Senior Enterprise Risk Specialist
hl mando corporation do brasil- Posted 22 hours ago
- Be among the first 10 applicants
Job Description
Location: United Arab Emirates (Remote)
Employment Type: Full-Time
Experience Level: Senior
Work Arrangement: Fully Remote
About UsWe are a globally focused organization committed to strengthening enterprise resilience, risk governance, informed decision-making, and sustainable business performance across diverse markets.
Our teams collaborate across Enterprise Risk, Finance, Compliance, Legal, Operations, Technology, Cybersecurity, Internal Audit, Business Continuity, and senior leadership to identify emerging risks, strengthen controls, manage exposures, and support the organization in achieving its strategic objectives within defined risk appetite.
The RoleWe are seeking an experienced Senior Enterprise Risk Specialist to lead enterprise risk management activities covering risk identification, assessment, monitoring, reporting, governance, risk appetite, scenario analysis, emerging risks, and risk mitigation.
The ideal candidate will combine strong enterprise-risk expertise with analytical, strategic, and stakeholder-management capabilities. The role will provide an independent and forward-looking view of the organization's risk profile, support business leaders in understanding material exposures, and strengthen the integration of risk management into strategic planning and operational decision-making.
Key Responsibilities- Develop and maintain the enterprise risk management framework, policies, standards, methodologies, and procedures.
- Establish enterprise risk governance processes aligned with organizational strategy, risk appetite, and regulatory expectations.
- Coordinate enterprise-wide risk identification, assessment, monitoring, reporting, and mitigation activities.
- Maintain a comprehensive enterprise risk universe covering strategic, financial, operational, technology, cyber, regulatory, legal, compliance, reputational, people, third-party, and emerging risks.
- Develop and maintain risk taxonomies, definitions, assessment criteria, and risk-rating methodologies.
- Establish consistent approaches for assessing risk likelihood, impact, velocity, interconnectedness, and control effectiveness.
- Facilitate periodic enterprise risk assessments across business units, functions, geographies, and legal entities.
- Coordinate risk and control self-assessment activities with business and functional stakeholders.
- Challenge risk assessments to ensure material exposures are appropriately identified, quantified, and documented.
- Assess inherent and residual risk across key enterprise risk categories.
- Evaluate the effectiveness of existing controls and identify gaps requiring remediation.
- Maintain enterprise risk registers, risk profiles, control assessments, issue logs, and mitigation plans.
- Monitor enterprise risk exposure against approved risk appetite and tolerance levels.
- Develop and maintain risk appetite statements, limits, thresholds, triggers, and escalation criteria.
- Monitor key risk indicators and identify breaches, deterioration, trends, and emerging exposures.
- Develop risk dashboards and management information for senior leadership and risk committees.
- Prepare regular enterprise risk reports highlighting material exposures, trends, concentrations, emerging risks, and mitigation activities.
- Provide management with clear analysis of significant changes in the enterprise risk profile.
- Conduct scenario analysis and stress testing for material enterprise risks.
- Develop plausible adverse scenarios covering economic, financial, operational, technological, geopolitical, regulatory, and business-disruption events.
- Assess potential financial, operational, strategic, customer, regulatory, and reputational impacts under defined scenarios.
- Coordinate cross-functional scenario analysis and stress-testing exercises.
- Monitor emerging risks and assess their potential impact on organizational objectives.
- Establish processes for horizon scanning, external risk intelligence, and emerging-risk identification.
- Monitor geopolitical, economic, technological, regulatory, environmental, social, and industry developments relevant to the organization.
- Conduct thematic enterprise risk reviews covering specific risk areas, business processes, products, markets, or strategic initiatives.
- Identify interconnected risks and assess potential risk concentrations across the organization.
- Evaluate dependencies between strategic, operational, financial, technology, cyber, third-party, and other enterprise risks.
- Support strategic planning by incorporating risk assessments into business plans, investment decisions, transformation initiatives, and major projects.
- Provide risk input into new products, services, markets, acquisitions, partnerships, technology initiatives, and significant organizational changes.
- Assess risk implications of major strategic and operational decisions.
- Develop risk assessments and recommendations for executive leadership and governance committees.
- Establish and monitor risk mitigation plans for material enterprise risks.
- Challenge the adequacy, ownership, timing, and effectiveness of risk treatment actions.
- Track risk remediation activities and escalate overdue or ineffective mitigation actions.
- Enterprise risk assessment completion
- Risk assessment timeliness
- Enterprise risk register completeness
- Enterprise risk register accuracy
- Risk taxonomy coverage
- Inherent-risk assessment completion
- Residual-risk assessment completion
- Risk appetite compliance
- Risk tolerance breach rate
- Key risk indicator coverage
- Key risk indicator reporting timeliness
- Material risk identification rate
- Emerging-risk identification effectiveness
- Emerging-risk assessment completion
- Risk mitigation plan completion
- Risk remediation timeliness
- Overdue risk action rate
- High-risk issue closure time
- Risk acceptance compliance
- Control effectiveness assessment completion
- Control deficiency identification
- Risk scenario coverage
- Stress-testing completion
- Scenario-analysis quality
- Enterprise risk reporting timeliness
- Risk dashboard accuracy
- Risk data quality
- Risk aggregation accuracy
- Risk concentration identification
- Risk interdependency assessment coverage
- Strategic initiative risk assessment completion
- New-product and major-change risk assessment completion
- Risk committee reporting quality
- Board risk reporting timeliness
- Regulatory risk-management compliance
- Audit finding resolution
- Risk incident assessment timeliness
- Post-event review completion
- Risk culture and awareness completion
- Risk training completion
- Risk-management stakeholder satisfaction
- Risk process efficiency
- Risk reporting automation
- Enterprise risk framework maturity
- Overall reduction in unmanaged or materially exposed enterprise risks
The successful candidate should have strong experience in enterprise risk management, operational risk, strategic risk, financial risk, risk governance, business continuity, or related risk disciplines, preferably within financial services, technology, professional services, infrastructure, regulated industries, or complex multinational organizations.
The candidate should demonstrate:
- Strong understanding of enterprise risk management principles, frameworks, and governance.
- Proven experience developing or operating enterprise risk management programs.
- Strong knowledge of risk identification, assessment, monitoring, aggregation, and reporting.
- Experience developing risk taxonomies, risk assessment methodologies, and risk-rating frameworks.
- Strong understanding of inherent risk, residual risk, control effectiveness, and risk treatment.
- Experience developing and monitoring risk appetite statements, limits, thresholds, and key risk indicators.
- Strong experience preparing enterprise risk reports for senior management and governance committees.
- Experience conducting risk and control self-assessments across multiple business functions.
- Strong scenario-analysis and stress-testing capabilities.
- Experience identifying and assessing emerging and interconnected risks.
- Strong understanding of strategic, operational, financial, technology, cyber, regulatory, compliance, third-party, and reputational risks.
- Experience integrating risk information from specialist risk functions into an enterprise-wide risk profile.
More Info
Key Skills
Risk and control self-assessments
Risk reporting
Risk-rating methodologies
Risk aggregation
Risk identification
Risk interdependency assessment
Risk committee reporting
