£50K/yr to £65K/yr
Basingstoke and Deane, England
Permanent, Variable

Risk Lead

Posted by Barribal Associates Ltd..

Risk Lead

Basingstoke - Flexible hybrid model

c£50,000 - £60,000 + Great benefits package

A commitment to continuously improve and a desire to provide a "best in class" service to the operational business has initiated a multi-year digital transformation programme. To successfully deliver this change, additional resource is required to support the Head of Risk.

Barribal Associates are delighted to be continuing to work with this well regarded and high growth company; a multi-site business with a reputation for delivering outstanding value and customer service. The business has grown significantly over the last decade to become one of the leading players in this niche, high demand market.

Reporting to the Head of Risk, you will be the Risk Lead on the company's' largest ever investment programme, supporting the deployment of an Enterprise Resource Planning (ERP) system across the Sales, Service, Order Management, Finance and Operations (including Supply-Chain, Warehousing and Logistics) functions.

You will have a strong background in risk management and be an expert at identifying, defining, implementing and documenting risk requirements (relating to J-SOX, GDPR, IT controls, PCI DSS etc.). You will apply your skills and knowledge to support with these activities across all workstreams for the digital transformation programme. You will play a key role in communicating between the programme teams and business users to ensure that risk management requirements are embedded within the newly defined processes.

As part of the Risk workstream, the Risk Lead will be involved in agreeing the business prioritisation and delivery of timelines with the key stakeholders. You will be expected to challenge on requirements and issues as appropriate, manage conflicts and escalate when necessary.

ROLE OBJECTIVES:

  • Evaluate business and systems processes and requirements to capture risk related issues.
  • Have the overview and insight on various programme workstreams and activities impacting risk requirements so that the system and process changes can be effectively governed.
  • Plan the workstream deliverables with the Portfolio Delivery team and collaborate with colleagues across IT, business functions and implementation partner teams to execute the plan, manage issues, report status, progress and roadblocks.
  • Be the subject matter expert for risk management and compliance requirements.

Your responsibilities will include, but not be limited to:

  • Work with Portfolio Delivery team, workstream leads and other business functions to understand the business requirements for the "to-be" processes.
  • Review system and process designs to ensure compliance on various requirements such as J-SOX, GDPR, PCI DSS etc.
  • Support the embedding of the Programme on the J-SOX control framework, advising on system and process controls, including Company Level Controls (CLC), Financial Reporting Company Level Controls (FRCLC), Process Level Controls (PLC) and IT General Controls.
  • Identify any gaps in compliance (including GDPR, PCI DSS and other regulatory requirements) and agree and implement a plan with the relevant process owners to remediate these gaps to ensure compliance.
  • Be a key member of the programme team and drive the team and wider business to achieve our strategic goals on time and in a risk focused manner.
  • Controls Identification and Evaluation: identify and link appropriate controls to risks and evaluate their effectiveness in mitigating the risk.
  • Prepare and update company policies and procedures to ensure programme changes are accurate documented and compliance with all applicable laws and regulations.
  • Ensure relevant policies and procedures are followed to enable compliance with all laws and regulations applicable to the aspects of responsibility under the control of this role.
  • Co-ordination and support of internal and external audit activities as required.
  • Supporting the mapping of key processes, systems and entity-level controls and ensure all processes and key risks and controls are identified and accurately documented.
  • Support teams across the company in adopting new processes and ways of working.

Applicants will be fully qualified (ideally ACA from a Big4 audit background) with a CV that will easily demonstrate experience within risk & compliance. You will have a sound understanding of Risk-Control matrixes and proven track record of understanding operational risks and supporting stakeholders in identifying and implementing practical risk mitigation solutions.

You will thrive in a fast-paced organisation, taking control of your own workload and managing competing priorities. You will have a passion for detail and accuracy, aligned to strong commercial acumen and the ability to use your own initiative with the confidence to challenge and present your point of view concisely and effectively.

What IS a prerequisite, is your attitude and aptitude in taking a proactive and autonomous approach to your work and the desire to have a tangible impact on the business itself. Your commitment to delivery, coupled with a focussed desire to succeed within a demanding, exciting growth business, will provide an enviable platform for the progression and development of your career.