أبلاي إيدج ابدأ البحث عن عمل

Governance, Risk & Compliance Manager

Knowledge Economic City · Al Madinah, Saudi Arabia

قدّم وتابع مع أبلاي إيدج
Job SummaryThe GRC Manager is responsible for developing, implementing, and overseeing the company’s Governance, Risk, and Compliance (GRC) framework across its real estate development, investment, property management, construction, finance and corporate activities. The role ensures that the company operates in accordance with applicable laws, regulations, internal policies, contractual obligations, and corporate governance requirements. The GRC Manager works closely with executive management and functions such as Legal, Finance, Internal Audit, Procurement, Projects, Sales, HR, IT, corporate Affairs and Property Management as well as all other department to identify and manage enterprise risks and strengthen the company’s control environment.Key Responsibilities1. Corporate GovernanceDevelop and maintain the company’s corporate governance framework, policies, and procedures.Support the implementation of delegated authorities, approval matrices, committee structures, and governance processes.Ensure clear roles, responsibilities, accountability, and segregation of duties across business functions.Monitor compliance with approved corporate policies and governance requirements.Support management committees with governance reporting, action tracking, and documentation.Review governance arrangements periodically and recommend improvements.Promote a strong culture of accountability, integrity, transparency, and ethical business conduct.2. Enterprise Risk ManagementDevelop and maintain the company’s Enterprise Risk Management (ERM) framework.Facilitate periodic risk assessments across corporate functions, real estate projects, investments, developments, and operational activities.Maintain the corporate risk register and ensure risks have clearly assigned owners.Work with risk owners to establish appropriate mitigation and treatment plans.Monitor key risks, mitigation actions, and Key Risk Indicators (KRIs).Prepare risk reports and dashboards for executive management and relevant committees.Facilitate risk workshops with business and project teams.Support management in defining and monitoring the company’s risk appetite and tolerance levels.Escalate significant and emerging risks to senior management.3. Real Estate & Project RiskIdentify and assess risks associated with land acquisition, property development, construction, leasing, sales, property management, and real estate investments.Monitor risks related to project delays, cost overruns, contractor performance, permits, approvals, quality, health and safety, and contractual obligations.Support due diligence activities for new developments, investments, acquisitions, and strategic partnerships.Assess risks associated with major projects and ensure appropriate mitigation measures are established.Work with project teams to integrate risk management into project planning and execution4. Compliance ManagementDevelop and maintain the company’s compliance framework and compliance obligations register.Identify applicable regulatory, legal, contractual, and internal compliance requirements.Conduct periodic compliance assessments and identify gaps.Coordinate remediation plans with relevant business owners and track actions through closure.Monitor regulatory changes affecting the real estate business and communicate their impact to management.Support compliance with applicable requirements relating to real estate activities, corporate governance, procurement, data protection, employment, health and safety, and other relevant areas.Maintain appropriate compliance records and supporting evidence.5. Policies, Procedures & ControlsEstablish a structured framework for developing, reviewing, approving, and maintaining corporate policies and procedures.Coordinate with departments to ensure policies reflect regulatory requirements and business needs.Maintain a centralized register of policies, procedures, controls, and responsible owners.Review key business processes and recommend improvements to strengthen internal controls.Monitor compliance with delegated authority and approval requirements.Support the development of controls to address identified risks and compliance gaps.6. Third-Party & Contractor RiskDevelop a risk-based approach for assessing contractors, consultants, suppliers, property managers, brokers, and other third parties.Support due diligence and risk assessments for critical vendors and business partners.Monitor key third-party risks, including financial, operational, compliance, contractual, reputational, and performance risks.Work closely with Procurement, Legal, Projects, and Finance to strengthen third-party governance and controls.Track significant contractor and supplier issues and ensure appropriate corrective actions.7. Business Continuity & Crisis RiskSupport the development and maintenance of the company’s Business Continuity Management (BCM) framework.Coordinate business impact assessments and continuity planning with key departments.Support business continuity and crisis management exercises.Monitor remediation actions identified through exercises, incidents, or assessments.Ensure critical real estate and corporate operations have appropriate continuity arrangements8. Reporting & Management InformationDevelop GRC dashboards and reports for senior management and relevant governance committees.Report on top enterprise risks, emerging risks, compliance status, policy compliance, KRIs, and remediation progress.Provide management with clear analysis and recommendations to support informed decision-making.Track GRC action plans and escalate significant delays or unresolved issues.Develop an annual GRC plan and report progress against agreed objectives.Key StakeholdersThe GRC Manager will work closely with all departments, CEO & GRC CommitteesQualifications & ExperienceBachelor’s degree in Engineering, or a related field.Typically, 7–10 years of relevant experience in Governance, Enterprise Risk Management, Compliance, Internal Controls, Internal Audit, or related functions.Previous experience within real estate, property development, construction, investment, infrastructure, or a related industry is strongly preferred.Demonstrated experience developing and implementing ERM and compliance frameworks.Strong understanding of corporate governance, internal controls, policies, and delegated authority frameworks.Experience preparing reports and presentations for executive management and governance committees.Knowledge of applicable Saudi Arabian regulatory and real estate requirements is highly desirable for KSA-based companies.Language: Proficiency in English is mandatoryPreferred CertificationsRelevant professional certifications are an advantage, including:CRMA – Certification in Risk Management AssuranceCRISC – Certified in Risk and Information Systems ControlCISA – Certified Information Systems AuditorCIA – Certified Internal AuditorGRCP – Governance, Risk and Compliance ProfessionalISO 31000 Risk ManagementISO 37301 Compliance ManagementISO 22301 Business Continuity ManagementKey CompetenciesEnterprise Risk ManagementCorporate GovernanceRegulatory ComplianceReal Estate & Development RiskProject Risk ManagementInternal ControlsPolicy & Procedure ManagementThird-Party and Contractor RiskBusiness ContinuityExecutive Reporting