Accountabilities and Key Roles:
- Assist in Supervising and ensuring the implementation of Business continuity, Information Security & Operational Risk and related frameworks such as Outsourcing Risk Management, Reputational Risk Management, Strategic Risk Management, and New Product Development frameworks to optimize risk decisions.
- Assist in assessing work procedures and controls assessment to be implemented by all business lines and units if different from H.O. to identify any business continuity, information security & operational risk related issues.
- Conduct with the various business areas risk assessment workshops periodically for all AB business units and branches and entering them into the related systems.
- Ensure compliance with business continuity, information security and operational risk controls frameworks and any related local laws and regulations.
- Follow-up with all business areas to ensure that any policy implementation issues and control gaps are implemented.
Operational Risk
- Facilitate RCSA, establishment of KRI, and loss reporting along with the implementation of risk related assessment frameworks (eg. Outsourcing, Reputational Risk, Strategic Risk, and Product Development).
- Implement the operational risk framework and all related Policies & Procedures.
- Prepare needed reports and analysis.
Business Continuity:
- Follow up and update service recovery plans.
- Prepare / update BIA’s for various services.
- Prepare for / participate in BC related tests.
- Assure periodic maintenance / health check is conducted for business alternative sites to assure its readiness at all times.
Information Security
- Ensure IS plans, findings & recommendations, along with compliance exceptions reports are addressed and implemented on timely manner in the area.
- Ensure risk assessment and data classification are conducted on all information assets.
- Maintain an adequate level of information security awareness in the area.
- Prepare IS related reports and assessments.
Job Requirements:
Education
- Bachelor’s degree in Business Administration, IT, Finance from a recognized university.
Experience
- Minimum of 5 years experience, 3 of which in information security, business continuity and operational risk field.
Competencies
- Clear understanding of information security and operational risk frameworks.
- Good experience in conducting risk assessments, data classification, RCSA.
- Good understanding of banking processes and products.
- Organizational, planning and coordinating skills.
- Training and presentation skills.
- Excellent written and verbal communication skills in English and Arabic languages.
- Excellent writing skills to draft policies, procedures and reports.
- Ability to concentrate on details, communicating with various types of users, Owning analytical skills.
- Ability to Plan and execute complex projects spanning multiple locations at the country level. Patience, flexibility, team work.