Join us in building the future of finance.
Our mission is to democratize finance for all. An estimated $124 trillion of assets will be inherited by younger generations in the next two decades. The largest transfer of wealth in human history. If you’re ready to be at the epicenter of this historic cultural and financial shift, keep reading.
About the team & role
We are building an elite team, applying frontier technologies to the world’s biggest financial problems. We’re looking for bold thinkers. Sharp problem-solvers. Builders who are wired to make an impact. Robinhood isn’t a place for complacency, it’s where ambitious people do the best work of their careers. We’re a high-performing, fast-moving team with ethics at the center of everything we do. Expectations are high, and so are the rewards.
Bitstamp made history in 2011 as the world’s first regulated crypto exchange. Today, we are entering an ambitious new chapter as part of the Robinhood family. The Risk team's mission is to safeguard Robinhood's operations by providing robust second-line oversight of technology and cyber risk. We focus on protecting our customers and maintaining the trust of regulators and partners. We collaborate with security, engineering, and product teams to ensure our technology arrangements are resilient and secure. Our team values rigorous analysis, open communication, and proactive risk management! Together, we ensure that our digital asset and brokerage services scale safely.
As ICT Risk Oversight Lead , you will serve as a key representative of the second line of defense for cyber and technology risk, providing independent challenge and oversight across technology operations, major change initiatives, risk appetite monitoring, and cyber and IT governance. In this role, you will review whether the business is operating within our risk appetite, assess the effectiveness of technology-related controls, and support regulatory alignment. You will also help strengthen oversight of outsourced and intra-group technology and information security activities. This is an exciting opportunity to report directly to the Head of Risk & Authorized Manager and drive the safety of our Luxembourg operations!
In this role, you will review whether the business is operating within risk appetite, assess the effectiveness of technology-related controls, support regulatory alignment, and help strengthen oversight of outsourced and intra-group technology and information security activities.
This role is based in our Luxembourg office, with in-person attendance expected at least 3 days per week.
At Bitstamp by Robinhood, we believe in the power of in-person work to accelerate progress, spark innovation, and strengthen community. Our office experience is intentional, energizing, and designed to fully support high-performing teams.
What you'll do
- Implement and enhance the ICT Risk Management framework, including policies and procedures, in alignment with Robinhood group standards and Bitstamp's jurisdictional regulatory requirements.
- Provide 2LOD oversight and monitoring across key technology and security initiatives and business-as-usual operations, including the review of and identification of issues, and ongoing review of risk metrics and indicators.
- Carry out risk assessments for new products and for existing systems, processes, and technology arrangements.
- Act in a 2LOD capacity collaborating with the IT and Security organizations, including close partnership with CISO and other relevant stakeholders.
- Enhance the risk appetite framework and KRIs for ICT risks, perform independent reviews, and provide independent challenge to 1LOD.
- Report findings, risk themes, and regular updates through established governance cadences and management bodies.
- Promote ICT risk awareness and help strengthen risk culture across the organization.
- Champion the effective and secure use of AI to support automation, efficiency, and scalable risk management practices.
What you bring
- 8+ years of experience in cyber, technology, or ICT risk, with a strong understanding of second line oversight, control effectiveness, and independent challenge.
- Experience in a highly regulated environment, ideally in financial services, including interaction with regulatory expectations and governance processes.
- Strong understanding of ICT, cyber, and operational risks specific to cryptocurrency and digital asset businesses, including exchange and custody models, third-party dependencies, technology resilience, and heightened regulatory expectations.
- Strong knowledge of relevant ICT and cyber regulatory requirements, including DORA, MiCA, EU AI Act, CSSF expectations, and related European frameworks.
- Experience across technology risk, control assurance, incident response, and internal control environments; technology audit experience is a strong plus.
- Ability to assess complex technology and security risks, provide practical challenge to first-line teams, and influence outcomes across business and technical stakeholders.
- Experience in business continuity, identity and access management, secure software development.
- Relevant professional certifications such as CISSP, CISA, CISM, or CRISC are strongly preferred; ISO 27001, ISO 22301, or similar certifications are a plus.
- Strong written and verbal communication skills in English, with the ability to build trusted relationships and operate effectively across functions.
What we offer
- Challenging, high-impact work to grow your career.
- Performance driven compensation with multipliers for outsized impact and bonus programs.
- Top tier benefits to fuel your work, including supplemental health insurance, ancillary insurance, and mental health support programs.
- Lifestyle wallet - a highly flexible employer-paid benefits spending account expenses beyond traditional benefits such as wellness, childcare, learning, and more.
- Time off to recharge including company holidays, paid time off, sick time, paid volunteer time off, parental leave, and more!
- Exceptional office experience with catered meals, events, and comfortable workspaces.
- Monthly commuter stipend to help offset in-office commuting costs.
Click here to learn more about our Total Rewards, which vary by region and entity.
If our mission energizes you and you’re ready to build the future of finance, we look forward to seeing your application.
Robinhood provides equal opportunity for all applicants, offers reasonable accommodations upon request, and complies with applicable equal employment and privacy laws. Inclusion is built into how we hire and work—welcoming different backgrounds, perspectives, and experiences so everyone can do their best. Please review the Privacy Policy for your country of application.