Senior Manager, Digital Trust & Controls Assurance Audit (Cybersecurity SME)

AI overview

Execute critical assurance projects to enhance the security posture and integrity of a digital trust framework for a leading crypto organization.

Who We Are

At OKX, we believe that the future will be reshaped by crypto, and ultimately contribute to every individual's freedom. OKX is a leading crypto exchange, and the developer of OKX Wallet, giving millions access to crypto trading and decentralized crypto applications (dApps). OKX is also a trusted brand by hundreds of large institutions seeking access to crypto markets. We are safe and reliable, backed by our Proof of Reserves. Across our multiple offices globally, we are united by our core principles: We Before Me, Do the Right Thing, and Get Things Done. These shared values drive our culture, shape our processes, and foster a friendly, rewarding, and diverse environment for every OK-er. OKX is part of OKG, a group that brings the value of Blockchain to users around the world, through our leading products OKX, OKX Wallet, OKLink and more.
 

About the Opportunity

OKX is undertaking a significant global team buildout, and we are looking for an experienced Manager or Senior Manager to join our Digital Trust & Controls Assurance team. This is a unique opportunity for a subject matter expert in Cybersecurity to execute critical assurance projects that directly impact the security posture and integrity of a leading crypto organization. As a senior individual contributor, you will focus on deep, technical assessments of the company's end-to-end cyber defense program, from strategy and governance to the effectiveness of procedures and tools.
 
We're looking for a hands-on, deeply technical, and strategic auditor who is a recognized subject matter expert in Cybersecurity Governance and Operations. You have demonstrable experience assessing security programs and controls in complex, high-technology environments—ideally within crypto or FinTech. You thrive on applying your deep specialty while also contributing your broad skills across a range of digital trust domains.
 

What You’ll Be Doing

  • Serve as the subject matter expert for auditing the company’s end-to-end Information Security program, including the enterprise-wide cybersecurity strategy, governance framework, policies, and operational capabilities (e.g., security operations, incident response, threat and vulnerability management).
  • Leverage your deep expertise in cybersecurity governance and operations to lead strategic, end-to-end audits of our Information Security program and contribute to a wide range of audits across other Digital Trust domains.
  • Contribute to the annual risk-based audit plan by identifying emerging cybersecurity risks and scoping potential audit projects.
  • Collaborate effectively with security, technology, and business stakeholders to communicate audit findings, provide value-add recommendations, and monitor remediation plans.

Develop and maintain expert knowledge of the evolving crypto threat landscape and global regulatory requirements to ensure audit approaches remain current and effective.

 

What We Look For In You

We're looking for a hands-on, deeply technical, and strategic auditor who is a recognized subject matter expert in Cybersecurity Governance and Operations. You have demonstrable experience assessing security programs and controls in complex, high-technology environments—ideally within crypto or FinTech. You thrive on applying your deep specialty while also contributing your broad skills across a range of digital trust domains.

  • Cybersecurity Governance and Operations (SME): Deep expertise in auditing the end-to-end effectiveness of a modern cyber defense program, from overarching strategy, policies, and standards down to operational capabilities:
    • Security Operations/SecOps (Detection and Response, SOC, SIEM, SOAR)
    • Incident Management and Response (IR)
    • Threat and Vulnerability Management
    • Identity and Access Management (AuthN, AuthZ)
    • Application Security (secure SDLC)
    • Network Security
  • Crypto & Blockchain Acumen: Prior experience with a crypto exchange or crypto product is highly preferred. You must have a fundamental understanding of blockchain technology, including distributed ledgers, consensus mechanisms, and cryptography.
  • Critical Thinking for Complex Environments: A proven capacity to analyze novel technical and control environments unique to crypto, identify intricate root causes, and propose effective, context-specific solutions.
  • Broad Expertise Across Digital Trust Domains: Demonstrable experience auditing the design and effectiveness of controls in the following areas:
    • Cybersecurity Governance: Auditing an information security program, strategy, and policies.
    • Data Security: Auditing controls protecting data (e.g., encryption, key management).
    • IT General Controls (ITGCs): Auditing core ITGCs like Change Management and Access Management.
    • AI Governance & Risk: Assessing AI strategy, ethical guidelines, and risk management frameworks.

Data Analysis & SQL: Experience using SQL for data analysis is highly desired. The ability to achieve proficiency in performing data analytics with SQL within the first 90 days will be required.

 

Perks & Benefits

  • Competitive total compensation package
  • L&D programs and Education subsidy for employees' growth and development
  • Various team building programs and company events
  • Wellness and meal allowances
  • Comprehensive healthcare schemes for employees and dependants
  • More that we love to tell you along the process! 
 

OKX Statement:

OKX is committed to equal employment opportunities regardless of race, color, genetic information, creed, religion, sex, sexual orientation, gender identity, lawful alien status, national origin, age, marital status, and non-job related physical or mental disability, or protected veteran status. Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
 
  • The salary range for this position is $178,000 - $321,000
  • The salary offered depends on a variety of factors, including job-related knowledge, skills, experience, and market location. In addition to the salary, a performance bonus and long-term incentives may be provided as part of the compensation package, as well as a full range of medical, financial, and/or other benefits, dependent on the position offered. Applicants should apply via OKX internal or external careers site.
Notice: All official OKX vacancies are posted on this site. We are not affiliated with other third-party job boards except Linkedin.com, listings on other sites may be inaccurate or outdated. This is the only source of truth for applications.
Information collected and processed as part of the recruitment process of any job application you choose to submit is subject to OKX's Candidate Privacy Notice.

Perks & Benefits Extracted with AI

  • Education Stipend: L&D programs and Education subsidy for employees' growth and development
  • Health Insurance: Comprehensive healthcare schemes for employees and dependants
  • Team building programs: Various team building programs and company events
  • Wellness Stipend: Wellness and meal allowances

OKX operates as a leading cryptocurrency exchange, providing users with a platform to buy, sell, and trade various digital assets such as Bitcoin, Ethereum, and XRP, while also offering tools for exploring Web3, decentralized finance (DeFi), and non-fu...

View all jobs
Salary
$178,000 – $321,000 per year
Get hired quicker

Be the first to apply. Receive an email whenever similar jobs are posted.

Ace your job interview

Understand the required skills and qualifications, anticipate the questions you may be asked, and study well-prepared answers using our sample responses.

Senior Manager Q&A's
Report this job
Apply for this job