- Experience
- Any
- Salary
- —
- Openings
- 1
- Posted
- 2 days ago
Where you'll work
Job description
Role overview
We are looking for a seasoned Governance, Risk and Compliance (GRC) Manager to assist a client in strengthening governance, enterprise risk management, compliance, operational resilience, and internal control structures. This is a contract, project-based assignment in Doha, Qatar.
The right person will bring practical experience across ERM, operational risk, business continuity, internal audit, and regulatory assessment work. The engagement is intended for a candidate already based in Doha who can begin on short notice.
What you will do
- Build and improve governance structures, policies, terms of reference, and delegation-of-authority frameworks.
- Shape and maintain enterprise risk management tools such as risk registers and risk taxonomies.
- Run risk workshops, monitor key risk indicators, and prepare enterprise risk updates and reports.
- Drive operational risk work, including risk and control self-assessments, scenario reviews, and control testing.
- Contribute to business continuity and ISO 22301 programs, including business impact analysis, continuity planning, disaster recovery, and resilience exercises.
- Carry out assessments related to third parties, cyber risk, IT risk, ESG, and climate risk.
- Assist with internal audit planning, on-site fieldwork, and control evaluation activities.
- Analyze root causes, document audit findings, and track remediation actions through closure.
- Perform assessments covering enterprise-wide risk assurance, compliance gaps, fraud risk, and financial crime risk.
- Evaluate the effectiveness of the three lines of defence model and the overall maturity of the control environment.
- Support crisis simulations and wider operational resilience initiatives.
What we are looking for
- A bachelor’s degree in Risk Management, Finance, Business, Accounting, Information Security, or a closely related field.
- Substantial experience in GRC, enterprise risk, internal audit, compliance, or operational risk functions.
- Working knowledge of ISO 22301, NIST, FATF, and established governance practices.
- Strong capability in analysis, stakeholder coordination, and report writing.
- Professional certifications such as CIA, CRMA, CISA, CAMS, FRM, or ISO 22301 are considered a plus.
- Must be based in Doha and available to take up a short-term, project-based assignment immediately.
Engagement details
This is a contract, onsite role in Doha, Qatar. It is a short-term/project-based engagement and is intended for immediate availability.