
Head of Software & Digital Asset Audit
Who We Are
About the Opportunity
OKX is undertaking a significant global team buildout within its Internal Audit function, and we are looking for an experienced and visionary Head of Software & Digital Asset Audit. This is a unique opportunity to lead a highly specialized team in performing deep technical audits of the company's proprietary software and the entire ecosystem of crypto-native technologies, focusing on the security and integrity of application code and digital assets.
What You’ll Be Doing
- Lead and manage a global Software & Digital Asset Audit team, building a highly specialized audit team of software and digital asset security experts.
- Drive the planning and execution of a risk-based audit portfolio performing deep technical audits of OKX’s developer workflow, software development toolchain, high risk code base, product security, blockchain technologies, and AI integrated applications.
- Collaborate effectively with Engineering and Product teams to provide assurance and risk insights throughout the system development lifecycle.
- Develop and implement advanced audit methodologies tailored to assessing OKX’s developer workflow, software development toolchain, high risk code base, smart contracts, proprietary products including exchange software, and digital wallet infrastructure.
- Provide strategic audit insights and independent assurance on emerging software and digital asset risks in the cryptocurrency space to senior IA, Product, and Engineering leadership.
What We Look For In You
We are seeking a seasoned audit professional with demonstrable experience in independently assessing application security and blockchain technologies within the crypto exchange or crypto product space. The ideal candidate will possess deep, hands-on technical skills, coupled with strong leadership and analytical capabilities.
- Prior Crypto Exchange/Crypto Product Experience is Essential.
- Strong Critical Thinking and Problem-Solving Skills: Capacity to analyze complex, often novel, technical and control environments unique to crypto, identify intricate root causes of issues, and propose effective, context-specific solutions.
- Deep Understanding of Blockchain Technology: Deep knowledge of distributed ledger technologies, consensus mechanisms, cryptography, and smart contracts.
- Product & Application Security (AppSec): Expertise in performing deep technical dives into the Software Development Lifecycle (SDLC) including performing code level assessments, developer workflows, system development toolchains, auditing of application controls (Input, Processing, Output), and reviewing build/test/release system implementations for critical exchange platforms.
- Digital Asset & Blockchain Security: Expert-level ability to own and execute technical audits of the entire ecosystem of technologies that secure crypto-asset operations, including Smart Contracts (Solidity, Rust, etc.), Layer 1 & 2 Protocols, and Wallet Infrastructure (HSMs, MPC).
- AI Application Auditing: Experience auditing the secure implementation and integration of AI models within proprietary software, focusing on input/output validation and resilience against AI-specific attack vectors like prompt injection or model manipulation.
Perks & Benefits
-
Competitive total compensation package
- L&D programs and education subsidy for employees' growth and development
-
Various team building programs and company events
- Wellness and meal allowances
- Comprehensive healthcare schemes for employees and dependants
- More that we love to tell you along the process!
#LI-RF1
Create a Job Alert
Interested in building your career at OKX? Get future opportunities sent straight to your email.
Apply for this job
*
indicates a required field