Job Description, Responsibilities & Requirements
About the Position
Crypto.com is hiring a Head of Enterprise Risk Management in Malta. The Head of Enterprise Risk Management (ERM) is responsible for the development, implementation, and ongoing management of the company’s enterprise risk framework. This includes the maintenance of key risk documentation such as the ERM matrix, risk logs, and incident registers, as well as active involvement in Business Continuity Management (BCM) planning and testing.
Responsibilities
-
Enterprise Risk Management (ERM)
- Develop, maintain, and enhance the Enterprise Risk Matrix, Risk Register, and Control Logs in line with the company’s risk appetite and regulatory obligations.
- Identify, assess, and monitor risks across all departments, ensuring appropriate risk treatment and mitigation strategies are in place.
- Track and report on risk incidents and events, maintaining logs with thorough documentation of root cause analysis, remediation, and control enhancements.
- Ensure full alignment with MiCA and EMI regulatory requirements as well as internal governance frameworks.
-
Business Continuity Management (BCM)
- Support the development and periodic review of the Business Continuity Plan (BCP) and Disaster Recovery Plan (DRP).
- Participate in business impact analyses, risk scenario planning, and annual testing exercises.
- Work with operational and technical teams to ensure resilience measures are well-documented and effective.
-
Information Security Risk Management
- Assist in our security compliance programs, including but not limited to DORA, ISO27001, ISO27701, PCI-DSS, and SOC 2.
- Participate in internal security and privacy assessments, internal and external audits.
- Provide complete and accurate responses to internal and third-party enquiries on information security compliance.
-
Group Risk Coordination
- Act as the primary liaison with group-level risk and compliance teams, ensuring local risk management aligns with broader group strategy and expectations.
- Implement group-wide policies, standards, and procedures, tailoring them to the local regulatory and operational context.
- Coordinate and support group risk reporting requirements, contributing to consolidated risk dashboards, reviews, and audits.
Requirements
- Bachelor’s or Master’s degree in Risk Management, Finance, Law, or a related field.
- 5+ years of experience in enterprise or operational risk management within regulated financial services, fintech, or crypto-asset environments.
- Strong working knowledge of MiCA, EMI frameworks, and relevant EU financial regulations.
- Proven experience maintaining ERM tools, registers, and governance documentation.
- Prior involvement in BCM/DRP planning and implementation.
- Holders of security-related certifications/qualifications will be an advantage: CISSP, CRISC, CISM, CISA, ISO27001 LA, CIPT, CIPP/E.
- Experience in a Cybersecurity or Information Security role will be an advantage.
- Familiarity with group or multinational operating models is an advantage.
- Strong organizational and documentation skills with attention to detail.
- Excellent stakeholder management and interdepartmental coordination.
- Analytical mindset with proactive problem-solving ability.
- Strong communication skills, both written and verbal.
- High integrity and professionalism in handling sensitive risk information.
We Offer
- Competitive salary
- Medical insurance package with extended coverage to dependents
- Attractive annual leave entitlement including: birthday, work anniversary
- Work Flexibility: Flexi-work hour and hybrid or remote set-up
- Aspire career alternatives through our internal mobility program
- Work Perks: crypto.com visa card provided upon joining
About the Company
Founded in 2016, Crypto.com serves more than 150 million customers and is the world's fastest growing global cryptocurrency platform. Our vision is simple: Cryptocurrency in Every Wallet™. Built on a foundation of security, privacy, and compliance, Crypto.com is committed to accelerating the adoption of cryptocurrency through innovation and empowering the next generation of builders, creators, and entrepreneurs to develop a fairer and more equitable digital ecosystem.
Learn more at Crypto.com.
Crypto.com is an equal opportunities employer and we are committed to creating an environment where opportunities are presented to everyone in a fair and transparent way. Crypto.com values diversity and inclusion, seeking candidates with a variety of backgrounds, perspectives, and skills that complement and strengthen our team.
Personal data provided by applicants will be used for recruitment purposes only. We may use artificial intelligence tools to analyze the content of your Resume/CV against the specific requirements for the position. The purpose is to support our recruitment team in reviewing applications more effectively. These tools assist our recruitment team in their evaluation of your application by providing recommendations, but they do not replace human judgment. Final hiring decisions are ultimately made by humans who consider the insights generated by the tools along with other relevant information.
If you would like more details about how your personal information is processed, please contact us.
Locations: Saint Julian's, Malta
Categories: Cryptocurrency Jobs, Web3 Crypto Jobs, Remote Crypto Jobs, Compliance Web3 Jobs, Content Crypto Jobs, Security Web3 Jobs, Data Web3 Jobs, Talent Acquisition Crypto Jobs, Finance Web3 Jobs, AI Web3 Jobs, Full Time Web3 Jobs