Risk Management Lead

Gathern

Sign In to Apply

Pay not listed

  • Full-time
  • Riyadh, Riyadh Province, Saudi Arabia
  • GRC & Legal
  • 1mo ago

Job Description

JOB PURPOSE:

Strengthen enterprise risk posture by identifying, assessing, and mitigating strategic, operational, financial, and regulatory risks, ensuring risk-informed decision-making and business continuity.

KEY ACCOUNTABILITIES:

  •  Conduct enterprise risk assessments and maintain risk registers.
  • Develop risk mitigation plans and monitor implementation.
  • Perform risk analysis for new initiatives and projects.
  • Support business continuity and incident response planning.
  • Prepare risk reports for leadership and governance committees.
  • Promote risk awareness culture across departments.
  • Develop, maintain, and continuously enhance the Enterprise Risk Management (ERM) framework, methodologies, tools, and templates across the organization.
  • Prepare and maintain executive risk reports and dashboards for the CEO and the Audit Committee to support informed decision-making and governance oversight.
  • Develop, monitor, and periodically review the organization's Risk Appetite, Risk Tolerance, and Key Risk Indicators (KRIs).
  • Lead Business Continuity Management activities, including Business Impact Analysis (BIA), Business Continuity Planning (BCP), and participation in crisis management and incident response activities.
  • Drive the implementation and continuous improvement of Enterprise Risk Management practices across the organization.

Requirements

Education:

  •  Bachelor’s degree in Management, Finance, or related field.

 Experience:

  • 5–7 years in risk management or internal control. 
  • Experience implementing or enhancing ERM frameworks.
  • Proven experience conducting enterprise-wide risk assessments.
  • Exposure to risk appetite framework development.
  • Experience preparing risk reports for senior leadership.
  • Proven experience in establishing, designing, or enhancing Enterprise Risk Management (ERM) programs.
  • Experience within technology companies, digital platforms, or fast-growing organizations is preferred.
  • Professional certification in ISO 31000 Risk Management or an equivalent risk management certification is preferred.
  • Practical knowledge of internationally recognized risk management and governance frameworks, including ISO 31000 and COSO Enterprise Risk Management (COSO ERM
  • Familiarity with regulatory and compliance risk environments.