Head of Digital Trust & Controls Assurance Audit
San Jose, California, United States
Overview
OKX is undertaking a significant global team buildout within its Internal Audit function, and we are looking for an experienced and visionary Head of Digital Trust & Controls Assurance. This is a unique opportunity to provide enterprise-wide assurance over the design and operating effectiveness of the company's cybersecurity, privacy, IT general controls, and AI governance frameworks to ensure they are aligned with the organization's risk management goals and business objectives.
What You’ll Be Doing
- Lead and manage a global Digital Trust & Controls Assurance team, including hiring and developing a high-performing audit team of specialists in cybersecurity, privacy, and data governance.
- Drive planning and execution of a risk-based audit portfolio assessing the company’s cyber defense strategy, cyber operations, data privacy, data security, IT General Controls (ITGCs), and AI governance frameworks.
- Collaborate effectively with other Internal Audit portfolio and Engineering leads to provide expert assurance and audit support.
- Develop and implement advanced audit methodologies tailored to the unique complexities of a high-volume, global crypto exchange.
- Provide strategic audit insights and independent assurance on emerging digital trust risks in the cryptocurrency space to senior Internal Audit and Engineering leadership.
What We Look For In You
We are seeking a seasoned IT audit professional with demonstrable experience in independently assessing cybersecurity, privacy, and IT controls within the crypto exchange or crypto product space. The ideal candidate will possess a deep understanding of digital trust principles applied to novel technical and control environments, coupled with strong leadership and analytical skills.
- Prior Crypto Exchange/Crypto Product Experience is Highly Preferred.
- Strong Critical Thinking and Problem-Solving Skills: Capacity to analyze complex, often novel, technical and control environments unique to crypto, identify intricate root causes of issues, and propose effective, context-specific solutions.
- Deep Understanding of Blockchain Technology: Expert knowledge of distributed ledger cybersecurity risks, technologies, consensus mechanisms, cryptography, and the lifecycle of a cryptocurrency transaction.
- Cybersecurity Governance: Expertise in auditing the overall information security program, strategy, policies, and standards to assess resilience against unique crypto threats.
- Cybersecurity Operations & Threat Management: Experience auditing the effectiveness of Cybersecurity Operations, including the Security Operations Center (SOC), Security Information Event Management (SIEM), incident response processes, and threat and vulnerability management.
- Data Privacy & Governance: Demonstrable ability to audit privacy compliance with a focus on global regulations (e.g., GDPR, CCPA) and assessing the effectiveness of an enterprise data governance framework.
- Data Security: Deep knowledge of auditing controls that protect data at rest and in transit, such as encryption, cryptographic key management, and data loss prevention.
- IT General Controls (ITGC) Governance: Comprehensive expertise in auditing the design and process effectiveness for all core ITGCs, including Change Management, Access Management, Business Continuity, and IT Operations.
AI Governance & Risk: Ability to audit an enterprise-wide AI strategy, guidelines, and risk management frameworks for both internal AI development and the use of third-party AI tools.
Benefits
- L&D programs and Education subsidy for employees' growth and development
- Various team building programs and company events
- Wellness and meal allowances
- Comprehensive healthcare schemes for employees and dependants
- More that we love to tell you along the process!
OKX Statement:
OKX is committed to equal employment opportunities regardless of race, color, genetic information, creed, religion, sex, sexual orientation, gender identity, lawful alien status, national origin, age, marital status, and non-job related physical or mental disability, or protected veteran status. Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
The salary range for this position is $240,000 - $360,000. The salary offered depends on a variety of factors, including job-related knowledge, skills, experience, and market location. In addition to the salary, a performance bonus and long-term incentives may be provided as part of the compensation package, as well as a full range of medical, financial, and/or other benefits, dependent on the position offered. Applicants should apply via OKX internal or external careers site.
Information collected and processed as part of the recruitment process of any job application you choose to submit is subject to OKX's Candidate Privacy Notice.
Apply for this job
Applicants should apply via OKX internal or external careers site.
For more information about the application process and policy, please refer to the OKX careers site.
#J-18808-Ljbffr