Risk Strategy & Framework Development
- Design and implement an enterprise-wide risk management framework aligned with business objectives.
- Develop risk policies, procedures, and governance structures.
- Establish risk appetite and tolerance levels in collaboration with senior leadership.
Risk Identification & Assessment
- Lead risk identification, assessment, and prioritization across business units.
- Facilitate risk workshops and interviews with key stakeholders.
- Maintain and update the enterprise risk register.
Monitoring & Reporting
- Develop and maintain risk dashboards and reporting mechanisms for senior management and the board.
- Monitor key risk indicators (KRIs) and emerging risks.
- Prepare regular risk reports and insights to inform strategic decision-making.
Operational Risk & Controls
- Collaborate with business units to assess and strengthen internal controls.
- Support incident management and root cause analysis for operational failures.
- Promote a proactive risk culture through training and awareness programs.
Compliance & Assurance
- Ensure alignment with regulatory requirements and industry standards.
- Liaise with internal audit, legal, and compliance teams to ensure integrated risk oversight.
Stakeholder Engagement
- Act as a trusted advisor to senior leadership on risk-related matters.
- Build strong relationships across departments to embed risk ownership.
- Represent the company in external risk forums and industry groups.
Qualifications & Experience
- Bachelor&aposs degree in Risk Management, Business, Finance, Engineering, or related field.
- 6-9 years of experience in enterprise or operational risk management, preferably in a commercial (non-financial) industry.
- Proven experience in building or transforming risk frameworks and processes.
- Strong understanding of risk methodologies, governance, and controls.
- Excellent communication, stakeholder management, and influencing skills.
- Analytical mindset with the ability to translate data into actionable insights.
- Professional certifications (e.g., ISO 31000, IRM, CRMA, CIA) are a plus.