
Senior Manager, Software & Digital Asset Audit (AI Application SME)
- Singapore
- Permanent
- Full-time
- Serve as the subject matter expert for auditing the secure implementation of AI models within our products, focusing on resilience against AI-specific attack vectors like prompt injection and data poisoning.
- Leverage your deep expertise in AI application security to both lead our AI product assurance program and contribute to a wide range of audits across product security (AppSec) and digital asset security.
- Contribute to the annual risk-based audit plan by identifying emerging AI application security risks and scoping potential audit projects.
- Collaborate effectively with Engineering, Product, and security stakeholders to communicate audit findings, provide value-add recommendations, and monitor remediation plans.
- Develop and maintain expert knowledge of the evolving AI threat landscape and security best practices to ensure audit approaches remain current and effective.
- Crypto & Blockchain Acumen: Prior experience with a crypto exchange or crypto product is highly preferred. You must have a fundamental understanding of blockchain technology, including distributed ledgers, consensus mechanisms, and cryptography.
- AI Application Auditing (SME): Deep expertise in auditing the secure implementation and integration of AI models within proprietary software, focusing on input/output validation and resilience against AI-specific attack vectors.
- Critical Thinking for Complex Environments: A proven capacity to analyze novel technical and control environments unique to crypto, identify intricate root causes, and propose effective, context-specific solutions.
- Data Analysis & SQL: Experience using SQL for data analysis is highly desired. The ability to achieve proficiency in performing data analytics with SQL within the first 90 days is required.
- Broad Expertise Across Software & Digital Asset Security: Demonstrable experience auditing the design and effectiveness of controls in several of the following areas:
- Product & Application Security (AppSec): Performing deep technical dives into the Secure Software Development Lifecycle (SDLC) and auditing application controls.
- Digital Asset & Blockchain Security: Auditing the ecosystem that secures crypto-asset operations, such as Smart Contracts or Wallet Infrastructure.
- Comprehensive healthcare schemes for employees and dependants
- More that we love to tell you along the process!