Chief Internal Audit Risk and Compliance Officer
Fa Eptm Saasfaprod1 · Uganda
About The Role
Chief Internal Audit Risk and Compliance Officer Department: Internal Audit Reports To: Chief Executive Officer (Administratively) Board Audit, Risk and Compliance Committee (Functionally) Duty Station: Entebbe International Airport, with oversight and travel across the network as assigned Job Level: Chief / Executive Management Direct Reports: Manager Internal Audit Manager Risk and Compliance Operational Scope: leading independent audits, managing enterprise risks, and ensuring regulatory compliance Job purpose To provide independent, objective assurance and advisory services that add value and improve the airline's operations by evaluating and enhancing the effectiveness of governance, risk management, internal controls, compliance, and fraud management processes. The Chief Audit and Risk Officer is responsible for developing and executing a risk-based internal audit strategy and enterprise risk management framework that supports the airline's strategic objectives, operational excellence, regulatory compliance, safety, financial sustainability, and stakeholder confidence. The role serves as a strategic advisor to the Board Audit and Risk Committee, Board of Directors, CEO, and Executive Management on governance, risk, control, compliance, and organizational resilience. 2. Key accountabilities (a) Internal Audit Leadership Develop and implement a risk-based internal audit strategy aligned with the airline's corporate objectives. Prepare and execute the annual and rolling internal audit plans based on risk assessments. Ensure compliance with the Global Internal Audit Standards (GIAS), IIA Standards, and relevant professional practices. Provide independent assurance over the adequacy and effectiveness of internal controls. Advise management on improving business processes, efficiency, and governance. Operational Responsibilities including but not limited to adhoc audits as and when required. Direct audits covering commercial, financial, information technology and functional operations. Review and approve audit reports. Ensure timely follow-up of audit findings and recommendations. Monitor implementation of corrective actions. Leads in the provision of advisory services. (b) Enterprise Risk Management (ERM) Risk Framework Management Develop and maintain the airline's Enterprise Risk Management Framework. Facilitate identification, assessment, treatment, monitoring, and reporting of strategic, operational, financial, regulatory, cyber, safety, and reputational risks. Guide management in establishing risk appetite and risk tolerance levels. Maintain the corporate risk register and emerging risk register. Present risk reports to the Board Audit, Risk and Compliance Committee, Board of Directors and Executive Management Committee. Monitor key risk indicators (KRIs). Assess risks associated with Fleet expansion & Route development, market risks, cyber security, geopolitical and regulatory compliance risks. ©Governance Oversight Evaluate effectiveness of corporate governance structures. Assess compliance with Board-approved policies and procedures. Advise the Board on governance best practices. Facilitate governance maturity assessments. Ensure alignment with OECD Governance Principles, National Corporate Governance Codes, Public Enterprise Governance Requirements and Aviation Industry Best Practices. (d) Regulatory Compliance Assurance Provide assurance over compliance with: Aviation Regulatory Requirements International Civil Aviation Organization (ICAO) International Air Transport Association (IATA) Civil Aviation Authority Regulations IOSA Standards ISAGO Requirements Corporate Regulatory Requirements Company Laws Public Finance Management Regulations Procurement Regulations Tax Laws Labour Laws Data Protection and Privacy Regulations. (e) Aviation Industry Knowledge The auditor should understand: Airline operations Flight operations Maintenance, Repair and Overhaul (MRO) Airport operations Cargo operations Ground handling Revenue management Safety Management Systems (SMS) Key regulations include: ICAO Standards and Recommended Practices (SARPs) IATA Operational Safety Audit (IOSA) Civil Aviation Authority regulations Aviation security requirements Aircraft leasing and financing arrangements (f) Risk Management Expertise Develop policies and lead investigations in the following Risk Financial Operational Cybersecurity Regulatory fraud, corruption, misconduct, revenue leakage, and ethical violations. Monitor whistleblowing mechanisms. Develop anti-fraud awareness programs. (g) Strategic Risk Advisory Provide independent advisory services to management regarding: Fleet acquisition projects Aircraft leasing arrangements Network expansion Digital transformation initiatives ERP implementation projects Alliances and code-share arrangements Business continuity management Crisis management planning (h) Information Systems and Cybersecurity Assurance Oversee IT audit activities. Review effectiveness of cybersecurity controls. Evaluate commercial systems, ERP systems, cyber security systems among others Review adequacy of disaster recovery and business continuity plans. Board and Executive Reporting Serve as Secretary to the Board Audit and Risk Committee where required. Present audit results and risk intelligence to the Board. Escalate significant control weaknesses and emerging risks. (i) Leadership and People Management Lead and develop the audit and risk management teams. Promote a culture of integrity, accountability, and risk awareness. Ensure continuous professional development of staff. Manage departmental budgets and resources. Drive innovation through data analytics and continuous auditing. 3. Minimum qualifications and experience Bachelor’s degree in accounting, Finance, Commerce, Economics, Business Administration Aviation Management or Related discipline. Master’s degree in Business Administration, Finance, Accounting, Risk Management, Economics, Aviation Management or Related field or its equivalent of in Airline accounting, Finance, Commerce, or economics working experience of ten (10) years. Minimum ten (10) years of relevant experience. At least ten (10) years in senior management. Significant experience in: Internal Audit, Enterprise Risk Management, Investigations, Governance, Aviation operations A member of Institute of Certified Public Accountants of Uganda Certified Fraud Examiner (CFE) Risk management certifications such as CRMA or ISO 31000 knowledge Certified Internal Auditor (CIA) Certified Information Systems Auditor (CISA) for IT audits Must be 45 years and above 4. Knowledge, skills and competencies Audit judgement and risk management acumen Strategic leadership and execution Airline internal controls management Process Mapping management Data interpretation, forecasting and performance management Governance, risk awareness and ethical judgement Clear Board-level communication management People leadership, coaching and succession development Decisiveness under pressure and accountability for results NB: The applicants shall apply and submit their application and resumes through the website and additionally send a copy of application to <[email hidden]> Should you have any inquiries concerning the job advertisement please send them to <[email hidden]>
Similar roles you might like
See all →This is an external listing. JobSpring does not represent or verify the employer. Report this listing
