Assistant Manager - IT Operational Risk - Dubai - Semi-Government
Execute the requirements outlined in the Enterprise Risk Management (ERM) framework.
Develop, deploy, and maintain both enterprise-wide and departmental-level risk registers at the process level, covering digital and fraud risks.
Conduct comprehensive walkthroughs and process mapping to identify key risks and controls.
Review and assess new or updated processes to ensure appropriate risk management controls are embedded.
Identify process-level risks and Key Risk Indicators (KRIs), collaborating with Risk Champions to gather data for KRI reporting.
Support business units in completing risk/control self-assessments, annual review exercises, and root cause analyses of operational exceptions, as well as in designing and implementing mitigation measures.
Manage the operational risk incident process, ensuring timeliness, integrity, and quality of mitigation actions.
When needed, review reported incidents, perform business impact analyses, and help determine root causes and financial implications of operational issues.
Serve as a departmental ambassador to raise awareness of risks and strengthen the organization's risk culture.
Partner closely with Risk Champions across the organization to build understanding of risks and promote effective mitigation.
Provide guidance and support to Risk Champions in implementing appropriate risk management actions.
Collaborate with other lines of defence, such as Compliance and Internal Audit, to encourage effective information sharing on organizational risks.
Work with peers and stakeholders to diligently gather information needed to meet objectives.
Requirements
2-5 years of IT Risk Assessment, and control design principles and governance from an operational risk management or audit standpoint.
CISA Certified
Expertise in managing data/technology processes or implementing risk mitigation measures within the specific industry.
Prepare and deliver all required reports and outputs within agreed timelines to ensure effective outcomes.
Collaborate effectively with Risk Champions to address control gaps and improve business practices