Search...
Job for Web3 Beginners

Americas Regional Chief Information Security Officer (CISO)

OKX logo
OKX

OKX is a leading global cryptocurrency exchange offering a wide range of trading services, including spot and derivatives trading, as well as Web3 solutions.

C/O APPLEBY GLOBAL SERVICES (SEYCHELLES) LIMITED, Suite 202, 2nd Floor, Eden Plaza, Eden Island, PO Box 1352, Mahe, Victoria, Seychelles, Seychelles
About OKX

OKX is a global cryptocurrency exchange known for its trading services and financial products. The platform offers a wide range of features, including spot and derivatives trading, staking services, and a user-friendly interface suitable for both beginners and experienced traders.

View jobs by OKX

Skills

About the Role

You will lead audit defence, risk assessments, and technical architecture reviews across the Americas estate in a hands-on delivery role. You will own the regional security risk and compliance programme, including policy, controls, the risk register, regulatory engagement, and reporting. You will manage the US GRC lead directly and work closely with the US SecOps team lead on operational risk and incident response. You will build relationships with Legal, Compliance, Risk and Internal Audit, and represent security in Americas leadership forums. You will prepare for and take an increasing share of regulator and licensing engagement, building toward owning it outright. You will spot gaps before they become problems, raise issues, build action plans, and drive them through to delivery, starting as Deputy CISO with a clear path to the full Regional CISO role.

Requirements

  • Solid GRC and risk grounding, ideally from a regulated industry such as TradFi (bank, broker-dealer, payments) or regulated crypto
  • Enough technical depth to engage in architecture and risk conversations with highly technical engineers
  • Track record of genuine curiosity and self-directed learning
  • Confident, clear communication with executives, auditors and regulators
  • Comfortable with ambiguity
  • Happy to work as part of a lean team and within an outsourcing model to central Group affiliates
  • Nice to have: direct exposure to NYDFS, SEC, FinCEN or similar regulators
  • Nice to have: prior experience in a role building toward a CISO or equivalent leadership seat
  • Nice to have: digital assets or crypto industry familiarity

Responsibilities

  • Lead audit defence, risk assessments, and technical architecture reviews across the Americas estate
  • Own the Americas security risk and compliance programme, including policy, controls, risk register, regulatory engagement, and reporting
  • Manage the US GRC lead directly
  • Work closely with the US SecOps team lead on operational risk and incident response
  • Build relationships with Legal, Compliance, Risk and Internal Audit
  • Represent security in Americas leadership forums
  • Prepare for and take an increasing share of regulator and licensing engagement
  • Identify gaps, raise issues, build action plans, and drive them through to delivery

Benefits

  • L&D programs and education subsidy
  • Team building programs and company events
  • Wellness and meal allowances
  • Comprehensive healthcare schemes for employees and dependants
  • Performance bonus and long-term incentives