Senior Security Engineer, Technology Governance and Compliance

5 days ago


Hong Kong Island, Hong Kong SAR China Tbwa ChiatDay Inc Full time
Senior Security Engineer, Technology Governance and Compliance

Hong Kong, Hong Kong SAR

Who We Are

At OKX, we believe the future will be reshaped by technology. Founded in 2017, we are revolutionising world systems through our cutting-edge digital asset exchange, Web3 portal and blockchain ecosystems. We reshape the financial ecosystem by offering some of the most diverse and sophisticated products, solutions, and trading tools on the market. Trusted by more than 50 million users in over 180 countries globally, OKX empowers every individual to explore the world of Web3. With our extensive range of products and services, and unwavering commitment to innovation, OKX envisions a world of financial access backed by blockchain and the power of decentralized finance.

We are innovative in the way we think, work, and in the products we create. We are also socially responsible by actively participating and encouraging employees to take part in various public welfare activities. With more than 3,000 employees around the world, we believe embracing diversity and inclusion will spark the creation of long-term value for the industry. Come Build the Future with Us now

About the Team

The Technology Governance team provides security advice and guidance to OKX entities across all coverage areas, including global locations support business growth by working with all teams within the company to help them achieve their goals. This team works closely with compliance and legal teams to interpret global requirements for applying for licensing or any regional requirements, and understanding them.

About the Opportunity

Security breaches are the number one cause of death amongst digital currency companies. Security is the core to our mission and has been a key competitive differentiator for us as we scale.

As a Security Engineer on the Technology Governance & Compliance team, you will lead and manage multiple initiatives to mature OKX security programs globally. You'll also have an opportunity to pitch, lead and participate in cross-functional initiatives that uplevel the security of all OKX products and services. This role works horizontally across the business to provide guidance for the design and implementation of key security controls, tools and technologies.

What You'll Be Doing

  1. Create and maintain solutions that uphold continuous compliance with a broad set of industry security standards and regulations (ISO27001, SOC 1/2, NIST, CIS benchmarks, etc).
  2. Manage third party security assessments and due diligence requests from regulatory agencies and auditors.
  3. Develop procedures to respond to security and compliance queries from third party providers, partners and internal stakeholders.
  4. Identify and implement tooling to automate processes and workflows that scale security goals and increase efficiency.
  5. Lead cross-functional security efforts in the APAC region, working with Legal, Compliance, Engineering, HR, and Finance.

What We Look For In You

  1. Bachelor's degree in Computer Science, Engineering, or a related technical discipline.
  2. 7+ years executing scalable Security, Risk, and/or Compliance initiatives.
  3. Entrepreneurial spirit, able to work in an exciting and dynamic fast-paced environment, with competing priorities.
  4. Strong communication skills with the ability to translate technical security requirements and risks into terms that anyone can understand.
  5. Experience leading cross-functional efforts with operational and technical teams.
  6. Prior involvement in ISO27001, SOC 1/2, NIST 800-53 or other compliance requirements.
  7. Bilingual speaking (English and Chinese) is highly preferred as the team will be working across different regions.

Nice to Haves

  1. CISSP, CISM, CISA or other security certification.
  2. Prior experience with GRC tooling and/or implementation.
  3. Past experience working with crypto platforms.

We offer L&D programs and education subsidy for employees' growth and development, various team building programs and company events, wellness and meal allowances, and comprehensive healthcare schemes for employees and dependants.

Apply for this job

* indicates a required field

First Name *

Last Name *

Email *

Phone *

Resume/CV *

Enter manually

Accepted file types: pdf, doc, docx, txt, rtf

Are you eligible to work in the location of which this job post is posted in? * Select...

LinkedIn Profile

Website

Would you require work visa sponsorship to work in the advertised location for this role? * Select...

#J-18808-Ljbffr

  • Hong Kong Island, Hong Kong SAR China Tbwa ChiatDay Inc Full time

    Job DescriptionWe are seeking a highly experienced Senior Security Engineer to join our Technology Governance and Compliance team. This role will be responsible for leading and managing multiple initiatives to mature OKX security programs globally.


  • Hong Kong, Central and Western District, Hong Kong SAR China Pathos Consultancy Full time

    Job Title: Security and Compliance EngineerAbout Pathos ConsultancyWe are a leading consultancy firm providing expert advice on information security and risk management to global financial institutions. Our team of experienced professionals is dedicated to helping our clients navigate the complexities of information security and achieve their goals.Job...


  • Hong Kong, Central and Western District, Hong Kong SAR China KOS International Limited Full time

    Head of Security Governance & Technology Risk (60464) Hong Kong About the Client Our client is a reputable company that has strong business in Hong Kong and China. With an increasing growth and a vision to diversify their portfolio, they are now seeking a Head of Security Governance & Technology Risk to join their team. About the Role This is a newly...


  • Hong Kong, Central and Western District, Hong Kong SAR China Tbwa ChiatDay Inc Full time

    Job DescriptionWe are seeking a seasoned Senior Cybersecurity Specialist to join our Technology Governance and Compliance team. As a key member of our security team, you will play a crucial role in maturing OKX's global security programs. Your expertise will be instrumental in guiding the design and implementation of key security controls, tools, and...


  • Hong Kong, Central and Western District, Hong Kong SAR China KOS International Limited Full time

    KOS International Limited OverviewKOS International Limited is a leading company in Hong Kong and China, offering a range of services and solutions to its clients. With a strong commitment to quality and excellence, the organization seeks to recruit talented individuals to join its team.Job SummaryWe are seeking a Head of Security Governance & Technology...


  • Hong Kong, Central and Western District, Hong Kong SAR China PrimePeak Group Full time

    Senior Manager/Director PositionThe PrimePeak Group is recruiting a senior manager/director to oversee our tech risk management function. This key position will be responsible for ensuring the company's IT infrastructure, cybersecurity frameworks, and digital transformation initiatives align with regulatory standards and best practices.Responsibilities•...


  • Hong Kong Island, Hong Kong SAR China FUJIFILM BI Hong Kong Full time

    Job Requirements:This role involves working as an Information Security Governance Lead, focusing on security assessment and monitoring for the in-house information security team, ensuring quality and compliance across existing and new services.Key Responsibilities:Develop and implement security governance frameworks and policies to ensure the...


  • Hong Kong Island, Hong Kong SAR China Classy Wheeler Limited Full time

    Job SummaryClassy Wheeler LimitedWe are seeking a Technology Governance Leader to join our team. The successful candidate will be responsible for leading the development and implementation of effective technology governance strategies, ensuring the integrity of our technology systems.Main ResponsibilitiesDevelop and maintain technology governance frameworks,...


  • Hong Kong, Central and Western District, Hong Kong SAR China ConnectedGroup Full time

    About the RoleThe Senior Data Governance Manager will be responsible for establishing and leading an enterprise-wide data governance program, working closely with senior leadership, data owners, and cross-functional teams to ensure data quality, compliance, and security across the organization. This role requires a strategic thinker with deep expertise in...


  • Hong Kong, Central and Western District, Hong Kong SAR China Hong Kong Exchanges and Clearing Limited Full time

    Company Introduction:We're home to Asia's most dynamic and vibrant capital markets.Connecting capital, ideas, inspiration and innovation for deeper, more diverse and liquid global capital markets; providing greater choice and opportunity for our customers, each and every day.HKEX is a purpose-driven company. Our commitment to the long-term development of our...


  • Hong Kong, Central and Western District, Hong Kong SAR China Rise Associates Asia Limited Full time

    About the Role:The Cybersecurity Governance Lead will be responsible for co-managing a reasonably-sized IT security team, analyzing and enhancing existing IT security governance, and creating new internal policies in accordance with the latest cybersecurity risk landscapes and industrial best practices.This role requires comprehensive technical knowledge of...


  • Hong Kong, Central and Western District, Hong Kong SAR China International Executive Service Corps Full time

    Job OverviewWe are seeking an experienced IT risk governance specialist to join our team at International Executive Service Corps. In this role, you will be responsible for maintaining oversight functions on key risks, controls, and enhancement initiatives within the IT department.Main ResponsibilitiesIdentify and Assess Risks: Play an active role in...


  • Hong Kong, Central and Western District, Hong Kong SAR China Hong Kong Exchanges and Clearing Limited Full time

    Company Introduction: We're home to Asia's most dynamic and vibrant capital markets. Connecting capital, ideas, inspiration and innovation for deeper, more diverse and liquid global capital markets; providing greater choice and opportunity for our customers, each and every day. HKEX is a purpose-driven company. Our commitment to the long-term development...


  • Hong Kong, Central and Western District, Hong Kong SAR China ConnectedGroup Full time

    ConnectedGroup, a world-class operator of public services, is seeking an experienced Senior Data Governance Manager to lead the development and implementation of a robust data governance framework. This framework will align with industry best practices and regulatory requirements.The ideal candidate will be a strategic thinker with deep expertise in data...


  • Hong Kong, Central and Western District, Hong Kong SAR China Hong Kong Exchanges and Clearing Limited Full time

    Company Introduction: We're home to Asia's most dynamic and vibrant capital markets. Connecting capital, ideas, inspiration and innovation for deeper, more diverse and liquid global capital markets; providing greater choice and opportunity for our customers, each and every day. HKEX is a purpose-driven company. Our commitment to the long-term development...


  • Hong Kong, Central and Western District, Hong Kong SAR China PrimePeak Group Full time

    Job Description:The PrimePeak Group is seeking an experienced Senior Cyber Security Manager to lead our technology risk management efforts.Key Responsibilities:Develop and execute strategies to assess technology risks, ensure compliance with regulatory standards, and implement effective IT governance frameworks.Lead risk-based assessments, ensuring...


  • Hong Kong Island, Hong Kong SAR China TRON DAO Full time

    Get AI-powered advice on this job and more exclusive features.Responsibilities:Responsible for the daily operation and maintenance of security devices, including firewalls, intrusion detection/prevention systems (IDS/IPS), WAF, SIEM, etc., conducting device inspections, troubleshooting, and optimizing configurations.Responsible for security log analysis,...


  • Hong Kong, Central and Western District, Hong Kong SAR China PAObank Full time

    Job DescriptionPAObank is seeking a Senior Cyber Risk Governance Professional to join our team. In this role, you will be responsible for overseeing security assessments, managing cybersecurity processes, and collaborating with cross-functional teams to identify and mitigate security threats.About the RoleDevelop and implement security strategies for cloud...

  • IT Governance Lead

    7 days ago


    Hong Kong, Central and Western District, Hong Kong SAR China PrimePeak Group Full time

    Job Summary:We are looking for a highly experienced IT Governance Lead to join our team at the PrimePeak Group.About the Job:Develop and implement effective IT governance frameworks to ensure compliance with regulatory standards.Lead risk-based assessments and provide independent assurance on the effectiveness of IT risk management and internal control...


  • Hong Kong Island, Hong Kong SAR China PrimePeak Group Full time

    About PrimePeak GroupPrimePeak Group is a Hong Kong-based company seeking an experienced Senior Manager/Director to lead its tech risk/cyber security function. The ideal candidate will have a strong background in technology risk management, cybersecurity, and IT governance.Job RequirementsIT Risk ManagementDevelop and execute a strategy to assess technology...