About the Role
We are looking for an experienced technology risk professional to join our clients expanding team, responsible for the various risks in the blockchain/ Web3 ecosystem, helping to navigate the complex intersection of blockchain technology, regulatory change, and risk management.
This is a great opportunity to move beyond traditional technology risk and into one of the most dynamic and fast-moving sectors in finance. You will have a platform to influence and build a career at the forefront of the digital economy.
Key Responsibilities
- Lead and manage complex projects focused on blockchain and virtual asset risk.
- Assess risks including those related to wallet infrastructure, private key management, consensus mechanisms, and token governance, translating technical understanding into practical control frameworks.
- Help design internal control structures and governance protocols aligned with the expectations of regulators like the HKMA and SFC, as well as international standards.
- Stay ahead of emerging trends like real-world asset (RWA) tokenization and DeFi.
- Develop and refine risk assessment methodologies and toolkits for the virtual asset space.
- Mentor and develop high-performing team, fostering deep expertise in blockchain technology and risk management.
Candidate Profile
- Relevant experience in financial services, with a strong background in technology risk, IT audit or cybersecurity. This experiencemust include direct exposure to blockchain, cryptocurrencies, or virtual assets.
- A deep, demonstrable understanding of the inherent risks of blockchain technology. This includes practical knowledge of
- Wallet & Key Management: The operational and security risks of hot/cold wallets, multi-signature setups, and private key custody.
- Token & Protocol Risk: The ability to assess risks associated with different token standards and blockchain protocols.
- Governance Frameworks: Experience in designing or assessing governance models for decentralized systems or digital asset operations (acknowledging that this is an evolving field).
- Must possess a strong technical understanding of blockchain fundamentals, cryptocurrencies, tokenization, and the broader Web3 ecosystem to credibly engage with both technical and non-technical stakeholders.
- Regulatory Knowledge: Familiarity with the Hong Kong regulatory landscape for virtual assets (HKMA, SFC guidelines) and international crypto compliance frameworks.
- Standards & Frameworks: Experience with industry-standard control frameworks (e.g., COBIT, ISO 27001) and familiarity with attestation reports (e.g., SOC reports) is highly advantageous.
- Qualifications: A Bachelors or Masters degree in a relevant field (Finance, Accounting, Computer Science, Information Systems). Professional certifications such as CISA, CISSP, or CISM are strongly preferred.
- Soft Skills: Excellent leadership and communication skills, with a proven ability to manage teams, coach junior professionals, and build expertise in emerging technology risks.
Less experienced candidates will be considered for a more junior position.
How to apply
If you are interested in discussing this role further, please apply for the position or contact Christy Zhang at cz@escorporatefunctions.com (Job code 73814).