Job Description :
Key Responsibilities :
- Vision & roadmap : Define and communicate the product vision and roadmap for our risk modules, aligned to regulatory expectations.
- Risk management principles (ISO 31000) : Articulate purpose, risk criteria, appetite / tolerances, and governance; design audit-ready processes.
- Risk problem framing : Use research, data, and risk insights to translate operational / model / climate (ESG) risk disciplines into clear, detailed requirements.
- Controls & effectiveness (CER) : Map real-world controls to a Control Effectiveness Rating; design testing / attestation so evidence updates CER over time.
- Scoring logic : Define and maintain thresholds, banding, and decision rules for Inherent Risk - Residual Risk.
- Model design & calibration : Apply best-practice risk-model methodologies; define features, weights, and normalisation; run back-tests and sensitivity analysis; set cutoffs; monitor drift; document assumptions and data lineage.
- System design (risk) : Understand and design features for RCSA, KRI / KCI thresholding, loss-event capture, issues / actions, control attestations, risk appetite & limits, and portfolio risk views.
- Regulatory & governance alignment : Ensure designs support ISO 31000, BCBS 239 (risk data aggregation / reporting), the three lines of defence, audit trails, segregation of duties, SOX-style controls, and privacy / security guardrails (e., ISO 27001 / 27701, PDPA / GDPR).
- Decisioning & model governance : Partner with risk SMEs and data teams to shape scoring / rules engines; ensure explainability, data lineage / metadata, and model governance (e., SR 11-7).
- Cross-functional delivery : Work with risk experts, engineering, design, and operations to ship high-quality solutions on time; keep scope crisp and outcomes measurable.
- Backlog & PRDs : Prioritise the backlog; write clear PRDs and user stories; manage requirements with Product Owners and engineering.
- Customer journeys & UX : Be the voice of the risk user-risk managers, first-line operators, auditors-ensuring fast triage, transparent rationale, and clean evidence.
- Stakeholder communications : Proactively communicate progress, risks, and tradeoffs across UK / Singapore / India time zones with concise, data-driven updates.
- Agile leadership : Support Agile ceremonies (PI / iteration planning, stand-ups, reviews); balance strategic thinking with hands-on prototyping, validation, and delivery.
Preferred Qualifications and Experience :
Required Skills & Qualifications :
7- 10 years in Product Management or Business Analysis building risk / GRC / financial services products.Industry experience in risk assessment (financial services, commodities, insurance).Proven ownership across the full product lifecycle (strategy - discovery - delivery - launch - iterate).Deep familiarity with risk-management concepts, including operational risk (RCSA, KRI / KCI, loss events, issues / actions, risk appetite).Experience aligning products to frameworks such as ISO 31000, BCBS 239, the three lines of defence, COSO, and data / privacy / security standards (ISO 27001 / 27701, PDPA / GDPR).Strong Agile delivery (Scrum / Kanban / SAFe) and backlog management; outcome-driven prioritisation.Ability to turn complex risk requirements into simple, testable stories and flows.Excellent stakeholder management across risk, compliance, and engineering.Strong understanding of digital products, customer journeys, UX principles, and data driven decision-making.Strong organizational and prioritization skills, able to balance short-term needs with long term strategy.Additional Skills as Plus :
Agile certification (SAFe or equivalent).Broad knowledge of digital product trends and their application in regulated environments.Proven delivery in regulated sectors (Financial Services, Risk, etc.)Willingness to act as Scrum Master when needed.Strong analytical and problem-solving skills, high attention to detail, and a bias for impact.(ref : hirist.tech)