Back to jobs

    About Crypto.com

    Founded in 2016, Crypto.com serves over 150 million customers globally as a leading cryptocurrency platform. Driven by the vision 'Cryptocurrency in Every Wallet™', we focus on security, privacy, and compliance to accelerate crypto adoption and empower a more equitable digital ecosystem. We are an equal opportunities employer, valuing diversity and inclusion to build a strong, dynamic team. Learn more at https://crypto.com.

    About the Position

    Introduction

    Crypto.com is seeking a highly experienced and dedicated Head of Enterprise Risk Management (ERM) to join our team. This pivotal role involves the comprehensive development, implementation, and ongoing management of the company's enterprise risk framework, alongside active participation in Business Continuity Management (BCM) planning and testing. You will also be crucial in coordinating with group-level risk and compliance functions to ensure consistent application of group-wide policies and reporting standards.

    This position requires relocation to Malta.

    Responsibilities

    Enterprise Risk Management (ERM)

    • Develop, maintain, and enhance the Enterprise Risk Matrix, Risk Register, and Control Logs, aligning with the company’s risk appetite and regulatory obligations.
    • Identify, assess, and monitor risks across all departments, implementing appropriate mitigation strategies.
    • Track and report on risk incidents and events, maintaining thorough documentation of root cause analysis, remediation, and control enhancements.
    • Ensure full alignment with MiCA, EMI regulatory requirements, and internal governance frameworks.

    Business Continuity Management (BCM)

    • Support the development and periodic review of the Business Continuity Plan (BCP) and Disaster Recovery Plan (DRP).
    • Participate in business impact analyses, risk scenario planning, and annual testing exercises.
    • Collaborate with operational and technical teams to ensure resilience measures are well-documented and effective.

    Information Security Risk Management

    • Assist in security compliance programs, including DORA, ISO27001, ISO27701, PCI-DSS, and SOC 2.
    • Participate in internal security and privacy assessments, as well as internal and external audits.
    • Provide complete and accurate responses to internal and third-party inquiries on information security compliance.

    Group Risk Coordination

    • Act as the primary liaison with group-level risk and compliance teams, ensuring local risk management aligns with broader group strategy and expectations.
    • Implement group-wide policies, standards, and procedures, customizing them for local regulatory and operational contexts.
    • Coordinate and support group risk reporting requirements, contributing to consolidated risk dashboards, reviews, and audits.

    Requirements

    • Bachelor’s or Master’s degree in Risk Management, Finance, Law, or a related field.
    • 5+ years of experience in enterprise or operational risk management within regulated financial services, fintech, or crypto-asset environments.
    • Strong working knowledge of MiCA, EMI frameworks, and relevant EU financial regulations.
    • Proven experience maintaining ERM tools, registers, and governance documentation.
    • Prior involvement in BCM/DRP planning and implementation.
    • Strong organizational and documentation skills with meticulous attention to detail.
    • Excellent stakeholder management and interdepartmental coordination abilities.
    • Analytical mindset with proactive problem-solving capabilities.
    • Strong communication skills, both written and verbal.
    • High integrity and professionalism in handling sensitive risk information.

    Nice to Have

    • Security-related certifications/qualifications such as CISSP, CRISC, CISM, CISA, ISO27001 LA, CIPT, CIPP/E.
    • Experience in a Cybersecurity or Information Security role.
    • Familiarity with group or multinational operating models.

    Benefits

    • Competitive salary
    • Medical insurance package with extended coverage for dependents
    • Attractive annual leave entitlement, including birthday and work anniversary leave
    • Work flexibility: Flexi-work hours and hybrid or remote setup options
    • Opportunities for internal mobility and career development
    • Crypto.com Visa card provided upon joining

    (Note: Specific benefits packages may vary by region. Further details available from the talent acquisition team.)

    About Company

    Founded in 2016, Crypto.com serves more than 150 million customers and is the world's fastest-growing global cryptocurrency platform. Our vision is simple: Cryptocurrency in Every Wallet™. Built on a foundation of security, privacy, and compliance, Crypto.com is committed to accelerating the adoption of cryptocurrency through innovation and empowering the next generation of builders, creators, and entrepreneurs to develop a fairer and more equitable digital ecosystem. Learn more at https://crypto.com.

    Crypto.com is an equal opportunities employer and committed to creating an environment where opportunities are presented to everyone transparently. We value diversity and inclusion, seeking candidates with a variety of backgrounds, perspectives, and skills that complement and strengthen our team.

    How to Apply

    Are you ready to kickstart your future with us? Apply directly through the Blockchain4Talent platform.

    Apply Now

    Your data is only shared with Crypto.com

    Location

    Sofia, Bulgaria

    Type

    Full-Time

    Keywords

    Enterprise Risk Management
    ERM
    Risk Management
    Compliance
    MiCA
    EMI
    Business Continuity Management
    BCM
    Information Security
    DORA
    ISO27001
    PCI-DSS
    SOC 2
    Fintech
    Cryptocurrency
    Blockchain
    Finance
    Regulatory Compliance
    Verified Company

    Head of Enterprise Risk Management

    Crypto.com