- Location
- Douglas
- Type
- Full-time, Temporary
- Department
- Legal
- Seniority
- Manager
- Source
- Personio
Description
About the role
The role offers broad exposure across risk and compliance and the opportunity to contribute to the continued development of risk management, regulatory compliance, and governance across the jurisdictions in which Monument International operates. The role is primarily focused on the Isle of Man business; however, the role holder will also provide risk, compliance, and data protection support and oversight to the Singapore branch as required.
Working within the Risk and Compliance function, the role holder will act as the principal day-to-day risk management resource to the CRO & IHoC, taking ownership of the coordination and delivery of agreed risk management activities under the CRO & IHoC’s direction. The role holder will provide independent oversight, constructive challenge, monitoring, advice, and reporting across the Company’s risks and support the continued development and effective operation of the Risk Management Framework, helping to promote a strong risk culture across Monument International and its associated entities.
The role holder will also undertake compliance activities within the Compliance Framework and priorities established by the CRO & IHoC, working independently on allocated activities with day-to-day direction and functional oversight provided by the Compliance Manager. The role holder will work with senior management and the wider business to maintain robust governance arrangements and regulatory compliance.
The role holder will also perform or assist with the responsibilities of the Isle of Man Data Protection Officer (DPO).
Responsibilities
Risk Management Responsibilities
- Support the maintenance, effective operation, and continued development of the Risk Management Framework, and the processes used to identify, measure, monitor, manage and report risk across the full risk spectrum, including market, credit, insurance, liquidity, operational, and strategic risks.
- Promote a positive risk culture and awareness across the business, helping to identify risk management training needs and supporting the delivery of appropriate training.
- Provide practical guidance and advice to first-line functions on risk matters.
- Facilitate and report on Risk and Control Self-Assessments, providing second-line review and challenge of risk assessments, controls, and associated actions.
- Perform risk reviews on the Company’s key risks and thematic areas, including review of design and effectiveness of relevant controls.
- Monitor and report on risk appetite metrics, key risk indicators, and other risk management information, highlighting trends, emerging concerns and matters requiring escalation.
- Support the identification, assessment, and escalation of emerging risks and changes in the Company’s risk profile.
- Coordinate risk event reporting processes, providing second-line review and challenge of assessments, root-cause analysis, remediation and closure.
- Provide risk input and challenge in relation to material projects, business change, and significant business decisions as required.
- Prepare risk reports and presentations for management committees and Board committees.
- Support the effective delivery of the ORSA process and other risk-related regulatory and governance activities.
- Support the annual Risk Plan and maintain relevant risk policies, procedures, registers and governance documentation.
Compliance Responsibilities
- Undertake compliance activities within the Compliance Framework and annual Compliance Plan, working independently on allocated activities with day-to-day functional oversight provided by the Compliance Manager.
- Undertake allocated compliance monitoring and assurance activities, including evidence review, documentation of findings, and tracking of agreed actions.
- Provide practical support, advice, and guidance to the business on regulatory requirements and compliance obligations, escalating significant or complex matters where appropriate.
- Support regulatory horizon scanning and assessment of relevant legislative, regulatory, and industry developments and help assess potential impacts on the business.
- Assist with regulatory engagement, inspections, information requests, compliance risk assessments, and thematic reviews as required.
- Support the maintenance of compliance policies, procedures, guidance and relevant compliance records.
- Contribute to and help the effective delivery of compliance training and awareness activities.
- Perform or assist with the responsibilities of the Isle of Man Data Protection Officer role, including:
- data protection compliance, breach management, training, record keeping, and governance reporting
- privacy and data protection advice and guidance; and
- data protection impact assessments, privacy risk assessments, data subject access requests, and other individual rights requests.
General Responsibilities
The role holder shall:- Act with integrity and demonstrate appropriate standards of conduct at all times.
- Maintain appropriate professional knowledge and regulatory awareness.
- Support Monument International's compliance with applicable regulatory requirements.
- Escalate material risks, breaches, or concerns promptly through appropriate governance channels.
- Demonstrate independence and objective judgement when providing oversight and challenge.
- Attend and contribute to relevant governance forums and maintain appropriate records and documentation relating to the role.
Role Requirements
Essential
- Strong knowledge and practical experience of risk management frameworks, risk assessment, controls, and risk reporting.
- Experience within risk, compliance, or governance functions in regulated financial services, with sufficient experience across both risk and compliance to operate effectively in a combined role.
- Experience operating within a Three Lines of Defence framework.
- Experience preparing management information, committee reports, and governance documentation.
- Good knowledge of regulatory compliance and compliance monitoring within financial services
- Knowledge of data protection principles and privacy risk management.
- Strong analytical, communication, and stakeholder management skills.
- Strong report-writing and presentation skills.
- Ability to work independently, exercise sound judgement, and provide constructive challenge.
Desirable
- Experience within life insurance, investment, wealth or wider financial services sectors.
- Previous experience supporting regulatory inspections or interactions.
- Data protection qualification, such as CIPP/E, CIPM or equivalent.
- Risk qualification, such as an IRM Certificate/Diploma or equivalent.
- Compliance qualification, such as an ICA Advanced Certificate, Diploma or equivalent.
Location
Isle of Man
Closing Date
23rd October 2026
Equal Opportunities Statement
Monument Group are an equal opportunities employer