Graduate Hire 2024/25 - Security Engineer (Technology Governance, Governance support)

4 Months ago • Upto 1 Years • Cyber Security

Job Summary

Job Description

This role requires a graduate with a Bachelor's in Computer Science or related fields, solid knowledge of information security principles, risk assessment skills, and a compliance-first mindset. You will design, develop, and maintain the organization's information security management system, conduct audits, and uphold security best practices.
Must have:
  • Information Security
  • Risk Assessment
  • Compliance Mindset
  • Security Principles
Good to have:
  • Relevant Tech Stack
  • Cloud-Based Linux
  • Distributed Architecture
  • Kubernetes
Perks:
  • Competitive Compensation
  • L&D Programs

Job Details

OKX will be prioritising applicants who have a current right to work in Hong Kong, and do not require OKX's sponsorship of a visa.
 
If you are interested in more than one Supernova role, please apply to your first preference. We will still consider you for all opportunities.
 

Who We Are

At OKX, we believe that the future will be reshaped by Crypto, ultimately contributing to every individual's freedom. OKX began as a crypto exchange giving millions of people access to crypto trading and over time becoming among the largest platforms in the world. In recent years, we have developed one of the most connected Web3 wallets used by millions to access decentralized crypto applications (dApps). OKX is a trusted brand by hundreds of large institutions seeking access to crypto markets on a reliable platform that seamlessly connects with global banking and payments. In the last year, OKX has expanded into new markets including Australia, Brazil, Netherlands, Singapore and Turkey, with plans to launch in the US, Belgium and the UAE. We are deeply committed to shaping a fairer, more transparent and accessible society through blockchain technology. This is why we publish proof of reserves monthly, and continue to ship new innovative security features.
 

About OKX Graduate Program (Supernova)

The Supernova Program is a 3-year Career Accelerator Program that aims to fast-track, high performing graduates into technical experts and future leaders mainly in the fields of Product Engineering, Product Management, and Product Design. We firmly believe in the power of the new era. Join us to achieve your narrative around crypto.
As a graduate Security Engineer, you will put in your utmost efforts to ensure security and compliance of the OKX platform with millions of daily active users. You will work cross-functionally with design, product, and other engineering teams to identify and assess security and compliance risks, design and develop advanced security and compliance mechanisms and products, including based on requirements identified in collaboration with risk, compliance or legal teams. This is an opportunity to learn the full security and compliance life cycle of crypto and Web3 platforms and work along with a rapidly growing technology governance team ensuring the leading industry best practices on security and compliance are implemented.
 

What You’ll Be Doing

  • Designing, developing, and maintaining the organization's information security management system across all domains, including but not limited to infrastructure management, application management, data management.
  • Designing security and compliance controls to meet the requirements of best practices in application security, infrastructure security as well as regulatory compliance, and to coordinate with engineers to implement them.
  • Conducting security and control gap assessments, risk assessments and audits.
  • Developing and maintaining high-quality technical, security and organizational documentation, including policies, standard operating procedures, standards and guidelines.
  • Upholding security and technology best practices. Improving efficiency in cross-office/time zone collaboration.
  • Collaborate with team members and functional stakeholders to meet control requirements to demonstrate organizational security compliance.
  • Communicate and bridge the gap between external regulatory or audit requirements and internal stakeholder operations.
 

What We Look For In You

  • Bachelors in Computer Science, Information Systems, Technology, Engineering, or related technical disciplines.
  • Solid knowledge of information security principles, control design, and implementation.
  • Holistic risk assessment skills to break down complex infrastructural and procedural issues to its basic principles for effective and controllable solutions.
  • Compliance first mindset. Ability to lead by example for internal and external stakeholders. Highlight organizational best practices and embrace our We Before Me principle.
  • Analytical with a positive problem-solving mindset, a proactive team player who embodies a growth mindset, flexible, and comfortable in navigating ambiguity with a global mindset. Able to manage multiple concurrent projects of different workloads, timelines and deadlines.
  • Eager to develop in an organization with rapidly maturing technology and security posture.
  • Proficiency in speaking, reading and writing in both English and Mandarin.
 

Nice to Haves

  • Knowledgeable in the relevant tech stack skillset for the respective specialization - relational databases, OS, networking, encryption and cryptography, identity and access management, change management / SDLC, cloud service architecture.
  • Familiarity with the cloud-based Linux environment. Knowledgeable in distributed architecture. Understanding of kubernetes or container orchestration architecture.
  • Familiarity with Java/Python/Go, and with daily developing tools such as npm, gulp, webpack, git.
  • Alibaba Cloud and AWS knowledge and certifications are a strong plus.
  • Familiarity with information security risk management and compliance frameworks and reporting standards (i.e. ISO 27001, NIST CSF, SOC 2 Common Criteria, CSA STAR).
  • Familiarity with security and IT risk certifications from recognized bodies such as ISACA, ISC2, CompTIA, CSA (e.g.: CISA, CISSP, CCSP, CCSK) is a strong plus.
  • Proficiency in Cantonese.
 

Perks & Benefits

  • Competitive total compensation package
  • L&D programs and Education subsidy for employees' growth and development
  • Various team building programs and company events
  • Wellness and meal allowances
  • Comprehensive healthcare schemes for employees and dependants
  • More that we love to tell you along the process!

Similar Jobs

PhonePe - Merchant Risk Investigator, T&S Ops

PhonePe

Bengaluru, Karnataka, India (On-Site)
3 Months ago
ION - Product Management Analyst

ION

Pune, Maharashtra, India (On-Site)
4 Months ago
Google - Program Manager, CISO Remediations

Google

(On-Site)
2 Months ago
RTX - Manager - Digital Software Contracts

RTX

Bengaluru, Karnataka, India (On-Site)
2 Months ago
PwC - Senior Cyber Security Associate

PwC

Athens, Greece (Hybrid)
4 Months ago
PwC - IN-Senior Associate_ S&G _IT Risk _Advisory _Pune

PwC

Pune, Maharashtra, India (On-Site)
4 Months ago
PwC - Penetration Tester (m/f)

PwC

Bratislava, Bratislava Region, Slovakia (On-Site)
3 Months ago
PwC - AES SAP GRC Security Senior  Associate  Operate.

PwC

Bengaluru, Karnataka, India (On-Site)
4 Months ago
PwC - External Audit Senior Associate

PwC

Montreal, Quebec, Canada (Hybrid)
4 Months ago
Palo Alto Networks - Domain Consultant - Network Security

Palo Alto Networks

Doha, Doha Municipality, Qatar (Remote)
3 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

PhonePe - Associate Manager– Finance & Accounts

PhonePe

Bengaluru, Karnataka, India (On-Site)
3 Months ago
Fliff  Inc  - Social Sportsbook Product Manager

Fliff Inc

Sofia, Sofia City Province, Bulgaria (Remote)
3 Months ago
Luxoft - Release Train Manager

Luxoft

Chennai, Tamil Nadu, India (On-Site)
2 Months ago
PwC - Cybersecurity Associate Private _ Roma

PwC

Rome, Lazio, Italy (On-Site)
4 Months ago
Luxoft - Senior Java Developer

Luxoft

Chile Chico, Aysén, Chile (Remote)
2 Months ago
HP - Internal Audit  IT & Application Controls Project Lead

HP

Tlaquepaque, Jalisco, Mexico (On-Site)
4 Months ago
Fabric - Director, Systems Engineering (Chinese/English bi-lingual)

Fabric

Los Angeles, California, United States (On-Site)
4 Months ago
Zoox - Senior Technical Program Manager - System Safety Clearance

Zoox

Foster City, California, United States (Hybrid)
3 Months ago
ION - Senior Risk Analyst, Italy

ION

Pisa, Tuscany, Italy (On-Site)
4 Months ago
Modoyo - Senior QA Lead

Modoyo

Stockholm, Stockholm County, Sweden (Hybrid)
4 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Hong Kong

NAH.io - UI Technical Artist (GAME)

NAH.io

Hong Kong (On-Site)
3 Months ago
The Walt Disney Company - Facilitator of the Youth Education Series – Part Time

The Walt Disney Company

Hong Kong (On-Site)
3 Months ago
Animoca Brands - Senior Blockchain /Smart Contract Architect

Animoca Brands

Hong Kong (Hybrid)
4 Months ago
OKX - Graduate Hire 2024/25 - Software Engineer

OKX

Hong Kong (On-Site)
4 Months ago
The Walt Disney Company - HR Business Partner

The Walt Disney Company

Hong Kong (On-Site)
3 Months ago
OKX - Compliance Analyst, Market Surveillance

OKX

Hong Kong (On-Site)
4 Months ago
The Walt Disney Company - Entertainment Technician - Full Time(HKD$6,000 Special Welcome Reward)

The Walt Disney Company

Hong Kong (On-Site)
3 Months ago
OKX - Senior Risk Manager, (Trading, 24/7 team)

OKX

Hong Kong (On-Site)
3 Months ago
The Walt Disney Company - Technician (Building&Architectural) (HKD$6,000 Special Welcome Reward)

The Walt Disney Company

Hong Kong (On-Site)
3 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Intel Corporation - Information Systems Security Officer (ISSO)

Intel Corporation

Santa Clara, California, United States (On-Site)
3 Months ago
Notion - Application Security Engineer

Notion

San Francisco, California, United States (On-Site)
3 Months ago
Google - Staff Software Engineer, Security/Privacy, Google Cloud

Google

Sunnyvale, California, United States (On-Site)
3 Months ago
Palo Alto Networks - Prisma Cloud Solution Architect

Palo Alto Networks

Philadelphia, Pennsylvania, United States (Remote)
3 Months ago
PwC - Oracle Commerce Cloud - Senior Associate

PwC

Bengaluru, Karnataka, India (On-Site)
3 Months ago
Rocket - DevSecOps Engineer

Rocket

Chennai, Tamil Nadu, India (On-Site)
5 Years ago
Upstox - Security Engineer II - Cyber Defence

Upstox

Mumbai, Maharashtra, India (On-Site)
3 Months ago

Get notifed when new similar jobs are uploaded