
Back to jobs
At OKX, we believe that the future will be reshaped by crypto, and ultimately contribute to every individual's freedom. OKX is a leading crypto exchange, and the developer of OKX Wallet, giving millions access to crypto trading and decentralized crypto applications (dApps). OKX is also a trusted brand by hundreds of large institutions seeking access to crypto markets. We are safe and reliable, backed by our Proof of Reserves. Across our multiple offices globally, we are united by our core principles: We Before Me, Do the Right Thing, and Get Things Done. These shared values drive our culture, shape our processes, and foster a friendly, rewarding, and diverse environment for every OK-er. OKX is part of OKG, a group that brings the value of Blockchain to users around the world, through our leading products OKX, OKX Wallet, OKLink and more.
Head of Digital Trust & Controls Assurance Audit
San Jose, California, United States
Who We Are
About the Opportunity
OKX is undertaking a significant global team buildout within its Internal Audit function, and we are looking for an experienced and visionary Head of Digital Trust & Controls Assurance. This is a unique opportunity to provide enterprise-wide assurance over the design and operating effectiveness of the company's cybersecurity, privacy, IT general controls, and AI governance frameworks to ensure they are aligned with the organization's risk management goals and business objectives.
What You’ll Be Doing
- Lead and manage a global Digital Trust & Controls Assurance team, including hiring and developing a high-performing audit team of specialists in cybersecurity, privacy, and data governance.
- Drive planning and execution of a risk-based audit portfolio assessing the company’s cyber defense strategy, cyber operations, data privacy, data security, IT General Controls (ITGCs), and AI governance frameworks.
- Collaborate effectively with other Internal Audit portfolio and Engineering leads to provide expert assurance and audit support.
- Develop and implement advanced audit methodologies tailored to the unique complexities of a high-volume, global crypto exchange.
- Provide strategic audit insights and independent assurance on emerging digital trust risks in the cryptocurrency space to senior Internal Audit and Engineering leadership.
What We Look For In You
We are seeking a seasoned IT audit professional with demonstrable experience in independently assessing cybersecurity, privacy, and IT controls within the crypto exchange or crypto product space. The ideal candidate will possess a deep understanding of digital trust principles applied to novel technical and control environments, coupled with strong leadership and analytical skills.
- Prior Crypto Exchange/Crypto Product Experience is Highly Preferred.
- Strong Critical Thinking and Problem-Solving Skills: Capacity to analyze complex, often novel, technical and control environments unique to crypto, identify intricate root causes of issues, and propose effective, context-specific solutions.
- Deep Understanding of Blockchain Technology: Expert knowledge of distributed ledger cybersecurity risks, technologies, consensus mechanisms, cryptography, and the lifecycle of a cryptocurrency transaction.
- Cybersecurity Governance: Expertise in auditing the overall information security program, strategy, policies, and standards to assess resilience against unique crypto threats.
- Cybersecurity Operations & Threat Management: Experience auditing the effectiveness of Cybersecurity Operations, including the Security Operations Center (SOC), Security Information Event Management (SIEM), incident response processes, and threat and vulnerability management.
- Data Privacy & Governance: Demonstrable ability to audit privacy compliance with a focus on global regulations (e.g., GDPR, CCPA) and assessing the effectiveness of an enterprise data governance framework.
- Data Security: Deep knowledge of auditing controls that protect data at rest and in transit, such as encryption, cryptographic key management, and data loss prevention.
- IT General Controls (ITGC) Governance: Comprehensive expertise in auditing the design and process effectiveness for all core ITGCs, including Change Management, Access Management, Business Continuity, and IT Operations.
AI Governance & Risk: Ability to audit an enterprise-wide AI strategy, guidelines, and risk management frameworks for both internal AI development and the use of third-party AI tools.
Perks & Benefits
-
Competitive total compensation package
-
L&D programs and Education subsidy for employees' growth and development
-
Various team building programs and company events
-
Wellness and meal allowances
-
Comprehensive healthcare schemes for employees and dependants
-
More that we love to tell you along the process!
OKX Statement:
OKX is committed to equal employment opportunities regardless of race, color, genetic information, creed, religion, sex, sexual orientation, gender identity, lawful alien status, national origin, age, marital status, and non-job related physical or mental disability, or protected veteran status. Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
-
The salary range for this position is $240,000 - $360,000
-
The salary offered depends on a variety of factors, including job-related knowledge, skills, experience, and market location. In addition to the salary, a performance bonus and long-term incentives may be provided as part of the compensation package, as well as a full range of medical, financial, and/or other benefits, dependent on the position offered. Applicants should apply via OKX internal or external careers site.
Information collected and processed as part of the recruitment process of any job application you choose to submit is subject to OKX's Candidate Privacy Notice.
Create a Job Alert
Interested in building your career at OKX? Get future opportunities sent straight to your email.
Apply for this job
*
indicates a required field