The vacancy is well-structured with clear responsibilities and company information, but lacks specific salary details.
Job description
At Crypto.com, our dedication to user security is led by our highly experienced Security Team. Comprising an international roster of seasoned cybersecurity experts, our team leads the company's Security, Privacy, and Security Compliance endeavors. The team includes holders of international patents for technologies integrated in our security architecture. Under the stewardship of a distinguished CISO recognized by the Forbes Technology Council and among the Global Top 100 CISOs, our team has consistently championed industry standards, acquiring certifications like ISO27001, ISO27701, ISO22301, PCI:DSS 3.2.1 (Level 1), NIST Tier 4, and SOC 2 Type II, in addition to the MPI License from Singapore MAS. Our Chief Information Security Officer reports directly to the CEO, underscoring the prioritization of security in our organization's hierarchy. Our Security Team not only places great emphasis on credentials and expertise but also deeply values hands-on experience, rapid cognition, and dynamic learning. The challenges in the world of crypto are ever-evolving, and as such, our team prides itself on quick adaptability and robust teamwork, ensuring that we stay ahead of potential threats and always safeguard our user base.
Responsibilities
- Identity Ecosystem Management: Manage and optimize a suite of core identity platforms (including Okta and Microsoft Entra ID), driving the end-to-end lifecycle for users and services
- Automation & Scripting: Build and maintain scripts (Python, Bash) to automate complex identity workflows, eliminate manual provisioning, and enhance operational efficiency
- Modern Workflow: Integrate AI technologies and LLMs into your daily process to accelerate development, analyze security logs, and maintain high-quality technical documentation
- Infrastructure Access Governance: Define and manage access patterns for infrastructure-level assets. This includes governing access to servers, databases, and clusters using tools like Teleport and AWS-native IAM
- Secure Access Engineering: Partner with DevOps to implement the principle of least privilege, focusing on the use of short-lived credentials and Just-in-Time (JIT) access for infrastructure environments
- Governance Enablement: Support the Governance team by automating and optimizing the access review process; you will build the technical workflows and reporting tools that enable efficient, data-driven compliance campaigns
- Compliance Standards: Ensure technical configurations across all tools adhere to SOC2/ISO27001 standards and assist in technical evidence collection for audits
Requirements
- 3–5 years of progressive experience managing enterprise-scale identity solutions
- Proven ability to manage and integrate multiple security tools simultaneously (e.g., Identity Providers, Access Management platforms, and Secrets Management solutions)
- Hands-on experience governing access and building automations within AWS. You should be familiar with AWS IAM, cross-account access patterns, and leveraging AWS services (e.g., Lambda, EventBridge) for security workflows
- Strong proficiency in Python or Bash with a track record of using APIs to automate security tasks
- Deep understanding of SAML, OAuth2, OIDC, and SCIM
- Strong troubleshooting skills and the ability to solve complex, systemic identity and access issues
Conditions
- Competitive salary
- Medical insurance package with extended coverage to dependents
- Attractive annual leave entitlement including: birthday, work anniversary
- Work Flexibility Adoption. Flexi-work hour and hybrid or remote set-up
- Aspire career alternatives through us. Our internal mobility program can offer employees a diverse scope.
- Work Perks: crypto.com visa card provided upon joining
About Crypto.com
Crypto.com is a leading cryptocurrency platform that provides services including trading, custody, payments, and Web3 solutions to accelerate the adoption of cryptocurrency worldwide. It operates in multiple jurisdictions with a focus on regulatory compliance and serves both retail and professional investors.
Crypto· 1000+· Hong Kong, Hong Kong SAR· Founded 2016· https://crypto.com