Head of Enterprise Risk Management - Mobility

S&P GlobalCentreville, VA

About The Position

The Head of Enterprise Risk Management - Mobility is a senior leader within a best-in-class global legal team, reporting directly to the Chief Risk, Compliance and Privacy Officer. This role is responsible for designing, implementing, sustaining, and integrating an Enterprise Risk Management (ERM) framework for a business generating approximately $1.8 billion in revenue and employing around 3,500 people worldwide. The position involves leading risk strategy, governance, identification, assessment, mitigation, monitoring, and reporting across all material risk domains, including operational, technology/cyber, third-party, and resilience risk, while fostering a strong risk culture. The Head of Risk Management will collaborate closely with business leaders, technology teams, internal audit, legal, and compliance to ensure effective risk-aware decision-making and long-term organizational resilience. The ideal candidate will possess deep knowledge of enterprise risk management, strong business judgment, and the ability to partner with leadership to proactively identify, assess, and mitigate risks, combining strategic vision with operational rigor to embed a risk-aware culture and strengthen organizational resilience and sustainability.

Requirements

  • 10+ years of progressive enterprise risk leadership experience in complex, regulated, or technology-enabled organizations.
  • Demonstrated experience with operational and technology risk, third-party risk and enterprise resilience planning.
  • Experience advising leadership and cross-functional stakeholders.
  • Prior experience with risk tools, data analytics for risk monitoring or modern risk platforms.
  • Proven capability to manage high-volume, complex environments with sound judgment and adaptability.
  • Fosters inclusivity and manages emotions to achieve optimal business outcomes.
  • Able to effectively pivot direction and collaborate across teams to meet strategic initiatives.
  • Exceptional business judgment and strong problem-solving abilities.
  • Adept at articulating business needs and defining actionable strategies.
  • Actively seeks input from diverse sources to ensure engagement and influence stakeholder buy-in at all levels.
  • Excellent communication and interpersonal skills, with a demonstrated passion for the business.
  • Operates autonomously while also being a collaborative team player who brings a positive, “can do” attitude to the workplace.
  • Works effectively with other members of the Compliance, Risk and Privacy team, internal clients, and cross-functional organizations to influence and develop strategic initiatives.
  • This role is limited to persons with indefinite right to work in the United States.

Nice To Haves

  • Bachelor’s degree in Risk Management, Business, Finance, Engineering, Information Systems or related field preferred.
  • Professional certifications, such as Certified Risk Manager (CRM), Certified in Risk and Information Systems Control (CRISC), Project Management Professional (PMP), FRM, PRM, ISO 31000 training preferred.

Responsibilities

  • Lead development and deployment of the enterprise risk strategy, ensuring alignment with the company’s strategic objectives and risk appetite.
  • Establish and maintain risk governance structures, frameworks, policies and standards.
  • Support risk committees, coordinate agendas and track action items.
  • Advise on risk priorities, trends and emerging threats.
  • Drive risk identification and assessment processes across all functions and business units.
  • Maintain enterprise risk registers, risk heat maps and risk taxonomy.
  • Facilitate risk workshops and scenario analysis to capture evolving risk exposures.
  • Lead the design and implementation of risk mitigation strategies and controls.
  • Work with business and control owners to strengthen control environments and close gaps.
  • Ensure risks are appropriately escalated and managed within risk appetite thresholds.
  • Provide oversight of operational risk within business processes and critical initiatives.
  • Partner with business leaders to embed risk controls into operational workflows.
  • Conduct low event investigations and root cause analysis.
  • Support change-risk assessments for strategic and transformational activities.
  • Oversee risk identification and assessment for technology and cybersecurity exposures.
  • Collaborate with InfoSec, IT and other stakeholders on risk mitigation actions, testing and monitoring.
  • Align risk practices with technology roadmaps, DevOps processes and digital transformation initiatives.
  • Lead enterprise operational resilience strategy and framework.
  • Ensure business continuity planning, crisis management playbooks, and disaster recovery plans are effective and regularly tested.
  • Incorporate resilience considerations into risk assessments and business planning.
  • Establish and maintain risk dashboards, key risk indicators (KRIs), and risk reporting protocols
  • Provide timely risk insight to senior leadership and risk governance bodies.
  • Monitor trends and make actionable recommendations to mitigate exposures.
  • Assess the effectiveness and timeliness of risk responses and control actions.
  • Recommend corrective actions and track implementation to closure.
  • Ensure continuous improvement of risk processes and tools.
  • Champion a strong risk culture across the enterprise.
  • Promote risk ownership at all levels and enhance risk literacy throughout the organization.
  • Lead the Third-Party Risk Management (TPRM) program, establishing a risk-based framework for onboarding, due diligence, monitoring and offboarding of vendors, suppliers and partners.
  • Oversee identification, assessment and prioritization of third-party risks – including operational, financial, technology, regulatory and reputational exposures – and ensure timely escalation to leadership.
  • Partner with procurement, legal, compliance and business owners to integrate risk mitigation, contractual controls, business continuity and compliance obligations into third-party relationships.
  • Drive continuous improvement, reporting and analytics to enhance visibility, monitoring and resilience of critical third-party dependencies.

Benefits

  • Health care coverage designed for the mind and body.
  • Generous time off helps keep you energized for your time on.
  • Access a wealth of resources to grow your career and learn valuable new skills.
  • Secure your financial future through competitive pay, retirement planning, a continuing education program with a company-matched student loan contribution, and financial wellness programs.
  • Perks for your partners and little ones, too, with some best-in class benefits for families.
  • From retail discounts to referral incentive awards—small perks can make a big difference.

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Senior

Education Level

No Education Listed

Number of Employees

5,001-10,000 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service