendors, auditors, or regulators. * Strong organizational skills and attention to detail; able to manage multiple competing priorities in a fast-paced environment * High degree of initiative, self-motivation, and ability to work independently with limited supervision WHAT HAPPENS NEXT If your application fits this specific position’s needs, our skilled Talent team will reach out to schedule an initial screening call. Get one step closer to achieving your goals – apply today! Our Talent team will guide you through every step of the interview process - from preparation to completion. They're here to support you! Our recruitment process is designed to assess your competencies through a series of personalized interviews with internal stakeholders relevant to the role. Interviews will be conducted virtually via video or on-site with face-to-face meetings. LIFE AT IVALUA * Hybrid working model (3 days in the office per week) * We're a team dedicated to pushing the boundaries of product innovation and technology * Sustainable Growth, Privately Held * A stable and cash-flow positive Company since 10 years * Snacks and weekly lunches in the office * Feel empowered to pursue your goals with improved team collaboration and increased creativity/productivity * Unlock and unleash your full professional potential with our exceptional training and career development program * Join a dynamic and international team of top-notch professionals who are experts in their respective fields * Collaborate with like-minded individuals who are deeply passionate and highly motivated about their work * Experience a truly diverse and inclusive work environment where your unique contributions are highly valued * Regular social events, competitive outings, team running events, and musical activities * Comparably recognized Ivalua for the following (https://www.comparably.com/companies/ivalua [https://www.comparably.com/companies/ivalua]): Best Company for Diversity 2025 (Large Companies) [https://c4-static.comparably.com/1.492/static/skins/comparably_light/mixins/companies/profile/common/comparably_badges/img/2025/best-diversity-2025-large-branded.svg]Best Company for Women 2025 (Large Companies) [https://c4-static.comparably.com/1.492/static/skins/comparably_light/mixins/companies/profile/common/comparably_badges/img/2025/best-company-for-women-2025-large-branded.svg]Best Company Culture 2024 (Large Companies) [https://c2-static.comparably.com/1.492/static/skins/comparably_light/mixins/companies/profile/common/comparably_badges/img/2024/best-company-culture-2024-large-branded.svg]Best Leadership Teams 2024 (Large Companies) [https://c3-static.comparably.com/1.492/static/skins/comparably_light/mixins/companies/profile/common/comparably_badges/img/2024/best-leadership-teams-2024-large-branded.svg]Best Engineering Teams 2024 [https://c3-static.comparably.com/1.492/static/skins/comparably_light/mixins/companies/profile/common/comparably_badges/img/2024/best-engineering-teams-of-2024-large-branded.svg] Powered by People - Powered by You! United by our values we embrace diversity and equity in the broadest possible sense to create an inclusive workplace. To help our customers make supply chains more efficient, sustainable and resilient, we rely on a global team with a variety of backgrounds, skills and views. We believe in equal opportunity and in diversity as a driver of innovation that cultivates a spirit of inclusiveness, creates a productive and fun place to work, and provides fulfilling career opportunities for all Ivaluans. https://www.linkedin.com/company/ivalua/about/ [https://www.linkedin.com/company/ivalua/about/] Experience life at Ivalua - check out our captivating video [https://www.youtube.com/watch?v=irkygoq3kCc&t=4s]! Gain insight into our unique company culture and get a glimpse of what it's like to work with us. #LI-MV1 #LI-HYBRID