Principal GRC Engineer
On-site
Full Time
#Infrastructure
#Fintech
#Security
#Risk Management
#Regulatory Compliance
#PCI DSS
Welcome to Mangopay. We are a pioneering wallet-based payment infrastructure designed for organizations that manage complex, multi-party fund flows. Our platform acts as a programmable, composable building block that allows our clients to collect payments, secure transactions, and manage payouts with total transparency. With a global team of over 300 people across cities like Luxembourg, Paris, and London, we are dedicated to helping fintechs scale while maintaining strict compliance. We are looking for a Principal GRC Engineer to join our team in Luxembourg on a full-time, on-site basis to help us continue driving innovation in the financial technology space.
What you'll be doing
- You will take the lead on maintaining and maturing our security framework by developing and refining our internal policies, standards, and procedures.
- You will design and implement effective security controls, conduct thorough risk assessments, and manage our security risk register to ensure it remains accurate and actionable.
- You will serve as our primary point of contact for audits and vendor due diligence, while also ensuring our ongoing compliance with standards such as PCI DSS and evolving regulations like DORA and EBA guidelines.
What you'll bring
To succeed in this role, you should have a strong background in security governance and a passion for regulatory compliance. We are looking for the following qualifications:
- Five to seven years of professional experience in a relevant GRC or security role.
- A Master’s degree in Technology or Security, or equivalent professional experience.
- Professional certifications such as CISA, ISO/IEC 27001, or AWS Security Specialty are highly preferred.
- Deep expertise in PCI DSS and a comprehensive understanding of the EU and UK regulatory landscape.
- Fluency in English, with any additional languages considered a valuable asset.
- A proven track record of success in managing complex security frameworks within a fintech or similar high-growth environment.
What you'll get
Joining our team means becoming part of a diverse and supportive environment where your contributions directly impact our ability to scale securely. Our interview process is designed to be straightforward and collaborative, consisting of an initial HR call followed by interviews with our Head of Security and an Application Security Engineer. We are committed to equal employment opportunities and welcome all qualified applicants to apply.






