Business Unit Purpose:
The Governance, Risk, Compliance, and Sustainability Business Unit ensures organisational integrity, mitigates risks, drives adherence to regulatory standards, and champions sustainable business practices for long-term success.
Job Purpose:
To develop and oversee the Risk and Business Continuity Management (BCM) frameworks in compliance with global best practices and international certifications, ensuring the safeguarding of EKFC’s people, environmental sustainability, reputation, and brand value across the full spectrum of risk, including sustainability and environmental challenges
Key Result Areas:
1. Lead, develop, and implement the risk management, business continuity management, and crisis management strategy that aligns with EKFC’s business objectives, ensuring alignment with best practices and company-level goals.
2. Develop and implement annual departmental objectives and KPIs using the Balanced Scorecard approach to drive business performance improvements and provide oversight over departmental budget and resources.
3. Develop and implement a risk management framework acting as subject matter expertise across all EKFC business areas to ensure a comprehensive and proactive approach to identifying, assessing, and mitigating risks, ultimately enhancing organizational resilience and compliance.
4. Embed risk management practices within the strategy-setting process and develop scenario planning to support the corporate strategy.
5. Conduct top-down and bottom-up risk reviews for EKFC, maintaining both company-level and department-level risk registers, and regularly report on EKFC’s risk profile to senior leadership.
6. Form and lead cross-functional risk mitigation working groups to address and reduce risk exposures to tolerable levels, ensuring effective collaboration across different functions.
7. Identify gaps and assess overall effectiveness of the company-wide controls environment and partner with internal stakeholders to remediate and increase resilience.
8. Develop and implement a business continuity framework for implementation, including threat risk assessment, business impact analysis, business continuity planning and testing across multiple scenarios, which are compliant with NCEMA regulations and Group company BCM directives and policies.
9. Provide oversight and assurance of the EKFC business continuity programme to ensure that all internal and external stakeholders’ (e.g. EK, Dubai Airports) needs and expectations are addressed during any disruptive event.
10. Serve as a leader of the Incident Management Team during significant events or incidents, to include working during non-business hours (if the situation requires it).
11. Implement robust business continuity plan testing and activation programme (e.g. tabletop simulations, drills, walkthroughs etc.).
Knowledge, Skills & Minimum Experience:
Education Qualifications:
• Degree in Economics, Business Administration, Risk Management, Project Management, or a related field.
• Master’s degree preferred.
Work Experience:
• Minimum 9 years of relevant experience, including leading a risk management/BCM team in a management capacity.
• Experience in developing and implementing a risk management culture focused on risk exposure elimination.
• Proven record in the implementation of ISO 31000 and ISO 22301 standards.
Skills:
• Advanced influencing, communication, problem-solving, and negotiation skills.
• Seasoned decision-making skills, capable of analyzing and evaluating effective options and opportunities for continual improvement.
• Advanced risk and BCM systems knowledge, including auditing processes and continuous improvement.
• Advanced leadership, conflict management, and stakeholder management skills.
• Experience in writing and implementing specific work procedures and conducting customized training programs.
• Holder of International Risk Manager Certificate or similar, with knowledge of ERM standards issued by COSO, IRM, and ISO 31000.
• Familiarity with Business Continuity standards (e.g., ISO 22301, BSI 25999, or NCEMA 7000) and Incident and Crisis Management expertise.
• Advanced IT literacy in Excel, Word, PowerPoint, SharePoint, and proficiency in Risk Management Information Systems.
• Ability to present to C-Level, senior management, and staff using various media.
• Experience in designing, building, and delivering in-house training.