Deloitte

Manager - Enterprise Risk and Governance, Risk, and Compliance (GRC) - Middle East

Deloitte

Jeddah, Makkah Province, Saudi Arabia · Full Time

Be the first to apply

Experience
8–12 yrs
Salary
Openings
1
Posted
há 2 horas
Work mode
In office
Education
Bachelor's degree
Resume
Required to apply

Where you'll work

Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.

Job description

About Deloitte

Deloitte is one of the world's largest and most respected professional services firms, recognized across the Middle East for excellence, including awards for Best Employer and Best Consulting Firm. Our core mission is to make meaningful impact daily—addressing client needs innovatively and contributing positively to society while nurturing an inclusive work culture.

Role Overview and Responsibilities

As a Manager at Deloitte in Jeddah, you will lead full lifecycle Archer GRC solution implementations starting from scoping, resource planning, budgeting, and risk management through to executive reporting. You will act as the key contact managing expectations with senior client stakeholders such as Chief Risk Officers and CISOs. Defining target GRC operating models, solution architectures, and long-term platform roadmaps aligned to various use cases including operational resilience and compliance forms a critical part of your role.

You will provide quality assurance and governance over solution designs and deliverables, overseeing teams of 3 to 10 consultants spread across different geographic locations. Leading utilization management, coaching, performance reviews, and career progression of your team members will be expected. Additionally, you will drive business growth by identifying new opportunities, leading proposals, shaping commercial strategies, and building partnerships with Archer alliance teams. Advising clients on regional regulatory compliance including SAMA, CBUAE, and other central bank requirements will also be essential.

GRC Domain Expertise

  • Extensive experience implementing BCM frameworks and technology with emphasis on business impact analysis, continuity planning, crisis management, aligned to ISO 22301 and regional banking regulations.
  • Proven ability to transform third-party risk management operations with automated assessments, continuous monitoring, and addressing concentration risk.
  • Knowledge of operational resilience frameworks including defining critical business services, impact thresholds, scenario testing, and resource allocation within Archer solutions.
  • Capable of integrating BCM, TPRM, and resilience practices into a cohesive risk management framework.

Leadership Attributes

  • Alignment with Deloitte's purpose and values, seeking opportunities to create impact.
  • Strong dedication to learning, personal growth, and representing the firm's brand.
  • Accountability for personal performance with clear communication and relationship-building skills.
  • Understanding contribution to team and organizational objectives.

Qualifications and Experience

  • Bachelor's degree mandatory; advanced degrees such as MBA or MSc in Risk/Information Security advantageous.
  • Relevant certifications highly valued, including MBCI/CBCP, CTPRP/CTPRA, CRISC, CISA, PMP, or ISO 22301/27001 Lead Implementer.
  • 8-12 years' experience in total with minimum 5 years hands-on Archer platform implementation and 2+ years leading GRC technology teams or projects.
  • Documented successful delivery of at least 3-5 complete Archer deployments in lead or managerial capacity.
  • Strong expertise in Archer solution architecture, use-case design, workflows, integrations, environment setups, and licensing.
  • Professional Archer Certification preferred, with familiarity of competing platforms like ServiceNow IRM, MetricStream, or Diligent preferred.
  • Experience working with governance methodologies such as Agile, hybrid, and waterfall, and use of tools like Jira or Azure DevOps.
  • Knowledge of regulatory frameworks relevant to the Middle East and North Africa, including SAMA Cyber Security Framework, UAE and Egypt Central Bank regulations, and other regional financial regulatory guidelines.
  • Experience delivering projects in MEA or South Asia is advantageous; English fluency required; Arabic language skills beneficial.

Minimum education

Bachelor's Degree

How they work

Communication Teamwork & Collaboration Leadership Learning Agility Accountability

Leave it if you'd like a reply — we won't use it for anything else.

Click to browse, drag & drop, or paste a screenshot

PNG, JPG, GIF, MP4, WebM, MOV · Max 20MB each · Up to 5 files

🤖
Online · instant AI help