Your Impact on the Business
The Risk Head, in the Risk Management department, reports directly to the Corporate Governance Committee (CGC) with a dotted line to the President.
In this role, the CRO oversees enterprise risk governance, business continuity management, data governance, fraud management, and cybersecurity roadmaps, ensuring that corporate risk policies remain aligned with financial regulations and IT security standards.
Additionally, the CRO leads process improvement projects, manages risk financing and insurance programs, and drives talent development for direct reports including the Risk Manager and Risk Officer
Risk Governance and Policy Development
- Develop and update risk policies, risk appetite, tolerance, and threshold, incorporating finance expertise and IT security considerations.
- Monitor the risk environment and communicate significant risk issues to Management, Corporate Governance Committee, and Parent Company's Risk Committee.
- Provide training on risk policies and structures, facilitating cross-functional meetings to ensure alignment with IT and Infosec standards.
Enterprise Risk Management
- Provide direction on risk management activities, emphasizing cost-effective risk mitigating controls with a focus on IT and Infosec risks.
- Review and validate risk management activities and reports, ensuring alignment with finance principles and IT security protocols.
- Update and report the Top Risks Report to Management and the Board, integrating financial insights and cybersecurity updates.
Business Continuity Management
- Update Business Continuity Management Policies and Procedures, incorporating financial resilience and IT security measures.
- Provide direction on business continuity strategies, considering financial implications and IT security requirements.
Quality Management and Data Governance
- Support the Quality Management Representative (QMR) on quality objectives, integrating financial compliance and data security protocols.
- Formulate and update the data governance roadmap, ensuring alignment with financial regulations and IT security standards.
- Provide guidance on incorporating action items for data governance objectives and monitor their accomplishment, considering financial impacts and IT security risks.
Fraud Management and Cybersecurity
- Formulate and update fraud management and cybersecurity roadmaps, integrating financial fraud prevention measures and IT security strategies.
- Provide support and guidance on action items for fraud management and cybersecurity objectives, considering financial implications and IT security risks.
- Support and monitor the accomplishment of key activities related to fraud prevention and cybersecurity, aligning with financial goals and IT security protocols.
Policy and Process Improvement
- Contribute to policy and process improvement efforts, providing direction on business policy/process review and recommendations to address control gaps, with a focus on financial controls and IT security measures.
- Review business policy/process reviews and reports conducted by the risk officer, ensuring alignment with financial regulations and IT security standards.
- Support or oversee projects involving innovation/process improvement, considering financial impacts and IT security implications.
Risk Financing and Insurance Programs
- Recommend insurance programs as part of the risk transfer strategy, aligning with financial risk management goals and IT security needs.
- Communicate with the risk finance team to align insurance programs with the overall direction of the company, integrating financial and IT security considerations.
- Support or oversee the status of insurance programs, ensuring alignment with financial objectives and IT security requirements.
Risk Awareness, Training, and People Development
- Facilitate risk awareness programs, incorporating financial risk scenarios and IT security threats, and provide guidance on facilitating risk awareness programs and training.
- Build the capabilities of the Risk Management team by managing performance and competency development, ensuring alignment with financial goals and IT security standards.
- Implement performance management processes, including performance planning, monitoring, evaluation, and improvement, with a focus on career progression and competency growth.
- Train and mentor team members in executing their duties, emphasizing professional skills development and succession planning, considering financial and IT security expertise.
- Establish a succession plan in the Risk Management department, fostering an atmosphere of respect, trust, and accountability among team members to facilitate analytical thinking and problem-solving, integrating financial acumen and IT security awareness.
Qualifications
Education: Bachelor’s Degree in Finance, Economics, Accounting, or related field;
Certification: Professional Certification (FRM, PRM, CFA, or equivalent) preferred but not required;
Experience: Minimum 5 years of relevant financial risk management experience in banking and financial services, preferably in remittance, foreign exchange, or branch/cash operations;
Skills
- Strong knowledge of BSP regulatory frameworks
- Proficiency in risk monitoring tools and models
- Strong analytical, communication, and problem-solving skills