Security Compliance Director, Technology Governance and Compliance

Singapore
Full time
Office
Compensation is not specified
Role
CTO
Description

Who We Are

At OKX, we anticipate a future shaped by technology. Established in 2017, we are transforming global systems through our state-of-the-art digital asset exchange, Web3 portal, and blockchain ecosystems. We enhance the financial landscape by providing a wide array of innovative products, solutions, and trading tools. Trusted by over 50 million users across 180 countries, OKX enables individuals to navigate the realm of Web3. With a diverse product range and a strong commitment to innovation, OKX envisions a financial world supported by blockchain technology and decentralized finance. We are known for our innovative approach to work, products, and social responsibility, actively engaging in various public welfare activities. With a global team of more than 3,000 employees, we believe that embracing diversity and inclusion leads to long-term industry value creation. Join us in Building the Future today!

About the Team

The Technology Governance team offers security guidance to OKX entities worldwide, collaborating with various teams to facilitate business growth. This team closely works with compliance and legal departments to interpret global requirements related to licensing or regional mandates.

About the Opportunity

Stay informed about the latest developments in laws, regulations, and information security standards concerning Network Security, Data Security, and Data Protection. Ensure the internal information security management system is regularly updated and maintained. Facilitate applications for information security certifications like ISO 27001, SOC, and PCI for our products. Advocate for security compliance and privacy protection requirements, promptly addressing any non-compliance issues. Verify that the organization's security controls meet industry standards by conducting thorough assessments of processes, systems, policies, network configurations, and procedures. Collaborate with cross-functional teams to monitor business activities and ensure adherence to external certifications.

Candidates with varying levels of experience will be considered for roles as senior engineers or engineers, based on their skills and potential.

What You'll Be Doing

  • Lead operational audit programs and complex technology control assessments, including Information Security, Infrastructure, and Emerging Technologies.

  • Conduct integrated audits supporting various business functions and productions.

  • Assist in analyzing and identifying emerging technology risks for OKX.

  • Build and maintain subject matter expertise in technology domains.

  • Develop collaborative relationships with stakeholders to provide value-added services and advisory support.

  • Engage with engineering and product teams to offer insights on technology implementations.

  • Continually expand knowledge in the audit profession, industry trends, and company products.

  • Ensure quality and consistency in audit work by adhering to department and professional standards. Seek opportunities for audit process enhancement.

What We Look For In You

  • Minimum of 3 years' experience managing ISO 27001:2022, SOC 2 audits, and compliance programs in a global organizational context.

  • Proficiency in cybersecurity frameworks like ISO 27001, PCI-DSS, SOC 2, and other regulatory requirements.

  • Strong communication and analytical skills, commitment to continuous learning, and a collaborative mindset.

  • Experience in Technology Audit, Risk Management, Cybersecurity Compliance, or Engineering, preferably in the technology sector.

  • Relevant certifications such as CISSP, GIAC, CCNA, CISA, or CIA.

  • Track record in managing audit portfolios and integrating audits for financial/operational and technology objectives.

  • Interest in emerging technologies, critical thinking, and strong problem-solving skills.

  • Ability to thrive in a fast-paced, product-oriented environment, with exposure to startup or tech companies being beneficial.

  • Proficient in assessing complex technology environments against industry best practices and regulatory requirements.

  • Effective written communication to convey findings and recommendations to senior management.

  • Experience working in a global organization and managing projects across different time zones.

Nice to Haves

  • Expertise in ISO management systems, SOC audits, and PCI certification.

  • Understanding of data protection regulations like the Personal Data Protection Act and Technology Risk Management Guidelines.

  • Possession of industry certifications like CISM, CISA, CISSP.

  • Experience in compliance for virtual currency trading platforms, especially in obtaining licenses across various regions.

Perks & Benefits

  • Competitive total compensation package.

  • Learning & Development programs and Education subsidy.

  • Team-building activities and company events.

  • Wellness and meal allowances.

  • Comprehensive healthcare schemes for employees and dependents.

  • Exciting perks to be revealed during the process!

Skills Required
Avatar
OKX
Company size
Not specified
Location
United States
Description
Not specified

More Full-time Jobs

Show more

Investment Analyst (Blockchain / Web3)

Full time
Remote
🚀 Job Opening: Investment Analyst (Blockchain / Web3)
Company: Nomea VC
Location: Remote
Employment Type: Full-time
Level: Junior+ / Middle
🌐 About Nomea VC
Nomea VC is a venture capital fund focused on blockchain, Web3, DeFi, and decentralized infrastructure. We invest in early-stage startups and actively support founders with strategic guidance, industry expertise, and global connections.
🎯 Responsibilities
Research and analyze early-stage Web3 and blockchain startups (pre-seed / seed)
Conduct investment research and due diligence
Prepare investment memos, pitch decks, and analytical reports
Evaluate tokenomics, business models, and market opportunities
Track and support portfolio companies
Communicate with founders and ecosystem partners
Monitor emerging trends across crypto, DeFi, infrastructure, and Web3
✅ Requirements
1–3 years of experience in venture capital, analytics, consulting, startups, or fintech
Strong analytical and research skills
Solid understanding of the blockchain and Web3 ecosystem
Ability to work with data, financial models, and presentations
Excellent written and verbal communication skills
English proficiency: Upper-Intermediate or higher
➕ Nice to Have
Previous experience in VC or high-growth startups
Knowledge of DeFi, tokenomics, L2s, and blockchain infrastructure
Financial modeling skills
Technical background or hands-on Web3 product experience
Active involvement in the crypto/Web3 community
💡 What We Offer
Opportunity to work in a global blockchain-focused VC fund
Exposure to top-tier Web3 founders and projects
Fully remote work with flexible hours
Competitive compensation with performance-based bonuses
Fast career growth in the venture capital ecosystem
Lean team with minimal bureaucracy and high impact
Payment in Crypto
3,333-5,833
Monthly
See details

Senior iOS developer for GameDev startup

Full time
Remote
Game Concept: “Reflex Arena”
Genre
Real-time competitive 1v1 / 2v2 skill-based action game
Platform
iOS (iPhone first, iPad optional)
Core Idea
A pure skill game where players compete in short, intense arena matches using precision timing, reflexes, and positioning — no RNG, no pay-to-win.
Each match lasts 60–90 seconds, making it ideal for mobile sessions while supporting competitive depth.
Core Gameplay Loop
Matchmaking
Skill-based MMR
Ranked & unranked queues
Arena Match
Small symmetrical arena
Players control a single character
Objective: score points by outplaying, not overpowering
Score & Progress
Win → rank up
Lose → learn (clear replay & stats)
Cosmetics only progression
Controls (Mobile-First, High Precision)
Left thumb: Movement (virtual joystick)
Right thumb: Aim + action swipe
Tap: Ability activation
Perfect timing windows reward precision (parries, counters)
👉 Designed to feel closer to a fighting game than a casual mobile title.
Mechanics (Skill > Stats)
Core Mechanics
Dash with cooldown (positioning skill)
Timed parry (frame-perfect defense)
Charged shots (risk vs reward)
Combo chaining (execution mastery)
No Randomness
Fixed damage
Fixed cooldowns
No crit chance
No loot boxes
Competitive Depth
Skill Expression
Reaction time
Prediction & mind games
Spacing & arena control
Cooldown tracking
Skill Ceiling
Easy to learn (1 minute)
Hard to master (1000+ matches)
Game Modes
Ranked Duel (Main Mode)
1v1
Best of 3 rounds
Seasonal leaderboard
Team Arena
2v2 coordinated play
Shared objectives
Training / Practice
Frame timing visualizer
Ghost replays of top players
Visual Style
Clean, minimalistic sci-fi arenas
High contrast for readability
60–120 FPS target (ProMotion)
👉 Performance clarity > visual noise.
Monetization (Fair & Competitive)
Skins (characters, arenas, effects)
Emotes / victory poses
Battle pass (cosmetic only)
🚫 No power boosts
🚫 No energy timers
🚫 No loot RNG
Technical Design (iOS-Optimized)
Native Swift
Metal / SpriteKit
Deterministic simulation
Server-authoritative logic
Rollback netcode (if real-time PvP)
Payment in Crypto
7,500-8,750
Monthly
See details

Rust/blockchain

Houston, USA
Houston, USA
Part time
Remote
I am seeking a world-class Systems Engineer / Rust Architect to build a proprietary asset extraction engine on the Solana network. This is not a "Web3 App" or a "DEX UI." This is a purely backend, low-latency machine designed to capture micro-value from market volatility.​The system mimics a "digital sluice," using high-precision math to harvest fractional differences that standard rounded-math bots ignore. We are scaling from a prototype to a 30-node distributed network managing 100+ concurrent execution "hands."​Core Technical Requirements​Low-Level Rust Mastery: You must be an expert in the Tokio runtime, asynchronous programming, and memory-safe mathematical operations.​Solana Network Physics: Deep understanding of the Sealevel runtime, custom WebSocket/Lumen bridges, and avoiding gRPC bottlenecks.​Jito & MEV Optimization: Proven experience with Jito Bundles, transaction shredding, and tip-optimization to ensure first-block inclusion.​Distributed Orchestration: Ability to architect a master-node system that manages 30+ regional nodes with seamless failover and zero-loss state management.​Precision Math: All logic must operate on u64 integers (Lamports) to avoid floating-point rounding errors. We do not "round" to the dollar; we capture the 9th decimal.​Key Responsibilities​Engine Hardening: Audit and optimize the core Rust logic for 0-latency execution.​Node Orchestration: Build the "Master Switch" to deploy, monitor, and update 30 nodes across global regions simultaneously.​The "Tax" Logic: Implement a secure, automated "sweeper" protocol that collects fractional value from all child-nodes into a master treasury without interrupting execution.​Redundancy: Ensure the system is "Anti-Fragile"—if a validator or node fails, the 50-drop safety protocol must trigger an instant failover.
Payment in Crypto
3,000
Monthly
See details

Frontend Developer

Full time
Remote
Create intuitive, responsive user interfaces that deliver exceptional user experiences across our platform. You'll transform designs into pixel-perfect, performant applications while ensuring smooth interactions and real-time data visualization. We're looking for developers who are passionate about user experience, have an eye for design details, and can build complex web applications that handle large datasets efficiently while maintaining responsive, accessible interfaces across all devices and browsers.
Responsibilities:
Build responsive, performant web applications
Implement designs with attention to UX detail
Integrate with backend APIs and manage application state
Ensure cross-browser compatibility and accessibility
Payment in Crypto
2,500-3,000
Monthly
See details

LEAD Backend Engineer

Full time
Remote
Lead the architecture and development of our core backend systems, ensuring scalability, reliability, and performance across all services. You'll be responsible for making critical technical decisions, establishing engineering standards, and building systems that can handle massive scale. This role requires deep expertise in distributed systems, database design, and modern backend technologies, along with strong leadership skills to guide and mentor the engineering team.
Responsibilities:
Design and implement scalable backend architecture
Lead technical decisions and mentor backend team members
Optimize system performance and ensure high availability
Establish best practices for code quality and deployment
Payment in Crypto
4,000
Monthly
See details