About this Risk Manager - Country & Operational Risk role at Coinbase
Ready to do the most impactful work of your career? At Coinbase, we are uncompromising on our mission to increase economic freedom. The bar is high, the environment is intense, and we like it that way. This isn't a place for complacency, it’s a place to be pushed past your perceived limits. If you're ready to build the future of finance alongside people who refuse to settle for "good enough," you belong here. Coinbase is a remote-first, but not remote-only company. Expect to get together quarterly for intense in-person working sessions called “surges.” learn more about working at Coinbase.
CB Payments, Ltd (CBPL) is Coinbase’s UK‑incorporated electronic money institution, authorised and supervised by the FCA and registered as a cryptoasset exchange and custodian wallet provider, enabling customers to move between fiat and crypto and access Coinbase’s UK platform.
This dual‑hatted role serves both as CBPL’s 2LoD Country Risk Manager and as a Risk Manager within Global Operational Risk Management (ORM), running the local risk framework for the UK entity and contributing to Coinbase’s enterprise‑wide operational risk programs so that risks remain within appetite while the UK business grows safely.
What you'll be doing:
CBPL Country Risk (entity 2LoD)
- Run CBPL’s entity‑level risk framework in line with CBPL Risk Policy, Methodology and Appetite, covering financial, operational, technology, outsourcing, conduct and regulatory risks.
- Lead and challenge RCSAs, incident/issue management, KRIs/KCIs and risk‑appetite monitoring for CBPL, including MiFID‑related change as the licence is pursued.
- Provide 2LoD risk challenge on products, change initiatives and governance, and prepare clear, decision‑useful risk MI for the CBPL Risk Committee, Board and key working groups.
- Oversee CBPL’s outsourcing and intra‑group risk (GSAs/SLAs, exit plans, third‑party concentration, resilience) and support operational resilience work on important business services.
- Support CBPL’s ICARA, prudential planning and regulatory engagement with country‑level risk input, scenarios and remediation tracking.
Operational Risk Manager, Global ORM (group role)
- Help design, enhance and embed Coinbase’s global Operational Risk Management framework (RCSA, incident and loss data, key controls, KRIs, scenario analysis, business resiliency).
- Own or co‑own one or more global ORM program areas (e.g. incident management, non‑financial risk assessment, resilience, third‑party risk, loss analytics), coordinating virtual squads across entities.
- Act as a trusted 2LoD partner to global product and operations teams, reviewing new products and change for operational‑risk impacts with a particular focus on items affecting CBPL and the UK footprint.
- Enhance operational‑risk MI and dashboards for senior management and Board‑level forums, bringing CBPL insight into the enterprise view of operational risk.
Leadership & culture
- Champion a strong risk culture across CBPL and Global ORM, clarifying 1LoD/2LoD roles, encouraging early escalation and embedding UK regulatory expectations in everyday decisions.
- Coach first‑line and functional leaders on prudential, operational, outsourcing and conduct risk in a simple, practical way.
- Role‑model Coinbase culture and leadership principles, including clear written and verbal communication, ownership mindset and bias for action.
What we look for in you (ie. job requirements):
- Demonstrates the ability to responsibly use generative AI tools and copilots (e.g., LibreChat, Gemini, Glean) in daily workflows, continuously learn as tools evolve, and apply human‑in‑the‑loop practices to deliver business‑ready outputs and drive measurable improvements in efficiency, cost, and quality.
Experience & technical skills
- 7–10+ years of risk‑management experience in UK‑regulated financial services, with strong exposure to operational and enterprise risk.
- Deep understanding of core risk‑management and operational‑risk concepts, including risk governance, three lines of defence, RCSA, incidents/issues, KRIs/KCIs, risk appetite and stress testing.
- Practical experience engaging with UK regulation (e.g. SYSC, MiFIDPRU/IFPR, operational resilience, outsourcing, conduct and Consumer Duty) and applying it to risk frameworks.
- Prior experience working in or closely with 2LoD functions, engaging Boards, senior management, regulators and internal audit.
Ways of working
- Demonstrated ability to design and implement risk processes and procedures for effective risk management at both entity and group level.
- Strong organisation, project and time‑management skills; able to manage multiple workstreams, prioritise effectively and deliver high‑quality output under tight deadlines.
- Proven track record of building effective relationships with business partners, peers and senior leaders across global, matrixed organisations.
- Comfortable operating in a fast‑paced, high‑growth, technology‑led environment with changing priorities.
Mindset and culture add
- Positive energy and optimism about the future of technology and finance, with deep curiosity about prudential, conduct and operational risk and how crypto intersects with traditional markets.
- Appreciates direct communication and candid feedback and uses both to continuously improve; can pivot quickly between priorities with a “can‑do”, end‑to‑end ownership mindset.
- Wants to be part of a high‑performing, remote‑first team and is comfortable being pushed out of their comfort zone.
Nice to haves:
- Hands‑on experience with risk governance tooling (e.g. RSA Archer or similar GRC platforms) and building risk MI and dashboards.
- Prior exposure to crypto, digital assets or other innovative financial‑technology businesses.
- Relevant qualifications in risk management, operational risk, MiFID/IFPR or internal audit (e.g. IRM, FRM, PRM, CFA or equivalent).
Position ID: P76566
#LI-Remote
Pay Transparency Notice: The target annual base salary for this position can range as detailed below. Total compensation may also include equity and bonus eligibility and benefits (including medical, dental, and vision).
- Application Limit: Candidates may submit a maximum of 3 applications within a 6-month period.
- Equal Opportunity Employer: Coinbase is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status, or genetic information. Applicants with criminal histories will be considered consistent with applicable federal, state, and local laws.
- US Applicants: View Employee Rights, Know Your Rights, and E-Verify Notice of Participation.
- Accommodations: If you are an individual with a disability who needs a reasonable accommodation, email us your request and contact info at accommodations[at]coinbase.com. Need screen reading technology? Click here to download a free compatible screen reader and view the tutorial.
- Data Privacy & Arbitration: By submitting your application, you agree to our Candidate Privacy Notice. US applicants: By submitting your application, you agree to Arbitration of Disputes.