Job Description: To embed and operationalize Operational Risk Management across Kshema by driving RCSA, & and BCP readiness, ensuring strong control environment, regulatory compliance, and business resilience.
Core Portfolios
1. RCSA & Operational Risk Governance
ï§ Drive RCSA implementation across all functions
ï§ Strengthening risk identification, control effectiveness, and first -line ownership
ï§ Design and execute control testing program (test plans, sampling, evidence, deficiencies) to validate effective control functioning and drive remediation
ï§ Drive Ops Risk governance cadence (ORC, reporting, reviews)
ï§ Conduct thematic reviews and expand scope to include customer experience & reputation risks.
ï§ Oversee / Consume:
o Incident reporting & loss data
o RCA and CAPA tracking via Issue Tracker
o KRIs and risk dashboards
o Define actionable, action -oriented KRIs linked to risk appetite/thresholds; monitor breaches and drive timely management actions
o Fraud Risk Triggers / instances
2. Business Continuity Planning (BCP)
ï§ Design and implement BCP framework across functions
ï§ Conduct Business Impact Analysis (BIA) and scenario planning
ï§ Lead BCP drills, testing, and incident response readiness
ï§ Drive training, awareness, and resilience reporting
ï§ Ensure alignment with IT DR and critical vendor continuity
Value Proposition
Acts as the execution arm of Operational Risk, ensuring risk frameworks translate into measurable control strength, regulatory compliance, and business resilience.
Requirements
Cross -Functional Responsibilities
ï§ Support risk policy and SOP deployment
ï§ Align with frameworks like COSO and ISO 31000
ï§ Deliver risk reporting to CRO/RMC
ï§ Drive incident, issue, and control governance
ï§ Support enterprise risk initiatives (data security, process improvement, CX risk)
Capability Requirements
ï§ Strong knowledge of Operational Risk, IRDAI regulations, and insurance operations
ï§ Analytical mindset with data -driven risk monitoring
ï§ Strong stakeholder management and governance orientation
Combined Success Metrics
- RCSA Coverage & Control Effectiveness: % functions covered, improvement in control ratings
- Risk Events & Issue Management: Reduction in repeat incidents, timely RCA & CAPA closure
- BCP Readiness: Coverage of critical functions, drill effectiveness, RTO adherence
- Governance & Reporting: Timeliness and quality of risk reporting to CRO/RMC
- Control Testing & KRI/Risk Appetite Monitoring: % key controls tested vs plan, deficiency closure rate, number of KRI breaches outside appetite and time to remediate