Head of ICT & Operations and CISO(AUSTRIA)
Internal referrals sharing
Legal & Compliance | Full-time
Key Responsibilities
ICT Strategy & Local Operations Management
Directly oversee the ICT infrastructure for BingX EU, ensuring 24/7 availability, scalability, and performance of the trading platform within the European jurisdiction.
Manage the "Physical Substance" of our local IT operations in Vienna, including local server management (where applicable), cloud region configurations, and local office IT security.
Lead the local Operations team to ensure seamless integration between global engineering and EU-specific requirements.
CISO & Security Governance
Define and implement the Information Security Strategy for BingX EU, aligning global security standards with local FMA and EBA (European Banking Authority) guidelines.
Act as the primary owner of the Information Security Management System (ISMS) based on ISO 27001 or NIST frameworks.
Oversee data protection and privacy measures in compliance with GDPR, specifically regarding the handling of EU user data and cryptographic keys.
DORA & MiCA Compliance
Serve as the primary lead for DORA compliance, ensuring the entity meets all requirements for ICT Risk Management, Incident Reporting, Digital Operational Resilience Testing, and Third-Party Risk monitoring.
Collaborate with the Compliance team to prepare for FMA audits and regulatory inspections, providing technical evidence of "Operational Substance" in Austria.
Incident Response & Business Continuity
Establish and lead local security operations and incident response for the EU entity.
Develop and rigorously test Business Continuity Plans (BCP) and Disaster Recovery (DR) strategies to protect the exchange against systemic shocks or cyber-attacks.
Vendor & Third-Party Oversight
Conduct technical due diligence on critical ICT third-party providers (Custody solutions, Cloud providers, KYC vendors) to ensure they meet EU regulatory security bars.
Requirements
Experience: 10+ years in a senior IT leadership or Security role (CISO, Head of IT, or Head of Infrastructure) within a regulated financial institution (VASP, Bank, or EMI).
Language Proficiency: Native or professional fluency in English (essential for local labor law and authorities) and high proficiency in German is a plus.
Regulatory Expertise: Deep, hands-on understanding of DORA, MiCA, and GDPR. Experience dealing directly with national regulators (like the FMA or BaFin) is highly advantageous.
Technical Mastery: Strong background in blockchain architecture, cold/hot wallet security, cloud-native environments (AWS/GCP), and API security.
Education: Master’s degree in Computer Science, Cyber Security, or a related field.
Certifications: Mandatory professional certifications such as CISSP, CISM, or CGEIT.
Leadership: Proven ability to manage cross-functional teams and communicate complex security risks to a Management Board.
Location: Based in or willing to relocate to Vienna, Austria.
#J-18808-Ljbffr
Internal referrals sharing
Legal & Compliance | Full-time
Key Responsibilities
ICT Strategy & Local Operations Management
Directly oversee the ICT infrastructure for BingX EU, ensuring 24/7 availability, scalability, and performance of the trading platform within the European jurisdiction.
Manage the "Physical Substance" of our local IT operations in Vienna, including local server management (where applicable), cloud region configurations, and local office IT security.
Lead the local Operations team to ensure seamless integration between global engineering and EU-specific requirements.
CISO & Security Governance
Define and implement the Information Security Strategy for BingX EU, aligning global security standards with local FMA and EBA (European Banking Authority) guidelines.
Act as the primary owner of the Information Security Management System (ISMS) based on ISO 27001 or NIST frameworks.
Oversee data protection and privacy measures in compliance with GDPR, specifically regarding the handling of EU user data and cryptographic keys.
DORA & MiCA Compliance
Serve as the primary lead for DORA compliance, ensuring the entity meets all requirements for ICT Risk Management, Incident Reporting, Digital Operational Resilience Testing, and Third-Party Risk monitoring.
Collaborate with the Compliance team to prepare for FMA audits and regulatory inspections, providing technical evidence of "Operational Substance" in Austria.
Incident Response & Business Continuity
Establish and lead local security operations and incident response for the EU entity.
Develop and rigorously test Business Continuity Plans (BCP) and Disaster Recovery (DR) strategies to protect the exchange against systemic shocks or cyber-attacks.
Vendor & Third-Party Oversight
Conduct technical due diligence on critical ICT third-party providers (Custody solutions, Cloud providers, KYC vendors) to ensure they meet EU regulatory security bars.
Requirements
Experience: 10+ years in a senior IT leadership or Security role (CISO, Head of IT, or Head of Infrastructure) within a regulated financial institution (VASP, Bank, or EMI).
Language Proficiency: Native or professional fluency in English (essential for local labor law and authorities) and high proficiency in German is a plus.
Regulatory Expertise: Deep, hands-on understanding of DORA, MiCA, and GDPR. Experience dealing directly with national regulators (like the FMA or BaFin) is highly advantageous.
Technical Mastery: Strong background in blockchain architecture, cold/hot wallet security, cloud-native environments (AWS/GCP), and API security.
Education: Master’s degree in Computer Science, Cyber Security, or a related field.
Certifications: Mandatory professional certifications such as CISSP, CISM, or CGEIT.
Leadership: Proven ability to manage cross-functional teams and communicate complex security risks to a Management Board.
Location: Based in or willing to relocate to Vienna, Austria.
#J-18808-Ljbffr
Head of ICT & Operations and CISO(AUSTRIA) Posted on 2026-06-04 | Legal & Compliance Legal & Co[...] Arbeitgeber: Atome
Als Arbeitgeber in Wien bieten wir eine dynamische und unterstützende Arbeitsumgebung, die auf Teamarbeit und kontinuierlichem Lernen basiert. Unsere Mitarbeiter profitieren von umfangreichen Weiterbildungsmöglichkeiten im Bereich Compliance und Anti-Geldwäsche sowie von einem attraktiven Vergütungspaket. Wir fördern eine Kultur der Integrität und des Vertrauens, die es unseren Mitarbeitern ermöglicht, in einem sich ständig weiterentwickelnden regulatorischen Umfeld erfolgreich zu sein.