Reap

Data Access Control Analyst

Reap Hong Kong, Hong Kong Island, Hong Kong S.A.R.

Information Technology & Services · 201-500 employees

6 h ago
Mid (2-5 yrs) Full-time Singapore
Log in to apply, save this posting, or score it against your profile with AI.

About the role

The Data Access Control Analyst will define and enforce data segregation policies by maintaining access registers and conducting monthly certification reviews. They will also build audit logs, configure SIEM alert rules, and ensure compliance with GDPR and other regulatory data access requirements.

What they look for

Data governance IAM Okta SQL Access certification GDPR compliance Audit trails SIEM Data classification Evidence management Risk management Compliance reporting Security engineering Data segregation Regulatory compliance

Requirements

Candidates must have proven experience in user access review processes, IAM platform management, and SQL for data reporting. A strong understanding of third-party data access breach fundamentals and regulatory-quality evidence management is essential.

Benefits

Annual leave Health insurance budget Flexible remote work options Home office equipment budget Corporate Reap Card

Full description

About Reap

Reap is a leading global payment technology provider that enables financial connectivity and access for businesses worldwide. By merging traditional finance with digital assets, bridging disparate economies, and connecting key financial players, we are transforming the financial landscape into a more interconnected and interoperable space for efficient money movement.

With stablecoin‑enabled corporate cards, payout solutions, and expense management tools, we streamline financial operations and empower businesses to scale. Our APIs enable businesses to embed finance into their own products and services, from issuing Visa cards to facilitating cross‑border payments.

Reap is supported by a strong network of investors, including Acorn Pacific Ventures, Arcadia Funds, HashKey Capital, Hustle Fund, Fresco Capital, Abacus Ventures, and Payment Asia.

Founded in 2018

Security at Reap

Reap builds financial connectivity for a multi‑rail world-traditional finance, stablecoins, and real‑time payments. Security is foundational to that mission. We're looking for a pragmatic engineer who can turn regulation into robust systems, and complex threats into clear controls. You'll partner with Engineering, Risk, and Operations to keep value moving safely, globally, and 24/7.

Your Mission

The Data Governance Manager (DG-01) will define the data segregation policy. You will enforce it.

Client requires that no Payward/Kraken employee can access client data held at Reap. That means maintaining a live register of Payward-affiliated identities, running monthly access certification reviews, building the audit trail that proves the boundary is clean, and alerting when something looks wrong. This is a technical, evidence-driven role where the output is a defensible compliance position, not a policy document.

What You Will Do

  • Maintain a live register of all Payward-affiliated personnel and map their access rights across every Reap system that touches client data.
  • Run monthly access certification reviews: confirm no Payward-affiliated identity (employee, contractor,service account, or API key) has access to data. Document findings and exceptions with full audit trail.
  • Build and maintain the Binance data access audit log: who accessed what, from which system, when. Produce a monthly report for the Data Governance Manager and CISO.
  • Work with the Detection/SecOps Security Engineer to configure SIEM alert rules that fire if any Payward-affiliated identity attempts to access data environments.
  • Manage the DSAR process for any data subject request referencing data, working alongside our external DPO.
  • Keep data classification labels current across all systems that hold data: databases, dashboards, data warehouses, file storage, and analytics environments.
  • Update our GDPR Article 30 ROPA entries for client data flows whenever new products, geographies, or partners are added.

Your Superpowers

  • You have run user access review and certification processes. Not just set them up. You run the monthly cycle, handle exceptions, and escalate cleanly.
  • IAM platform experience. Okta strongly preferred. You know how to build and audit access policies, not just read them.
  • SQL or equivalent. You query access logs, build reports, and spot anomalies in data directly.
  • GDPR Art. 28 and data access breach fundamentals. You understand what constitutes a third-party data access breach and what the notification implications are.
  • Evidence management. You know what a regulatory-quality audit trail looks like and you build for audit, not for spreadsheets.

Nice to Have

  • Experience in a financial services environment with partner data segregation obligations.
  • PDPA or PDPO operational experience.
  • Microsoft Purview labelling or similar DLP tooling.
  • Access certification tooling experience (Sailpoint, Saviynt, or equivalent).

Why You Will Love It Here

  • You will be building something that does not exist at Reap today, which means you get to design it properly from the start.
  • You will work directly with the CISO and alongside the Data Governance Manager, with real visibility into a critical compliance gap.
  • The work is concrete and measurable: the audit trail is either clean or it is not.
  • AI tools are part of how we work. You will have access to them.

Benefits you'll enjoy

  • A vibrant, inclusive work culture.
  • Annual leave to relax and recharge, plus public holidays.
  • Health insurance budget.
  • Be part of a fast‑growing global team.
  • Flexible remote work options.
  • Home office equipment budget.
  • Your own Corporate Reap Card-no more out‑of‑pocket spending.

About Reap

Reap is a leading global payment technology provider that enables financial connectivity and access for businesses worldwide. By merging traditional finance with digital assets, bridging disparate economies, and connecting key financial players, we are transforming the financial landscape into a more interconnected and interoperable space for efficient money movement.

With stablecoin‑enabled corporate cards, payout solutions, and expense management tools, we streamline financial operations and empower businesses to scale. Our APIs enable businesses to embed finance into their own products and services, from issuing Visa cards to facilitating cross‑border payments.

Reap is supported by a strong network of investors, including Acorn Pacific Ventures, Arcadia Funds, HashKey Capital, Hustle Fund, Fresco Capital, Abacus Ventures, and Payment Asia.

Founded in 2018 Coworkers 300+