Operational Risk Manager

KORAKHOA SOLUTIONS

Durban

On-site

ZAR 1,200,000 - 2,000,000

Full time

13 days ago
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

KORAKHOA SOLUTIONS is seeking a Senior Manager: Non-Financial Risk in Durban, South Africa, to support the CRO and oversee a broad spectrum of non-financial risk disciplines across the Bank’s risk framework.

The role requires leadership in Operational Risk, ICT/Information Security, Third-Party, and Digital Fraud risk areas, with governance, reporting, and strategic guidance to senior management and regulators.

Qualifications

  • Lead the development and governance of the Bank's non-financial risk management framework.
  • Drive continuous improvement of risk capabilities and maturity across units.
  • Monitor risk appetites, KPIs, tolerances and governance reporting.
  • Stay ahead of regulatory requirements and industry risk trends.
  • Provide strategic challenge and independent oversight to management.

Responsibilities

  • Oversee Operational Risk Management Framework and RCSA processes.
  • Coordinate risk assessments and remediation tracking with risk and control activities.
  • Lead incident management, root-cause analysis and lessons learned.
  • Support governance bodies and regulators with risk reporting and papers.
  • Promote risk culture and risk-based decision making across the organisation.

Skills

Non-financial risk management
Operational risk
ICT risk
Regulatory awareness

Job description

Durban, South Africa | Posted on 08/28/2026

We offer comprehensive services in Recruitment(Permanent, Temporary, Fixed-term Contracts), Payroll Administration, andLabour Relations.

Job Description

The Senior Manager: Non-Financial Risk isresponsible for supporting the Chief Risk Officer in establishing,implementing, enhancing and overseeing the Bank's Non-Financial Risk ManagementFramework.

The role serves as a key member of theEnterprise Risk Management function and provides independent second-lineoversight, challenge and strategic guidance across operational andnon-financial risk disciplines, including Operational Risk, Operational Resilience,Business Continuity Management, Third-Party Risk, Information Security Risk,Information and Communication Technology (ICT) Risk, Digital Fraud Risk andother emerging risks.

The incumbent will work closely withbusiness management, control functions and specialist risk teams to ensure thatnon-financial risks are effectively identified, assessed, monitored, managedand reported, while supporting the Bank's strategic objectives, operationalresilience and regulatory obligations.

The role will also assist the CRO inproviding senior management, Board committees and regulators with acomprehensive view of the Bank's non-financial risk profile and theeffectiveness of related risk management practices.

Requirements

Non-Financial Risk Strategy andGovernance

  • Support the CRO in developing and maintaining the Bank'sNon-Financial Risk Management Framework, policies, standards andmethodologies.
  • Drive the continuous enhancement of the Bank's non-financialrisk management capabilities and maturity.
  • Assist in the development and monitoring of risk appetitestatements, tolerance levels, key risk indicators and governancereporting.
  • Monitor emerging regulatory requirements, industry developmentsand evolving risk trends.
  • Provide strategic advice and independent challenge tomanagement regarding significant non-financial risk exposures and controlweaknesses.
  • Support the preparation of risk management papers andpresentations for Executive Management, Board Committees and regulators.
  • Oversee the implementation and ongoing effectiveness of theOperational Risk Management Framework.
  • Coordinate and challenge Risk and Control Self-Assessments(RCSA), risk assessments and control effectiveness reviews across theBank.
  • Oversee operational risk event and incident managementprocesses, including root-cause analysis, lessons learned and remediationtracking.
  • Monitor operational loss events, risk trends and controlweaknesses and ensure material issues are appropriately escalated.
  • Facilitate the development and monitoring of operational riskindicators and early warning metrics.
  • Provide independent review and challenge regarding risktreatment plans and risk acceptance decisions.

Operational Resilience and BusinessContinuity

  • Support the design, implementation and continuous enhancementof the Bank's Operational Resilience Framework.
  • Lead the Bank's Business Continuity Management programme,including business impact assessments, continuity planning, testing andrecovery exercises.
  • Coordinate resilience assessments covering critical businessservices, key processes and material dependencies.
  • Facilitate severe but plausible scenario analysis andresilience testing exercises.
  • Monitor resilience vulnerabilities and support management inimplementing corrective actions.
  • Promote integration between operational risk management,business continuity, crisis management and technology resilienceactivities.

Information Security and ICT RiskOversight

  • Provide independent oversight and challenge of informationsecurity and ICT risk management practices.
  • Review and assess material technology, cyber security anddigital transformation initiatives from a risk perspective.
  • Monitor significant technology and cyber security riskexposures and ensure timely escalation of material concerns.
  • Support the assessment of technology resilience, informationsecurity controls and cyber preparedness.
  • Ensure technology and information security risks areappropriately incorporated into the Bank's risk profile and governancereporting.

Third-Party Risk Management

  • Oversee the implementation and effectiveness of the Third-PartyRisk Management Framework.
  • Review and challenge risk assessments relating to outsourcingarrangements, service providers and strategic partnerships.
  • Monitor critical supplier dependencies, concentration risks andresilience capabilities.
  • Ensure third-party risks are appropriately considered inoperational resilience, business continuity and risk assessmentactivities.
  • Support governance oversight of material outsourcing and vendorrelationships.

Digital Fraud and Financial Crime RiskSupport

  • Support the development and enhancement of the Bank's digitalfraud risk management capability.
  • Monitor emerging fraud threats, attack trends andtechnology-enabled fraud risks.
  • Coordinate with business, technology, operations and securityteams to strengthen fraud prevention, detection and response capabilities.
  • Analyse fraud events and trends and support the identificationof strategic risk mitigation initiatives.
  • Provide oversight and reporting of fraud-related risks withinthe broader non-financial risk framework.
  • Monitor internal and external developments that may give riseto emerging non-financial risks.
  • Assess the risk implications of digital transformation,changing business models, regulatory developments, geopolitical events andevolving threat landscapes.
  • Support the development of risk assessments and mitigationstrategies for emerging risk themes.
  • Provide forward-looking analysis and insight to supportstrategic decision making.

Regulatory, Audit and CommitteeEngagement

  • Support the CRO in engagements with regulators, externalauditors and other assurance providers.
  • Coordinate responses to regulatory reviews, thematicassessments and audit findings.
  • Monitor the implementation and closure of agreed remediationactions.
  • Prepare high-quality risk reports and management informationfor governance committees and senior management forums.
  • Act as a trusted adviser to management on non-financial riskmatters.

Risk Culture and Capability Development

  • Promote a strong and sustainable risk culture across theorganisation.
  • Facilitate risk awareness and training initiatives relating tooperational and non-financial risks.
  • Encourage proactive identification, escalation and managementof risks and control issues.
  • Support management in embedding risk-based decision makingthroughout the organisation.

Non-Financial Risk Strategy andGovernance

  • Support the CRO in developing and maintaining the Bank'sNon-Financial Risk Management Framework, policies, standards andmethodologies.
  • Drive the continuous enhancement of the Bank's non-financialrisk management capabilities and maturity.
  • Assist in the development and monitoring of risk appetitestatements, tolerance levels, key risk indicators and governancereporting.
  • Monitor emerging regulatory requirements, industry developmentsand evolving risk trends.
  • Provide strategic advice and independent challenge tomanagement regarding significant non-financial risk exposures and controlweaknesses.
  • Support the preparation of risk management papers andpresentations for Executive Management, Board Committees and regulators.
  • Oversee the implementation and ongoing effectiveness of theOperational Risk Management Framework.
  • Coordinate and challenge Risk and Control Self-Assessments(RCSA), risk assessments and control effectiveness reviews across theBank.
  • Oversee operational risk event and incident managementprocesses, including root-cause analysis, lessons learned and remediationtracking.
  • Monitor operational loss events, risk trends and controlweaknesses and ensure material issues are appropriately escalated.
  • Facilitate the development and monitoring of operational riskindicators and early warning metrics.
  • Provide independent review and challenge regarding risktreatment plans and risk acceptance decisions.

Operational Resilience and BusinessContinuity

  • Support the design, implementation and continuous enhancementof the Bank's Operational Resilience Framework.
  • Lead the Bank's Business Continuity Management programme,including business impact assessments, continuity planning, testing andrecovery exercises.
  • Coordinate resilience assessments covering critical businessservices, key processes and material dependencies.
  • Facilitate severe but plausible scenario analysis andresilience testing exercises.
  • Monitor resilience vulnerabilities and support management inimplementing corrective actions.
  • Promote integration between operational risk management,business continuity, crisis management and technology resilienceactivities.

Information Security and ICT RiskOversight

  • Provide independent oversight and challenge of informationsecurity and ICT risk management practices.
  • Review and assess material technology, cyber security anddigital transformation initiatives from a risk perspective.
  • Monitor significant technology and cyber security riskexposures and ensure timely escalation of material concerns.
  • Support the assessment of technology resilience, informationsecurity controls and cyber preparedness.
  • Ensure technology and information security risks areappropriately incorporated into the Bank's risk profile and governancereporting.

Third-Party Risk Management

  • Oversee the implementation and effectiveness of the Third-PartyRisk Management Framework.
  • Review and challenge risk assessments relating to outsourcingarrangements, service providers and strategic partnerships.
  • Monitor critical supplier dependencies, concentration risks andresilience capabilities.
  • Ensure third-party risks are appropriately considered inoperational resilience, business continuity and risk assessmentactivities.
  • Support governance oversight of material outsourcing and vendorrelationships.

Digital Fraud and Financial Crime RiskSupport

  • Support the development and enhancement of the Bank's digitalfraud risk management capability.
  • Monitor emerging fraud threats, attack trends andtechnology-enabled fraud risks.
  • Coordinate with business, technology, operations and securityteams to strengthen fraud prevention, detection and response capabilities.
  • Analyse fraud events and trends and support the identificationof strategic risk mitigation initiatives.
  • Provide oversight and reporting of fraud-related risks withinthe broader non-financial risk framework.
  • Monitor internal and external developments that may give riseto emerging non-financial risks.
  • Assess the risk implications of digital transformation,changing business models, regulatory developments, geopolitical events andevolving threat landscapes.
  • Support the development of risk assessments and mitigationstrategies for emerging risk themes.
  • Provide forward-looking analysis and insight to supportstrategic decision making.

Regulatory, Audit and CommitteeEngagement

  • Support the CRO in engagements with regulators, externalauditors and other assurance providers.
  • Coordinate responses to regulatory reviews, thematicassessments and audit findings.
  • Monitor the implementation and closure of agreed remediationactions.
  • Prepare high-quality risk reports and management informationfor governance committees and senior management forums.
  • Act as a trusted adviser to management on non-financial riskmatters.

Risk Culture and Capability Development

  • Promote a strong and sustainable risk culture across theorganisation.
  • Facilitate risk awareness and training initiatives relating tooperational and non-financial risks.
  • Encourage proactive identification, escalation and managementof risks and control issues.
  • Support management in embedding risk-based decision makingthroughout the organisation.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Chief Operating Officer, Credit Risk
Chief Operating Officer, Credit Risk

Jobtailor • Sandton

On-site
ZAR 900,000 - 1,500,000
Operational and Fraud Risk Manager
Operational and Fraud Risk Manager

Lesaka Technologies Inc. • Cape Town

On-site
ZAR 600,000 - 900,000
Chief Risk Officer - HQ Pretoria
Chief Risk Officer - HQ Pretoria

Finbond Mutual Bank • Pretoria

On-site
ZAR 3,000,000 - 5,000,000
Manager, Information Risk & Business Resilience
Manager, Information Risk & Business Resilience

Standard Bank of South Africa Limited • Johannesburg

On-site
ZAR 1,000,000 - 1,500,000
Manager, Non-Financial Risk
Manager, Non-Financial Risk

Standard Bank of South Africa Limited • Johannesburg

On-site
ZAR 500,000 - 700,000
Risk Event Administrator ( CONTRACT ROLE)
Risk Event Administrator ( CONTRACT ROLE)

The Focus Group • Sandton

On-site
ZAR 300,000 - 400,000
Credit Risk Manager
Credit Risk Manager

Bidvest Bank • South Africa

On-site
ZAR 1,200,000 - 1,800,000
Credit Risk Manager
Credit Risk Manager

Bidvest Bank Limited • Johannesburg

On-site
ZAR 900,000 - 1,200,000
Risk and Compliance Specialist
Risk and Compliance Specialist

SET Recruitment Consultants • Cape Town

On-site
ZAR 520,000 - 900,000
Lead - Incident Management / Support | Operations
Lead - Incident Management / Support | Operations

Lesaka Technologies Inc. • Cape Town

On-site
ZAR 900,000 - 1,200,000