JOB PURPOSE:Strengthen enterprise risk posture by identifying, assessing, and mitigating strategic, operational, financial, and regulatory risks, ensuring risk-informed decision-making and business continuity.
KEY ACCOUNTABILITIES:
- * Conduct enterprise risk assessments and maintain risk registers
- Develop risk mitigation plans and monitor implementation
- Perform risk analysis for new initiatives and projects
- Support business continuity and incident response planning
- Prepare risk reports for leadership and governance committees
- Promote risk awareness culture across departments
- Develop, maintain, and continuously enhance the Enterprise Risk Management (ERM) framework, methodologies, tools, and templates across the organization
- Prepare and maintain executive risk reports and dashboards for the CEO and the Audit Committee to support informed decision-making and governance oversight
- Develop, monitor, and periodically review the organization's Risk Appetite, Risk Tolerance, and Key Risk Indicators (KRIs)
- Lead Business Continuity Management activities, including Business Impact Analysis (BIA), Business Continuity Planning (BCP), and participation in crisis management and incident response activities
- Drive the implementation and continuous improvement of Enterprise Risk Management practices across the organization
RequirementsEducation:
- Bachelor's degree in Management, Finance, or related field
Experience:
- 5-7 years in risk management or internal control.
- Experience implementing or enhancing ERM frameworks
- Proven experience conducting enterprise-wide risk assessments
- Exposure to risk appetite framework development
- Experience preparing risk reports for senior leadership
- Proven experience in establishing, designing, or enhancing Enterprise Risk Management (ERM) programs
- Experience within technology companies, digital platforms, or fast-growing organizations is preferred
- Professional certification in ISO 31000 Risk Management or an equivalent risk management certification is preferred
- Practical knowledge of internationally recognized risk management and governance frameworks, including ISO 31000 and COSO Enterprise Risk Management (COSO ERM
- Familiarity with regulatory and compliance risk environments