Kanthoruwa
Finance & AccountingFull-timeOn-siteSenior

Director of Internal Audit and Risk Oversight

Accounting & Auditing·Colombo·Posted Jul 23, 2026

HEAD OF RISK MANAGEMENT

Job Responsibilities

Enterprise Risk Strategy & Governance:

  • Develop and implement a comprehensive, forward-looking risk and internal audit strategy aligned with the organization's long-term business objectives.
  • Provide strategic oversight on enterprise-wide risk exposure, ensuring proactive identification, assessment, and mitigation of risks across all business functions.
  • Establish a robust governance framework to ensure risk accountability across all levels of the organization.
  • Advise the Board and Executive Leadership on emerging risks, regulatory changes, and strategic risk management initiatives.
  • Review related third-party transactions to ensure transparency, compliance, and governance best practices.

Risk Identification & Assessment:

  • Lead and manage the process of identifying and assessing all critical risks across business functions.
  • Ensure that all critical risks are identified and reported as per the risk management frequency for the organization.
  • Oversee the implementation of risk mitigation strategies based on assessment outcomes to reduce the organization risk exposure.
  • Define and evaluate the organization’s risk appetite to ensure alignment with business objectives and market conditions.

Risk Management Policy Development & Implementation:

  • Develop and ensure comprehensive risk management policies across the business are implemented.
  • Monitor adherence to risk policies and ensure compliance within the set timeframe.
  • Evaluate the success of risk mitigation efforts, tracking improvements in risk exposure.
  • Integrate business continuity planning (BCP) into the risk framework to enhance operational resilience and crisis preparedness.

Regulatory & Governance Compliance:

  • Ensure full compliance with industry regulations, corporate governance standards, and relevant frameworks.
  • Coordinate and complete compliance reviews, ensuring all required certifications are up-to-date.
  • Address any control weaknesses and non-compliance identified during internal and external audits.
  • Ensure that documentation is maintained as per regulatory and governance requirements.
  • Monitor regulatory compliance through structured monthly reviews to identify gaps and implement corrective measures.

Risk Assessment Reporting:

  • Provide the Audit Committee and other stakeholders with risk assessment reports.

Fraud Detection & Investigation:

  • Develop and manage a fraud prevention and detection system, ensuring employee awareness of fraud detection and whistleblower programs.
  • Lead investigations into fraud cases, ensuring timely resolution and implementation of corrective actions.
  • Ensure preventive measures are implemented to reduce fraud-related losses.

Strategic Guidance to Leadership:

  • Promote engagement through training and workshops on compliance and risk awareness. Provide strategic guidance and actionable insights to executive leadership on internal control and risk-related matters.
  • Foster continuous improvements in decision-making processes related to internal control and risk management.

Culture of Compliance & Continuous Improvement:

  • Foster a culture of compliance and continuous improvement, ensuring employees follow internal control and risk management best practices.
  • Promote engagement through training and workshops on compliance and risk awareness.

Team Performance & Mentorship:

  • Lead, mentor, and train the internal audit and risk management team to improve performance and productivity.
  • Develop team competencies through training programs, improving overall team outcomes.
  • Build a future-ready internal audit and risk management team by fostering innovation, adaptability, and skill development.

Training Program Management:

  • Collaborate with HR to ensure that the required training programs are identified and executed.
  • Ensure that employee understanding and application of internal audit and risk management practices are tracked and measured.

Technology-Enabled Risk Management:

  • Develop and manage a fraud detection system, ensuring employee awareness of fraud detection and whistleblower programs.
  • Lead investigations into fraud cases, ensuring timely resolution and implementation of corrective actions.
  • Ensure preventive measures are implemented to reduce fraud-related losses.

Qualifications, Education & Experience

  • Bachelor’s or Master’s degree in Accounting, Finance, Business Administration, or a related field.
  • Professional certifications in Audit and Risk Management.
  • 10+ years of relevant experience in internal auditing, risk management, or compliance, with at least 5 years in a senior leadership role.
  • Strong understanding of financial regulations, corporate governance, and risk management frameworks.
  • Experience in the FMCG, Dairy, or Manufacturing industry is an advantage.
  • Proficiency in audit tools, risk assessment methodologies, and ERP systems.

Kindly email your detailed cv to miluit03@gmail.com

Please mention the position applied for on the subject column and your current & Expected salary on the body of the email.