Apply Edge Start your job search

Sr. Risk, Controls & SOX Manager

AIR (Advanced Inhalation Rituals) · Dubai, United Arab Emirates

Apply & track with Apply Edge
Senior Risk & Controls Manager is responsible for overseeing the organization's risk management programs and controls implementation. Some of the other responsibilities include ensuring SODs and performing ICOFR in line with IPO requirements.KEY RESPONSIBILITIES1- Develop an annual plan and obtain approvalMeasurable KPIsAnnual Risk & Controls Plan to be prepared and approved by the Audit & Risk Committee prior to the start of the following year.Arrange meetings with all department’s heads, to discuss and agree on scope and timelines. Prepare and share the plan with Global Head who will obtain approval from Audit & Risk Committee.2- Optimize the efficiency and effectiveness of Risk & Controls functionMeasurable KPIsEnsure that Risk & Controls activities are properly and timely executed as per the budgeted timeframe.100% Risk & Control activities completed as per plan.Time to complete assignment is within the budgeted time (as defined in man-days allocation file)All supporting documents are arranged and saved in shared folder.3- Develop and maintain effective follow up/monitoringMeasurable KPIsFor the Risk & Controls action plans documented, monitor the action plans due for implementation and ensure that items are timely followed up.Perform monthly follow-up and have status update discussion with process owners who are yet to implement agreed plans, and to verify documentation and obtain revised deadlines.Based on the update, issue Risk & Controls follow-up report to Global Head.4- Continuous communication with the Audit & Risk CommitteeMeasurable KPIsQuarterly Risk & Controls status update to the stake holdersDevelop quarterly status update report including functions progress on approved projects/ activities, adhoc engagements performed, as well as follow up status. This will be shared with Global Head (for submission to Audit & Risk Committee).5- Review all policies shared by ManagementMeasurable KPIsReviewing the policies to ensure they include appropriate controls and support the organization to achieve its objectives.Review of policies submitted by the management and recommend changes in line with similar companies and best practices, while also identifying any control design gaps in the process and suggesting changes. This will be done within 5 working days (or 10 calendar days) of policy submission.6- Consultancy servicesMeasurable KPIsPerform or participate in consultancy review as and when requested by the Global Head. Will be part of minimum 1 consulting engagements provided to the management of AIR per year.7- InvestigationsMeasurable KPIsAssist the Global Head to conduct fraud investigations Conducting fraud investigation and issue report to Audit & Risk Committee.8- Monitoring & guiding the Risk & Control team membersMeasurable KPIsMonitor the performance of Risk & Controls team members providing adequate guidance Reviewing the performance and providing inputs to Global Head.9- Annual update to Risk Appetite statement Update the RAS on annual basis & monitor the actuals against the defined criteria.Obtain ARC approval on the updated RAS.Monitor the actuals against the defined RAS criteria, discuss the results with CEO & CFO & share the results with ARC.10- Quarterly update to ERM risks Measureable KPIsEnsure ERM risks are updated on a quarterly basis and changes to risk profiles are documented for ARC/ BOD review. Prepare a presentation for the quarterly updates.Quarterly discussion with Risk owners to review the changes to Risk profiles.Update the Risk Profiles, prepare presentations for AC/ BOD updates.Once a year review the Risk appetite statement to identify any changes.11- Conduct PLRAConduct Process Level Risk Assessments as per the documented plan. For the PLRA previously documetned, update the risk registers.Conduct PLRA and share the results with process owners & relevant Chief of function.12- Perform access rights & workflow reviewsConduct access rights & workflow review (in D365) to ensure adequate segregation of duties.Every quarter access rights review & approval workflow review report is prepared and shared with Senior Management for rectification. (i.e. ensure approvals are obtained in line with DOA & to ensure appropriate SOD).13- Perform SOX activities in line with listing requirementsConduct SOX assessment across the group.SOX assessment is performed in line with requirements for listed companies & external auditors. These reports are issued to Senior Management.