🎁 Before you apply, rehearse this interview. Create your free WorkMundi account and get an Interview Training on HelpsYouSpeak — no cost, no card. I want my training →
Designation: Deputy Chief Manager Location: India Maharashtra G-Corp Tech Park, Thane Organization: Financial Services Job Description: Job Purpose The purpose of this job is to achieve quality assurance and information security objectives for the Operations team in line with the enterprise & operational risk frameworks, drive process compliance to regulatory guidelines by establishing internal controls. The purpose of this role is to also act as the risk, compliance & audit champion for BSLI Operations and to also carry out an independent appraisal of the effectiveness of the policies, procedures and standards. Job Context & Major Challenges Job Context: The purpose of this job is to achieve quality assurance and information security objectives for the Operations team in line with the enterprise & operational risk frameworks, drive process compliance to regulatory guidelines by establishing internal controls. The purpose of this role is to also act as the risk, compliance & audit champion for BSLI Operations and to also carry out an independent appraisal of the effectiveness of the policies, procedures and standards. Job Challenges: Accurately interpreting imprecise and frequent regulatory changes for planning, communicating and ensuring implementation through diverse stakeholders within time and resource constraints. Ensuring completeness of internal audits within the stipulated timelines, planning organizing and close looping internal/external audits, given diverse nature of the stakeholders having varied priorities. Conducting an extensive process compliance review for internal controls for branches and HO processes across the country becomes a key operational & logistical challenge as the review includes interaction with vertical heads, function head and zonal managers Directing stake holders to manage unpredictable external events like frauds, requirements from statutory bodies such as IRDA, SEBI, CBI, Parliament, income tax department, Ministry of finance etc and simultaneously ensuring no disruption in regular time-bound activities. Institutionalise discipline and control environment through best practices in a vast geography and a rapid expansion mode Convincing the auditors who at times lack understanding about the processes and its historical evolution in order to ensure precise audit reporting in an objective manner. Key Result Areas KRA (Accountabilities) (Max 1325 Characters) Supporting Actions (Max 1325 Characters) KRA1 Develop data governance framework within operations, authorize application access rights, oversees user id management so as to ensure information security is met in line with organizational objectives and needs. 1. Assesses the access rights given to all verticals so as to ensure confidential data is accessed by only authorised personnel and limited access is provided based on job role. 2. Ensure application id creation, access right modification and application id deletion is accurately & timely executed 3. Monitor reconciliation of application ids on a monthly basis 4. Appraise business partners are provided with application access only on need basis and a proper risk assessment is established. 5. Define and attain a safe mechanism to share client data with external stake holders. 6. Define and develop segregation of responsibility in applications and maker & checker at processes. KRA2 Develop and maintain a quality assurance and process assessment framework so as to ensure appropriate compliance of all applicable laws, regulations and policies 1. Assess, recommend and advise operations on compliance issues and regulatory risks that result in operational efficiency and control effectiveness relevant to insurance industry. 2. Approve and sign off on new and enhanced processes 3. Escalate potential delays/ red flags/ non-compliance's to leadership teams. 4. Facilitate regulatory audit for operations in nature of onsite inspection, observation clearances and timely closure of audit. 5. To conduct any reviews or tasks requested by management, protection of policy holders committee, managing director, leadership team, provided such reviews and tasks do not compromise the independence or objectivity 6. Strategize plan of action in conducting due diligence for business initiatives and new ventures. KRA3 Define, establish and evaluate enterprise and operational risk mitigation strategies which is in line with risk philosophy of BSLI and monitor the key risk on a periodic basis. 1. Ensure key enterprise risks are identified; mitigation strategies are defined & evaluated and thereafter monitored on a periodic basis. 2. Monitor the operational risk frameworks such as operational loss reporting, Risk and control self assessment (RCSA), key risk indicators are conducted and assessed as planned, in collaboration with stakeholders. 3. System impact study on regulatory / process changes and ensure there is no misuse of .