About Direct Crypto Limited
Direct Crypto Limited is a newly established MiCA-regulated Crypto-Asset Service Provider (CASP) headquartered in Cyprus and part of the Wirex Holdings Ltd group.
We are building a compliance-first, institutionally focused crypto infrastructure platform providing safekeeping, exchange, and transfer services to regulated financial institutions, fintechs, and Web3 businesses across the EEA.
This is an opportunity to join a new entity at a pivotal stage of its development and play a key role in shaping its risk framework, governance, culture, and operating model from the ground up.
About the Role
We are looking for a highly capable and hands-on Risk Manager to lead the development and ongoing management of Direct Crypto Limited's Enterprise Risk Management Framework (ERMF).
Reporting to the Chief Operating & Risk Officer, you will play a key role in establishing robust risk management practices across the business and ensuring that material risks are identified, assessed, monitored, and appropriately mitigated.
You will work closely with executive leadership, senior stakeholders, and the Board, providing clear and insightful risk analysis and supporting sound, risk-based decision-making.
This is a foundational role requiring strong independence, analytical capability, stakeholder management, and the ability to operate effectively within a newly established and evolving regulated environment.
Risk Framework & Governance
- Design, implement, maintain, and continuously enhance a comprehensive Enterprise Risk Management Framework (ERMF) aligned with MiCAR, applicable CySEC requirements, and the firm's business strategy.
- Establish and maintain the firm's Risk Appetite Framework, Key Risk Indicators (KRIs), risk register, and risk reporting processes.
- Identify, assess, monitor, and report material risks across the organization.
- Prepare high-quality risk reports and management information for the Board of Directors, Management Board, and relevant governance committees.
- Provide independent risk insights and recommendations to senior management.
- Drive continuous improvement in risk management practices and promote a proactive, forward-looking approach to risk.
Regulatory & Compliance Risk Oversight
- Support the implementation and oversight of regulatory requirements under MiCAR, AMLR, DORA, and applicable CySEC requirements.
- Provide second-line risk oversight of financial crime and compliance controls, including AML/CFT, sanctions, and customer due diligence.
- Monitor regulatory developments and assess their potential impact on the firm's risk profile and control environment.
- Support regulatory licensing activities, filings, inspections, and responses to CySEC and other supervisory authorities where required.
- Identify and escalate regulatory and compliance risks to the appropriate governance forums.
Operational Risk & Resilience
- Establish and maintain an effective operational risk management framework across business operations.
- Identify, assess, monitor, and mitigate operational risks, including process, people, technology, and third-party risks.
- Support outsourcing and third-party risk management, including risk assessments and ongoing monitoring.
- Contribute to operational resilience and business continuity risk management.
- Support incident management, root cause analysis, remediation tracking, and lessons-learned activities.
- Monitor emerging risks and assess their potential impact on the firm's operations and strategic objectives.
Stakeholder Engagement & Risk Culture
- Promote a strong risk culture and ensure appropriate risk awareness and ownership across the organization.
- Provide clear and timely risk analysis and recommendations to the CORO, Managing Director, and Board.
- Work collaboratively with Compliance, Operations, Technology, Information Security, and other functions to identify and manage cross-functional risks.
- Challenge risk decisions and control effectiveness constructively and independently where appropriate.
- Support the resolution of complex or conflicting risk matters involving senior stakeholders through objective analysis and sound judgment.
- Engage with external risk professionals, industry bodies, and relevant stakeholders to strengthen the firm's risk management practices.
Essential Experience & Skills
- Minimum 3 years of experience in a risk management role within a payments firm, EMI, bank, fintech, or other regulated financial services environment.
- Demonstrable experience managing and assessing risks associated with digital assets, crypto-asset services, payments, or financial technology.
- Strong understanding of first- and second-line-of-defense responsibilities and effective risk governance.
- Practical experience developing or maintaining risk frameworks, risk registers, risk appetite frameworks, KRIs, and risk reporting.
- Experience presenting risk information and recommendations to senior management or governance forums.
- Strong understanding of operational risk and experience identifying, assessing, and mitigating operational risks.
- Strong analytical and data interpretation skills, with excellent attention to detail.
- Excellent written and verbal communication skills in English.
- Strong stakeholder management and influencing skills, with the ability to communicate complex risk matters clearly.
- Current residency in Cyprus is mandatory.
Preferred
- Previous experience within a MiCA, CASP, EMI, payments, or EU-regulated financial services environment.
- Familiarity with CySEC regulatory requirements and CASP authorization requirements.
- Experience with DORA, ICT risk, outsourcing risk, operational resilience, or third-party risk management.
- Professional certification such as FRM, IRM, CAMS, or an equivalent risk/compliance qualification.
- Experience working directly with regulators or supporting regulatory examinations and inspections.
- Greek language skills would be an advantage.
How You Work
We are looking for someone who:
- Takes a positive, proactive, and accountable approach to risk management.
- Demonstrates strong professional judgment and the confidence to challenge constructively when required.
- Builds effective relationships across functions and promotes collaboration between Risk, Compliance, and the wider business.
- Is comfortable working independently and taking ownership in a newly established and evolving organization.
- Is passionate about risk management excellence and continuous improvement.
- Takes initiative to improve risk practices, frameworks, controls, and reporting.
- Is adaptable and comfortable operating in an environment where processes and requirements continue to develop.
- Can influence and engage senior stakeholders through clear analysis and evidence-based recommendations.
- Handles sensitive and confidential information with discretion and professionalism.
- Contributes positively to a high-performance and collaborative team culture.
What We Offer
- Flexible working arrangements with hybrid working options.
- Annual training and professional development allowance.
- Support for relevant professional certifications, including FRM, IRM, or equivalent.
- The opportunity to help shape a MiCA-regulated entity from inception.
- A high-impact role with direct exposure to senior management and Board-level risk governance.
- Extensive career development opportunities within an innovative, globally regulated FinTech group.
- The opportunity to work as part of the wider Wirex Group.
Why Join Direct Crypto Limited?
This is an opportunity to join a new regulated entity at an important stage of its development and play a direct role in building its risk management framework from the ground up.
You will have meaningful exposure to enterprise risk, operational resilience, regulatory requirements, digital assets, and senior-level governance, helping establish the risk culture and practices that will support Direct Crypto Limited's long-term growth.
Direct Crypto Limited is an equal opportunity employer.