Senior Risk and Compliance Data Engineer (SP6) - Group Enterprise Risk Management

Listing reference: capgh_000357
Listing status: Online
Apply by: 3 February 2026
Position summary
Industry: Financial Services
Job category: General Management
Location: Windhoek
Contract: Permanent
Remuneration: TBD
EE position: No
Introduction
The Senior Risk and Compliance Data Engineer provides technical and analytical support to Capricorn Group ERM’s Operational Risk and Compliance functions by designing, implementing, and maintaining data-driven solutions that strengthen the Group Risk, Internal Control and Assurance Framework (GRICAF). This includes supporting the execution of principal risk frameworks (Operational Risk and Compliance), group-wide risk and compliance assessments, RCSAs, control monitoring, KRIs, incident and loss event data capture, and issue remediation tracking. The role contributes to quarterly risk profile reporting to the Group Risk Committee and the Board Audit, Risk and Compliance Committee (BARCC). The incumbent ensures robust data sourcing, cleansing, and integration through structured ETL processes and automates workflows to enhance data reliability. The role collaborates with Group IT and the enterprise data governance function to align with the Group’s Enterprise Data and Analytics Strategy and acts as ERM’s data process owner at technical data forums.
Job description

KEY PERFORMANCE AREAS (KPAs)

1. Risk & Compliance Data Management

·       Build and maintain data pipelines for operational risk registers, incidents/loss events, RCSAs, compliance monitoring plans, KRIs, and scenario analysis.

·       Standardise datasets, templates, and evidence documentation for monitoring officers and risk officers to ensure auditability and traceability under the GRICAF.

·       Stretch: Lead the design of enterprise-wide data architecture standards for risk and compliance, aligning with GRICAF and BCBS239 principles.

2. Monitoring, Planning & Execution

·       Provide analytical support for risk-based compliance monitoring plans (aligned with GACP) and operational risk reviews.

·       Integrate structured datasets supporting compliance monitoring scope, risk assessment models, and RCSA cycles for ERM management and/or data governance approval.

·       Provide dashboards, extracts, and predictive insights to identify compliance gaps, emerging operational risks, and control effectiveness trends.

·       Stretch: Shape Group-wide methodologies for data-enabled monitoring and risk assessment, ensuring consistency across subsidiaries, supporting and influencing revisions of principal risk frameworks.

3. Reporting & Documentation

·       Contribute validated risk and compliance data for inclusion in Group Risk Committee packs and BARCC reports.

·       Support consolidated departmental and executive management reporting, aligned with Group data governance standards.

·       Stretch: Advise on the evolution of reporting standards for principal risks, ensuring Group reporting aligns with regulatory developments and emerging international standards.

4. Controls, Issues & Remediation Tracking

·       Enable automation of ERM workflows such as control testing, risk and control assessments, issue remediation reporting and risk and compliance performance discussion input.

·       Provide consolidated views across various risk dimensions such as Operational Risk, Financial Crime, Compliance, matters for board attention, remediation actions and overdue items for escalation to the Group Risk Committee and BARCC.

·       Stretch: Provide thought leadership and insights on Group-wide control taxonomy and remediation protocols, influencing enterprise risk governance standards.

5. Stakeholder Engagement & Support

·       Collaborate with GPROs, PROs, Operational Risk Officers, Compliance Officers, and Business Unit Risk Champions across the Group.

·       Support ERM’s representation at regulatory and industry forums by preparing relevant risk and compliance data inputs.

·       Provide risk and compliance data insights to internal assurance functions under the combined assurance model.

·       Stretch: Represent Capricorn Group in external industry working groups or regulatory consultations on data-driven risk and compliance practices.

6. Quality Assurance & Tools

·       Develop and enhance ERM’s risk and compliance data tools, dashboards, and models to support dynamic risk management.

·       Perform quality assurance on data inputs into principal risk frameworks, compliance monitoring outputs, and advisory notes.

  •         Stretch: Champion innovation in ERM data tools (e.g. AI/ML use in risk data), driving Group adoption of advanced risk       analytics.

Minimum requirements

QUALIFICATIONS & EXPERIENCE

·       Bachelor’s degree in Data Science, Risk Management, Information Systems, or Compliance Technology (with strong data component).

·       3–5 years’ experience in risk, compliance, or data analytics within a financial services or regulated environment.

·       Proficiency with data tools (e.g., advanced Excel, Power BI, SQL, Python, SAS, ETL platforms), with proven ability to translate business requirements into technical solutions.

·       Experience preparing dashboards, automated reporting, and data-driven risk insights.

·       Certifications or experience in operational risk management (Basel II/III, COSO ERM, ISO 31000) and/or compliance (auditing, CISA GACP) advantageous.

·       Stretch: Postgraduate degree or internationally recognised certification (e.g., FRM, CRISC, CISA, CISM) with direct application to risk data management.

·       Stretch: 8–10 years’ experience, including enterprise-level scope across multiple subsidiaries or jurisdictions.

·       Stretch: Recognised contributor to industry working groups, regulatory consultations, or thought leadership in risk and compliance data.

Our website uses cookies so that we can provide you with the best user experience. By continuing to use our website, you agree to our use of cookies.