Job Description - IT Policy & Processes (GRC)
Location: Mumbai, India
Reporting To: Head - Governance, Risk & Compliance
Role Overview
Lead the formulation, implementation, and governance of enterprise-wide policies and processes within the GRC framework. This role is pivotal in ensuring IT in Kotak Bank operates within a robust governance structure, adheres to all regulatory requirements, and mitigates risks effectively. The incumbent will act as a strategic advisor to senior leadership, driving consistency, compliance, and accountability across all business units.
Key Responsibilities
- Policy Leadership & Governance
- Lead the design, approval, and periodic review of enterprise-wide GRC policies, frameworks, and SOPs in line with RBI, SEBI, and other regulatory requirements.
- Ensure policy alignment with regulators and corporate governance principles, industry best practices.
- Provide strategic interpretation of regulatory expectations for business units and management.
- Process Design & Standardization
- Establish standardized governance processes across departments and subsidiaries, wherever needed.
- Drive automation, digitization, and simplification of compliance-related processes.
- Ensure strong documentation, version control, and audit readiness for all policies and processes.
- Regulatory Compliance & Risk Oversight
- Serve as a senior point of contact for regulatory updates, translating guidelines into actionable policies.
- Monitor emerging risks and regulatory trends, advising management on proactive risk mitigation.
- Collaborate with Risk, Compliance, Legal, Audit, and Business teams to ensure consistent adherence.
- Strategic Advisory & Stakeholder Engagement
- Advise senior leadership, committees, and the Board on governance, compliance, and risk matters.
- Act as SME on GRC policies, representing the Bank in regulatory discussions when required.
- Partner with business units to embed risk culture and governance awareness.
- Monitoring, Reporting & Assurance
- Develop and oversee enterprise-wide dashboards, KPIs, and MIS to track compliance with policies.
- Ensure timely escalations and actionable insights for senior management and Board committees.
- Drive continuous improvement based on audit findings and regulatory inspections.
Qualifications & Experience
- Postgraduate / MBA / CA / CS / LLB or equivalent professional qualification.
- 12-18 years of relevant experience in Governance, Risk & Compliance, Policy Management, or Risk Consulting, with significant exposure in Banking / Financial Services.
- Proven track record in policy design, regulatory compliance, and enterprise governance.
- Strong knowledge of RBI regulations, Basel III, ICAAP, and enterprise risk frameworks.
- Prior experience in managing GRC or Compliance teams is preferred.
Skills & Competencies
- Strategic thinking with ability to balance regulatory requirements and business priorities.
- Excellent drafting, communication, and policy interpretation skills.
- Strong leadership, stakeholder management, and influencing capabilities.
- Analytical mindset with ability to identify systemic risks and process inefficiencies.
- Proficiency in GRC technology platforms, MIS reporting tools, and regulatory tracking systems.
Key Performance Indicators (KPIs)
- Timely approval, rollout, and periodic review of enterprise policies.
- Reduction in regulatory/audit observations related to governance and process gaps.
- Measurable improvements in policy adherence and risk awareness across business units.
- Effective Board and senior management reporting on GRC policies and processes.