Apply now »
17 Sept 2026

Senior Expert, Risk Management (50000441)

Category:  Corporate Affair
Job Type: 
Facility:  Corporate Affair

Job Purpose

The position is responsible for identifying, assessing, advising and comprehensively managing all types of risks arising from the business activities, projects, products, services and operations of the Division and the Company. The role ensures that all activities comply with legal regulations, internal policies and the Enterprise Risk Management Framework, while safeguarding operational integrity and protecting the legitimate rights and interests of the Company and its customers.

Key Accountabilities (1)

1. Risk Identification and Assessment
- Identify potential risks across the organization, including business, financial, insurance, operational, compliance, legal, market and technology risks.
- Conduct impact and likelihood assessments, analyze root causes and evaluate exposure to business and financial performance.
- Maintain the enterprise risk register, develop risk maps and provide early‑warning alerts to relevant stakeholders.
- Assess risk implications for new products, services, processes, systems and strategic initiatives/projects.

2. Risk Strategy Development and Risk Management Tools
- Develop and enhance risk management policies, procedures, standards and guidelines in alignment with the enterprise risk management framework.
- Design and implement risk management tools such as RCSA, KRI, Loss Data Collection, Stress Testing and Scenario Analysis.
- Define and review the company’s Risk Appetite and propose appropriate control thresholds for each risk type.
Support business units in implementing preventive and mitigating controls across underwriting, claims, operations and commercial activities.

Key Accountabilities (2)

3. Risk Monitoring and Control
- Monitor financial indicators, transaction data and business performance metrics to identify anomalies and emerging risks.
- Ensure compliance with insurance regulations, supervisory requirements and internal policies.
- Detect early signs of fraud, process gaps or data inconsistencies and coordinate timely resolutions.
- Evaluate the effectiveness of existing controls and recommend improvements to reduce operational and financial losses.

4. Incident Handling and Risk Response
- Lead or support investigations of incidents, fraud cases or events impacting customers, assets or company reputation.
- Conduct root‑cause analysis (RCA) and recommend corrective and preventive actions.
- Develop and maintain incident response plans and business continuity/disaster recovery plans.
- Track remediation of audit findings, regulatory observations and internal risk issues.

5. Reporting, Compliance and Risk Advisory
- Prepare periodic and ad‑hoc risk reports for the Executive Committee, Board of Directors and regulators.
- Ensure compliance with insurance laws, financial reporting standards and all regulatory requirements issued by the Ministry of Finance and supervisory authorities.
- Provide advisory to business units on risk implications for underwriting, claims, investment and internal operations.
- Promote risk culture through training, communication and capability building across the organization.

Key Accountabilities (3)

6. Risk Capability Building and Risk Culture Development
- Develop training programs, learning materials and practical guidelines on risk management for underwriting, claims, finance, legal, IT and supporting functions.
- Organize periodic training sessions on risk identification, internal controls, risk assessment, compliance, and fraud management to strengthen organizational capability.
- Drive internal communication initiatives to reinforce a strong risk culture, encourage vigilance and promote proactive risk reporting across the organization.
- Establish knowledge‑sharing mechanisms, including lessons‑learned sessions, cross‑functional workshops and risk management best‑practice repositories.
- Support business units in building in‑house capability through mentoring, targeted workshops and specialized upskilling programs.
- Recommend initiatives to improve the company’s risk maturity level in alignment with international standards and regulatory expectations.

Key Relationships - Direct Manager

Head of Compliance and Operational Risk/Director, Operational Risk Management

Key Relationships - Direct Reports

Key Relationships - Internal Stakeholders

Business Units within company

Key Relationships - External Stakeholders

State management agencies, Partners, Customers

Success Profile - Qualification and Experiences

Qualification: 
- University degree or above majoring in Auditing/Accounting/Finance/Banking/Economics/Law 
- Master's degree or higher is preferred 

Experience:
- At least 12 years of experience, of which at least 03 years of experience in the position of expert/manager or equivalent in the field of risk management / legal compliance / inspection and audit of the banking and financial industry 
- Knowledge of products / services applicable to the customer segment in charge of the banking market 
- Understanding of policies / procedures for the customer segment in charge of the bank is preferred 
- Working experience related to risk management, compliance is preferred 
English proficiency 
- Minimum TOEIC 700 or equivalent

Apply now »