Senior Analyst, Tech Risk and Controls
Coinbase - Washington, DC
Apply NowJob Description
OverviewReady to be pushed beyond what you think you’re capable of?At Coinbase, our mission is to increase economic freedom in the world. It’s a massive, ambitious opportunity that demands the best of us, every day, as we build the emerging onchain platform — and with it, the future global financial system.To achieve our mission, we’re seeking a very specific candidate. We want someone who is passionate about our mission and who believes in the power of crypto and blockchain technology to update the financial system. We want someone who is eager to leave their mark on the world, who relishes the pressure and privilege of working with high caliber colleagues, and who actively seeks feedback to keep leveling up. We want someone who will run towards, not away from, solving the company’s hardest problems.Our work culture is intense and isn’t for everyone. But if you want to build the future alongside others who excel in their disciplines and expect the same from you, there’s no better place to be.While many roles at Coinbase are remote-first, we are not remote-only. In-person participation is required throughout the year. Team and company-wide offsites are held multiple times annually to foster collaboration, connection, and alignment. Attendance is expected and fully supported.RoleCoinbase is looking for a creative and analytical Senior Analyst of Technology Risk & Controls. You will serve as a member of the Coinbase Technology Risk & Controls team and support the implementation and maturity of our technology and security controls lifecycle program. This role is crucial in maturing our continuous controls monitoring program, ensuring the effectiveness and efficiency of our technology and security controls. The ideal candidate will have a strong background in controls, with robust technical skills in data analysis and a preference for low-code/no-code platform automation.What you’ll be doingContinuous Controls Monitoring (CCM) Program Maturity: Lead initiatives to enhance and mature our CCM program, including identifying new opportunities for automation, improving data quality, and expanding monitoring coverage.Controls Design and Implementation: Collaborate with technology teams to design, implement, and optimize technology controls across various systems and platforms.Data Analysis and Reporting: Utilize data analysis tools and techniques to monitor control effectiveness, identify anomalies, and generate actionable insights and reports for stakeholders.Automation Development: Develop and implement automated solutions using low-code/no-code platforms to streamline control testing, monitoring, and reporting processes.Risk Assessment and Mitigation: Participate in risk assessments, identifying control deficiencies, and recommending appropriate mitigation strategies.Stakeholder Collaboration: Partner with internal audit, compliance, IT operations, and other relevant teams to ensure alignment and effective execution of control objectives.Documentation and Training: Develop and maintain comprehensive documentation for controls and processes, and provide training to internal teams on control best practices and monitoring procedures.Maintain an industry pulse: Maintain awareness of international regulation, emerging threats, forecasts, policies, and benchmarks.What we look for in you6+ years of experience working in a 1 or 2 Line of Defense controls management function and/or Governance, Risk, and Compliance organization.Control domain knowledge and best practices: Familiarity with standards and frameworks such as ISO 27001/5, NIST CSF, COBIT, ITIL, DORA, and risk quantification methodologies.Control domain knowledge: Ability to understand our technology and security stack and propose candidates for automation.Technical Data Analysis Skills: Proficiency in data analysis tools (SQL, Python, R, Excel, Looker, Snowflake) and techniques for extracting, transforming, and analyzing large fortable working with project management tooling (e.g., Jira, Archer) and analytics tooling.Clear and concise communicator and writer; experience drafting and operationalizing project plans across stakeholders; ability to translate controls/risk standards into functional requirements for varied stakeholders.Regulatory familiarity: Working knowledge of major regulatory frameworks driving requirements across technology organizations (US/international).Navigating ambiguity and complexity: Ability to manage a queue against strategic priorities and handle multiple assessments simultaneously.Drive for continuous learning: Willingness to learn Coinbase-specific processes and embrace a steep learning curve.Excellent organization and project management skills in a fast-moving environment.Nice to haveLow-Code/No-Code Platform Experience: Experience with or aptitude for low-code/no-code automation platforms (e.g., Workato, UiPath, Appian) to build efficient solutions.FinTech, TradFi, consulting, business operations technical program management or other customer-facing disciplines.Strong knowledge of risk/control issues related to evolving technology (crypto, cloud, data lakes, machine learning).Certification is a plus but not a requirement: information security risk management qualifications like CISA, CISSP, CISM.Coding knowledge a plus but not required (e.g., building data joins, integrations with GRC and data visualization tools).Job #: P69475#LI-RemotePay Transparency Notice: Depending on your work location, the target annual salary for this position can range as detailed below. Full time offers include target bonus, target equity, and benefits (medical, dental, vision, 401(k)).Pay Range: $167,280—$196,800 USDPlease be advised that each candidate may submit a maximum of four applications within any 30-day period. We encourage you to carefully evaluate how your skills and interests align with Coinbase's roles before mitment to Equal OpportunityCoinbase is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, creed, gender, national origin, age, disability, veteran status, sex, gender expression or identity, sexual orientation or any other basis protected by applicable law. Coinbase will also consider for employment qualified applicants with criminal histories in a manner consistent with applicable federal, state and local law. For US applicants, you may view the Employee Rights and the Know Your Rights notices by clicking on their corresponding links. Additionally, Coinbase participates in the E-Verify program in certain locations, as required by law.Coinbase is also committed to providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation because of a disability for any part of the employment process, please contact us at accommodations[at] to let us know the nature of your request and your contact information. For quick access to screen reading technology compatible with this site click here to download a free compatible screen reader.Global Data Privacy Notice for Job Candidates and ApplicantsDepending on your location, the GDPR and CCPA may regulate how we manage the data of job applicants. Our full notice outlining how data will be processed is available here. By submitting your application, you are agreeing to our use and processing of your data as required. For US applicants, by submitting your application you are agreeing to arbitration of disputes as outlined here.AI DisclosureFor select roles, Coinbase is piloting an AI tool based on machine learning technologies to conduct initial screening interviews. A human recruiter will review your interview responses, provided in the form of a voice recording and/or transcript, to assess them against the qualifications and characteristics outlined in the job description.For select roles, Coinbase is piloting an AI interview intelligence platform to transcribe and summarize interview notes, allowing our interviewers to focus on you as the candidate.The above pilots are for testing purposes and Coinbase will not use AI to make decisions impacting employment. To request a reasonable accommodation due to disability, please contact #J-18808-Ljbffr
Created: 2025-09-17