What are the responsibilities and job description for the Senior Risk Officer (IT Risk) position at The Economist?
Job : req31067
Organization : World Bank
Sector : Risk
Grade : GG
Term Duration : 3 years 0 months
Location : Washington, DC, United States
Closing Date : 1 / 30 / 2025 (MM / DD / YYYY) at 11 : 59pm UTC
The Operational Risk Department (CROOR) is looking for an individual with 10 plus years’ of practical experience in operational risk related roles, experience in leading risk related initiatives and an excellent track record in helping clients improve operational risk management. Operational risk is defined as the risk of loss resulting from inadequate or failed internal processes, people and systems, or from external events.
While day-to-day operational risk management lies with the business functions, the Operational Risk Department (CROOR) which operates under the Group CRO has key responsibilities which include (i) oversight of operational risks across the Bank including regular monitoring and reporting of risks, (ii) development and implementation of an operational risk methodology to support reporting of operational risks, (iii) coordination and communication with business units to ensure identification and prioritization of operational risks and events, (iv) assisting the Bank in managing key risks in collaboration with business partners, (v) maintaining a governance risk and compliance tool to facilitate data collection and reporting, (vi) acting as the secretariat for the Operational Risk Committee (“ORC”) which is the principal governance body under the authority of the CRO for operational risks, and (vi) evaluating operational risk issues and related issues for new products, and (vii) providing training on operational risks to champions representing the business functions.
Duties and Accountabilities
The Senior Risk Officer will focus on : (i) supporting first line of defense functions on all aspects of operational risk management; (ii) contributing to the operational risk team in the enhancement of the risk management framework and (ii) the coordination of risk management initiatives.
Specifically, the risk officer is expected to work closely with Bank units to help :
- Interact with the selected functions on operational risk related matters, including IT and others.
- Partnering and overseeing IT first line of defense functions on all aspects of operational risk management.
- Monitor internal and external risk profile, review risk assessment, challenge and provide feedback to ensure it adequately reflects reality, including refine and review indicators and thresholds used to report operational risks.
- Review and advice on IT risk management and cybersecurity measures and recommend mitigation strategies.
- Collaborate and challenge risk partners specifically IT and cybersecurity teams and the ThirdParty Risk Management teams.
- Monitor the IT related risk landscape and brief senior management on IT risk related matters.
- Provide second-line assurance on the implementation of IT solutions including AI, ensuring they align with the organization's risk management framework.
- Coordinate with relevant stakeholders to ensure effective response and recovery from data cybersecurity incidents.
- Monitor risks related to IT projects, and infrastructure, establish reporting and proactively challenge first line.
- Lead risk management initiatives that include assessing the risk and developing appropriate risk management strategies that is in line with the Bank’s risk appetite
- Design and implement business unit strategies to enhance risk management capabilities for business units
- Guide business units to identify, assess, prioritize, monitor, and report enterprise and operational risks in their functional areas
- Facilitate the quarterly operational risk reporting process, including identifying key issues for discussion with the first line, following up on key risk issues, monitoring KRIs and events and coordinating discussions with management
- On board” new business units with respect to their interaction with the ORC
- Provide advice and guidance to business units to mitigate or reduce operational risk
- Perform research on various thematic areas to understand operational risk landscape that includes trends, emerging risks, good practices, regulatory changes etc.
- Participate in designing, testing, and implementing new and current technology solutions, including providing 2nd line assurance on the implementation of AI solutions
- Support the development and delivery of the team’s internal communication strategy to increase stakeholder awareness
- Support CRO leadership on advising senior management on technical operational risk issue
- Write reports for management and the Board that summarize operational risk issues
Selection Criteria