Chief Security Officer

The Chief Security Officer will formulate and implement the company's overall security strategy and build a comprehensive, systematic, compliant security system covering digital currency exchange, payment business, and global operations. The role leads identification, assessment, and mitigation of cyber, physical, data, operational, and compliance risks while maintaining security, regulatory compliance, reputation, and user trust.

Responsibilities

  • Develop the company's security strategy, roadmap, and risk appetite.
  • Establish and improve security governance policies, standards, processes, and procedures.
  • Lead security assessments, audits, compliance reviews, and reporting to executive leadership and the board.
  • Coordinate cross-departmental security integration across products, technology, operations, and business processes.
  • Lead network, application, endpoint, cloud, and blockchain security systems.
  • Manage the Security Operations Center and real-time monitoring, threat detection, and incident response.
  • Advance AI-driven threat intelligence, vulnerability scanning, penetration testing, and security orchestration.
  • Protect trading, payment, wallet, and user data systems.
  • Manage digital asset security, including cold and hot wallets, private keys, fund isolation, and anti-theft controls.
  • Establish physical security for offices, computer rooms, and data centers.
  • Coordinate with third-party security providers, partners, vendors, industry organizations, and regulators.
  • Ensure compliance with FATF, MiCA, data protection, and other global regulatory requirements.
  • Lead security compliance filings, audits, inspections, training, and awareness programs.
  • Develop incident response plans, lead major incident handling, and conduct post-incident reviews and root cause analysis.
  • Manage security crisis public relations and maintain brand reputation and user trust.
  • Build, manage, and develop the security team, including OKRs, performance systems, training, and career development.
  • Collaborate with product, technology, operations, compliance, customer service, payment, liquidity, and custody partners.
  • Participate in industry security exchanges and standards formulation.

Requirements

  • 10+ years of information security and risk management experience.
  • 5+ years of CSO or equivalent senior security management experience in compliant digital currency exchanges, payment institutions, or fintech companies.
  • Deep understanding of digital currency trading and payment business models and security risks.
  • Expertise in cyber, network, application, data, blockchain, and digital asset security.
  • Familiarity with FATF, MiCA, SFC, and other global digital currency and payment security regulations.
  • Experience with security compliance audits, regulatory inspections, incident response, crisis management, and security system construction.
  • Knowledge of SOC, SIEM, vulnerability scanning, penetration testing, encryption, and wallet security technologies.
  • Strong compliance and risk-control orientation.
  • Excellent leadership, team management, cross-functional coordination, and resource integration capabilities.
  • Excellent oral and written communication skills in Chinese and English.
  • Bachelor's degree or above in Computer Science, Information Security, Cybersecurity, Finance, Law, or a related field.
  • CISSP, CISM, CISA, CRISC, or ACAMS certification preferred.
  • Experience with licensing and compliance operations in major global markets preferred.
  • Experience in on-chain security, DeFi risk control, digital asset custody security, AML, major crypto security incidents, AI security, or zero-trust architecture preferred.

See also

要針對這個職缺調整履歷嗎?

目前無法檢查您與這個職缺的符合程度;請先將履歷加入個人檔案,下次即可查看。

A new version of freehire is available