Graduate Hire 2024/25 - Security Engineer (Technology Governance, Certification & Audit)

2 Months ago • All levels

About the job

Job Description

OKX is looking for a Graduate Security Engineer to ensure the security and compliance of their platform. This role will involve organizing audits, handling due diligence requests, identifying security gaps, and designing security controls. Must have strong knowledge of information security principles and risk assessment skills.
Must have:
  • Information Security
  • Risk Assessment
  • Compliance Mindset
  • Technical Disciplines
Good to have:
  • Relevant Tech Stack
  • Cloud-based Linux
  • Distributed Architecture
  • Security Frameworks
Perks:
  • Competitive Compensation
  • L&D Programs
Not hearing back from companies?
Unlock the secrets to a successful job application and accelerate your journey to your next opportunity.
OKX will be prioritising applicants who have a current right to work in Singapore, and do not require OKX's sponsorship of a visa.
 
If you are interested in more than one Supernova role, please apply to your first preference. We will still consider you for all opportunities.
 
Who We Are
At OKX, we believe that the future will be reshaped by Crypto, ultimately contributing to every individual's freedom. OKX began as a crypto exchange giving millions of people access to crypto trading and over time becoming among the largest platforms in the world. In recent years, we have developed one of the most connected Web3 wallets used by millions to access decentralized crypto applications (dApps). OKX is a trusted brand by hundreds of large institutions seeking access to crypto markets on a reliable platform that seamlessly connects with global banking and payments. In the last year, OKX has expanded into new markets including Australia, Brazil, Netherlands, Singapore and Turkey, with plans to launch in the US, Belgium and the UAE.
We are deeply committed to shaping a fairer, more transparent and accessible society through blockchain technology. This is why we publish proof of reserves monthly, and continue to ship new innovative security features.
 
About OKX Graduate Program (Supernova)
The Supernova Program is a 3-year Career Accelerator Program that aims to fast-track, high performing graduates into technical experts and future leaders mainly in the fields of Product Engineering, Product Management, and Product Design. We firmly believe in the power of the new era. Join us to achieve your narrative around crypto.
 
As a graduate Security Engineer, you will put in your utmost efforts to ensure security and compliance of the OKX platform with millions of daily active users. You will work cross-functionally with design, product, and other engineering teams to identify and assess security and compliance risks, design and develop advanced security and compliance mechanisms and products, including based on requirements identified in collaboration with risk, compliance or legal teams. This is an opportunity to learn the full security and compliance life cycle of crypto and Web3 platforms and work along with a rapidly growing technology governance team ensuring the leading industry best practices on security and compliance are implemented.
 
What You’ll Be Doing
  • Organising, coordinating and facilitating audits by working with the auditors and obtaining evidence for audit requests.Handling due diligence requests and questionnaires received from regulators and other third parties.
  • Supporting business units in developing and maintaining relevant technology related documentation to support local licensing application and maintenance.
  • Identifying technology, security and compliance control gaps and coordinating with stakeholders to resolve the gaps. Communicate and bridge the gap between external regulatory or audit requirements and internal stakeholder operations.
  • Designing security and compliance controls to meet the requirements of best practices in application security, infrastructure security as well as regulatory compliance, and to coordinate with engineers to implement them.
  • Conducting security and control gap assessments, risk assessments and audits.
  • Developing and maintaining high-quality technical, security and organizational documentation, including policies, standard operating procedures, standards and guidelines.
  • Upholding security and technology best practices. Improving efficiency in cross-office/time zone collaboration.
  • Collaborate with team members and functional stakeholders to meet control requirements to demonstrate organizational security compliance.

What We Look For In You

  • Bachelors in Computer Science, Information Systems, Technology, Engineering, or related technical disciplines.
  • Solid knowledge of information security principles, control design, and implementation.
  • Holistic risk assessment skills to break down complex infrastructural and procedural issues to its basic principles for effective and controllable solutions.
  • Compliance first mindset. Ability to lead by example for internal and external stakeholders. Highlight organizational best practices and embrace our We Before Me principle.
  • Analytical with a positive problem-solving mindset, a proactive team player who embodies a growth mindset, flexible, and comfortable in navigating ambiguity with a global mindset. Able to manage multiple concurrent projects of different workloads, timelines and deadlines. Eager to develop in an organization with rapidly maturing technology and security posture. 
Nice to Haves
  • Knowledgeable in the relevant tech stack skillset for the respective specialization - relational databases, OS, networking, encryption and cryptography, identity and access management, change management / SDLC, cloud service architecture.
  • Familiarity with the cloud-based Linux environment. Knowledgeable in distributed architecture. Understanding of Kubernetes or container orchestration architecture.
  • Familiarity with Java/Python/Go, and with daily developing tools such as npm, gulp, web-pack, git.
  • Alibaba Cloud and AWS knowledge and certifications are a strong plus.
  • Familiarity with information security risk management and compliance frameworks and reporting standards (i.e. ISO 27001, NIST CSF, SOC 2 Common Criteria, CSA STAR) is a strong plus.
  • Familiarity with security and IT risk certifications from recognized bodies such as ISACA, ISC2, CompTIA, CSA (e.g.: CISA, CISSP, CCSP, CCSK).
  • Proficiency in speaking, reading and writing in both English and Mandarin to collaborate effectively with global and cross-functional team members.

Perks & Benefits

  • Competitive total compensation package
  • L&D programs and Education subsidy for employees' growth and development
  • Various team building programs and company events
  • Wellness and meal allowances
  • Comprehensive healthcare schemes for employees and dependants 
  • More that we love to tell you along the process!
 
 
View Full Job Description

Add your resume

80%

Upload your resume, increase your shortlisting chances by 80%

About The Company

Dubai, Dubai, United Arab Emirates (Hybrid)

Netherlands (On-Site)

Bucharest, Bucharest, Romania (On-Site)

Warsaw, Masovian Voivodeship, Poland (Remote)

View All Jobs

Get notified when new jobs are added by OKX

Similar Jobs

PlayStation Global - Application Security Engineer Intern - Undergraduate

PlayStation Global, United States (On-Site)

workato - Security Engineer II

workato, India (On-Site)

Postman - Senior Security Engineer, Detection & Response

Postman, United States (On-Site)

ION - Markets Product Security Engineer - UK

ION, United Kingdom (On-Site)

ION - Markets Product Security Engineer - UK

ION, United Kingdom (On-Site)

Aspire - Senior Information Security Engineer

Aspire, Indonesia (On-Site)

Vimeo - Sr. Application Security Engineer

Vimeo, Israel (Remote)

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Twitch - Software Engineer - Payments

Twitch, United States (Remote)

Stemuli Studios - AI Engineer - Core Education, Seattle

Stemuli Studios, United States (Hybrid)

Gameplay Galaxy - Data Scientist

Gameplay Galaxy, British Virgin Islands (Remote)

PlayStation Global - Senior Data Storyteller

PlayStation Global, United States (Hybrid)

company3methodstudios - Artist Management Coordinator

company3methodstudios, United States (Hybrid)

ESL FACEIT Group - EFG - Creative Director, Brand Marketing

ESL FACEIT Group - EFG, United Kingdom (Remote)

Push Gaming - Junior Game Mathematician

Push Gaming, United Kingdom (Hybrid)

The Workshop - Data Scientist

The Workshop, Spain (On-Site)

Larian Studios - Senior Gameplay Programmer

Larian Studios, Poland (On-Site)

Moon Active - Game Developer

Moon Active, Lithuania (On-Site)

Get notifed when new similar jobs are uploaded

Jobs in Singapore, Singapore

Ubisoft - Senior Specialist, Rewards

Ubisoft, Singapore (Hybrid)

Animoca Brands - Growth Lead

Animoca Brands, Singapore (Hybrid)

Hoyoverse - Data Scientist (Risk Control) - Fresh Grad

Hoyoverse, Singapore (On-Site)

Tencent - Data Scientist

Tencent, Singapore (On-Site)

Hoyoverse - Community Intern

Hoyoverse, Singapore (On-Site)

Hoyoverse - Data Scientist (Risk Control)

Hoyoverse, Singapore (On-Site)

Tencent - Compliance Project Management Intern

Tencent, Singapore (On-Site)

Polygon Labs - Provider Solution Architect (PSA)

Polygon Labs, Singapore (Remote)

Get notifed when new similar jobs are uploaded

Similar Category Jobs

Niantic - Computer Vision Software Engineer

Niantic, United States (Hybrid)

Niantic - Computer Vision Software Engineer

Niantic, United States (Hybrid)

Twitch - Software Engineer - Payments

Twitch, United States (Remote)

PlayStation Global - Business Intelligence Analyst, Data Literacy Services

PlayStation Global, United Kingdom (On-Site)

PlayStation Global - Senior Data Storyteller

PlayStation Global, United States (Hybrid)

Nexus Mods - Office Manager

Nexus Mods, United Kingdom (On-Site)

Polygon Labs - Technical Account Manager

Polygon Labs, (Remote)

Polygon Labs - Provider Solution Architect (PSA)

Polygon Labs, (Remote)

Push Gaming - Junior Game Mathematician

Push Gaming, United Kingdom (Hybrid)

DraftKings - Senior Office Administration Associate

DraftKings, United States (On-Site)

Get notifed when new similar jobs are uploaded