About the Role: The Internal Audit Specialist will be responsible for planning and executing the annual audit plan while ensuring compliance with Taiwan’s regulatory requirements and relevant international standards, including FATF and VASP guidelines.

The role will be responsible for evaluating the effectiveness of IT controls, cybersecurity controls, technology processes, and risk management frameworks across the organization.

The ideal candidate should have 3+ years of experience in internal audit, IT audit, cybersecurity audit, technology risk, or risk control, preferably within financial services, fintech, banking, payments, cryptocurrency, digital assets, or virtual asset organizations. The individual will work closely with Technology, Information Security, Compliance, Risk, Finance, and Business teams to identify control gaps, assess technology and cybersecurity risks, and drive remediation.

Responsibilities:

  • Develop, plan, and execute risk-based internal audits in line with the annual audit plan.
  • Evaluate the effectiveness of internal controls across operational, infrastructure, applications, cloud environments, cybersecurity and information security frameworks.
  • Assess the design and operating effectiveness of technology controls.
  • Identify and assess technology, operational, cybersecurity, and information-security risks.
  • Review controls around technology platforms supporting custody, wallets, transactions, APIs, and digital-asset operations, where applicable.
  • Assess technology and operational controls against applicable Taiwan’s regulatory requirements
  • Support audits relating to regulatory, compliance, and risk-control requirements.
  • Identify control gaps, risks, and process improvement opportunities; recommend corrective actions.
  • Prepare clear, detailed audit reports and present findings and recommendations to senior management.
  • Follow up on audit findings to ensure timely implementation of corrective measures.

Desired Candidate profile:

  • Bachelor's degree or above, majoring in Law, Risk Management
  • 3-5 years of experience in IT Audit, Cybersecurity Audit, Technology Risk, Information Security Risk, or Risk & Controls or risk control within the financial services or virtual asset industry
  • Experience with crypto custody operations, fintech environments, or blockchain-related processes is a strong advantage.
  • Strong knowledge of cybersecurity controls, access management, change management, incident management, vulnerability management, and cloud security and risk management frameworks.
  • Fluent in Communication - Both English & Mandarin
  • CIA, CISA, CISM,CRISC,CISSP , ISO 27001 Lead Auditor / Lead Implementer or other relevant audit/compliance certifications.
  • Strong analytical thinking, professional skepticism, and attention to detail.
  • Ability to work independently while managing cross-functional stakeholder expectations.
  • Excellent report writing and communication skills.

About Liminal : Liminal Custody is a digital asset management infrastructure platform, offering secure wallet infrastructure and custody-technology solutions for institutions across the digital asset spectrum. This allows organizations to enforce complex transaction policies, and automate their treasury operations, all while maintaining direct control over their assets.Founded in 2021, Liminal is certified with SOC 2 Type II, ISO 27001 & 27701 standards. Headquartered in Singapore, with offices across India, UAE, and Taiwan, Liminal serves clients across the APAC and MENA regions, helping them scale and manage digital asset operations securely and in compliance with regulatory standards.

Our website - https://www.liminalcustody.com/


Liminal Custody is an equal opportunity employer committed to fostering a diverse, inclusive, and respectful workplace. We do not discriminate on the basis of gender, religion, race, caste, colour, ethnicity, nationality, age, disability, marital status, sexual orientation, gender identity or expression, or any other characteristic protected by applicable laws.
We are committed to providing equal employment opportunities to all qualified candidates based on their skills, qualifications, experience, and business requirements subject to applicable work authorisation and local hiring requirements.