Back to search
Legend Trading Linkedin · Posted yesterday

Security Analyst

Ireland

Linkedin
Continue to application Add your email once, then Caio opens the original posting.

Indexed description

Location: Dublin, Ireland

This role is remote. Candidates must be based in Ireland.



Welcome to Legend Trading, Pioneers in the Financial Revolution

Legend Trading is a leading global crypto trading and financial services firm, trusted by over 1,000 institutional clients worldwide. We provide institutional liquidity, OTC trading, fiat on/off-ramp, and stablecoin payment services across major markets.

Our Irish entity, Legend Trading Europe, has been officially granted a MiCA licence by the Central Bank of Ireland, marking a key milestone in our expansion across the European Economic Area (EEA). We also have an Electronic Money Institution application in progress.

At Legend Trading, we are innovators shaping the future of finance. With a strong global footprint and institutional-grade infrastructure, we bridge traditional finance and digital assets, offering seamless, regulatory-compliant, and secure solutions to our partners and clients.



About the Role

We are hiring a Security Analyst / Engineer to work alongside the CISO/CIO.

This is a deliberately hybrid role: part analyst, part engineer, and part governance. You will be digging through logs, evidence and telemetry one day, and sitting with engineering on control implementation the next. It is not a pure GRC role and it is not a pure SOC role. We need someone who can move between the two without needing a handoff.

The regulatory context is real rather than theoretical. Legend is a Central Bank of Ireland authorised crypto-asset service provider with an Electronic Money Institution application in progress, which means DORA, MiCA and PSD2 obligations are live and evidenced work, not a policy exercise.

This is a mid-level individual contributor position. You will have direction from the CISO/CIO and genuine autonomy on the work in front of you.


Reporting line: CISO/CIO (PCF-49)


What Makes You Successful in This Role


You are genuinely dual-natured. This is the single thing that decides whether this role works. We are not looking for someone who leans governance with light technical exposure, and we are not looking for someone technical who treats governance as an afterthought. Both sides need to be real, and you should be able to point to work on each.

You are patient with detail-heavy evidence work. Policies, registers, audit trails and control testing are a large part of this job, and they matter here because a regulator will eventually read the output. If paperwork drains you, this is not the right seat.

You investigate rather than monitor. Given a log source and a question, you can work out what actually happened and write it up in a way that stands on its own evidence.

You can take an ambiguous instruction and produce something usable. "Review this log source" and "draft this policy section" are both realistic asks here, and both need you to fill in the gaps yourself and come back with something worth reviewing.

You write clearly for different audiences. The same week you might produce something for an auditor, something for the board, and something for an engineer. Each needs a different register and all three need to be accurate.


Why Join Us

• Sit at the intersection of security engineering and financial services regulation, in a role where both halves are genuinely resourced

• Exposure across a live MiCA authorisation and an EMI application in progress

• Modern stack and real ownership: AWS-native controls, CrowdStrike Falcon, MDM, and a managed SOC partnership you will help shape

• Help build out a fully authorised Irish entity at a formative stage, with a second authorisation in progress

• Work with a team that values integrity, innovation, and excellence


Key Responsibilities

Governance, risk and compliance

Support ongoing DORA, MiCA, PSD2 and ISO 22301 alignment work, including maintenance of the DORA Register of Information and related regulatory submissions

• Assist with evidence collection, control testing and documentation for Central Bank of Ireland authorisation and supervisory engagement

• Maintain and update the information security policy suite, BCMS documentation and BIA materials as the business and regulatory landscape evolve

• Support DPIAs, DSAR responses and other data protection workstreams

• Track audit and regulatory action items through to closure

• Prepare board and regulator facing material under direction from the CISO/CIO

Security analysis and monitoring

Review logs, alerts and telemetry across the environment, including CrowdStrike Falcon, AWS-native controls and MDM, to identify and triage security issues

• Investigate incidents and near misses, and produce clear, evidence-backed write ups

• Perform access reviews, control testing and periodic security health checks

• Maintain and improve detection and monitoring coverage in partnership with the managed SOC

Security engineering

Work directly with engineering teams to implement, tune and validate security controls across cloud configuration, identity, endpoint and network

• Support secure architecture reviews for new products and integrations, including custody and payment flows and third party connections

• Automate recurring security and compliance tasks where manual effort is currently high

• Support vulnerability management: tracking, prioritisation and verification of remediation


Requirements

• Excellent proficiency in English, both written and spoken

• Mid-level experience: enough to work independently on defined tasks and exercise judgement, without having needed to run a full security function

• Demonstrable experience across both security governance and hands-on technical work

• Hands-on comfort with logs, alerts and cloud or endpoint tooling, with the ability to investigate rather than just monitor

• Working knowledge of at least one major framework relevant to financial services: DORA, PCI DSS, ISO 27001, ISO 22301 or GDPR, and the willingness to learn the others on the job

• Clear written communication, including documentation that will be read by auditors, regulators and engineers

• Comfortable with detail-heavy evidence work: policies, registers and audit trails

• Based in Ireland and eligible to work in Ireland


Nice to Have

• Exposure to AWS security controls

• Experience with CrowdStrike or an equivalent EDR or SIEM platform

• Prior work supporting an entity regulated by the Central Bank of Ireland, the FCA or a comparable authority

• Familiarity with MiCA and CASP obligations specifically

• Fintech, payments or crypto experience

• Experience with GRC or workflow tooling such as Monday.com


Legend Trading is an equal opportunities employer.

Free. 20 seconds. No password. See every match in this search.

Create a free Caio profile to unlock more results and save your role and location preferences.

Unlock free search
Want help applying to roles like this? Search Caio for free. If repetitive applications get heavy, Managed Job Search adds supervised execution for $99/month.
View Managed Job Search