- IT Risk and Compliance Manager (JESS)
- KPMG Jamaica (JESS)
- Kingston and St. Andrew / St. Ann / St. Catherine
- Not disclosed
- Permanent full-time
- Updated 24/07/2026
- HR
- Log in or register to apply
- Share
- Share this job
- Report This Job
- Save
- Save
In this role, you will focus on multi-disciplinary risk management with a significant emphasis on data risk expertise and control design.
- OVERVIEW
:
KPMG Jamaica has a delivery center named "Jamaica Extended Support Services (JESS)" operating from Kingston, which is contracted to provide support to its member firm KPMG United States ("the Client").
-
JOB SUMMARY:
In this role, you will focus on multi-disciplinary risk management with a significant emphasis on data risk expertise and control design. You will lead initiatives to execute technology, data, operations, and cyber risk assessments while collaborating with peers, senior leadership, and Line of Defense (LoD) partners to align risk measures with high-impact areas. Your expertise in Second and Third LoD data risk management, data modeling, strategy, and governance will guide efforts to analyze and recommend control enhancements. You will manage comprehensive risk and control matrices (RCMs), risk registers, and the end-to-end risk lifecycle to optimize the organization's risk posture.
JOB RESPONSIBILITIES:
- Service Delivery
Lead multi-disciplinary risk assessments across technology, data, operations, and cyber risk domains, translating complex findings into actionable insights for leadership
Demonstrate and apply deep proficiency in data risk management within the Second and Third Lines of Defense (LoD), focusing on data modeling, strategy, and management controls
Evaluate, design, and recommend management controls to mitigate risk, drive a risk-aware culture, and ensure alignment with firm policies and acceptable risk appetite
Analyze the impact of key risks and the evolving operating landscape to define risk tradeoffs and recommend strategic optimizations to leadership
Develop and maintain comprehensive risk and control matrices (RCMs) and risk registers, managing the end-to-end risk lifecycle from identification to treatment
Build trust-based relationships and collaborate with peers, senior leadership, and LoD partners to target internal audits and risk measures toward high-impact areas
EDUCATION/EXPERIENCE:
- Bachelor's degree in Computer Science, Risk Management, Cybersecurity or a related field
Minimum of five (5) years’ of risk and compliance experience within a large professional services environment specializing in physical and cyber security
Relevant industry certifications, e.g., CIA, CISA, CISM, CRISC, or CISSP.
Demonstrated understanding of disparate compliance frameworks and risk management principles, as well as experience making decisions to optimize overall operational risk.
Ability to analyze and synthesize technical data and convey it to non-technical audiences.
- U
nderstanding of key business objectives and how to balance business objectives against IT risks.
Solid verbal/written communication, problem-solving, analytical, and independent judgement skills to support an environment driven by customer service and teamwork
- Strong problem-solving skills, project management skills, and attention to detail
- Ability to work independently and work well within a team
- Strong organizational and time management skills; ability to adhere to deadlines
- Proficient in Microsoft Office Suite applications including Word, Excel, PowerPoint, and Outlook
COMPETENCIES:
- Business Competencies
- Communication –
- Deliver clear, effective communication and take responsibility for understanding others
-
- Customer Service -
Demonstrate a commitment to public service, serving internal and external customers while holding oneself accountable for quality outcomes
-
- Collaboration & Teamwork -
Work cooperatively with others, inside and outside the organization, to accomplish objectives. Build and maintain mutually beneficial partnerships while leveraging information and achieving results
-
- Stakeholder Management -
- Build strong professional relationships while influencing others at all levels across the organization
- Technical Competencies
- Drive Quality –
- Develops and monitors processes and organizes resources to achieve desired results
-
- Information Systems Administration -
Understands and demonstrates knowledge of applicable information systems including concepts, principles, and practices related to their use and application
-
- Problem Solving –
Identifies problems and uses logic, judgement, and data to evaluate alternatives and recommend solutions to achieve the desired organizational goal or outcome
-
- Risk Management -
- Plans and implements measures that will avoid, overcome or compensate for elements of risk
SPECIAL CONDITIONS:
JESS uses a hybrid work model, allowing staff to work from home in Jamaica or in the office. Employees must be in the office at least five days per month, with more days possible if required by business needs.
You are expected to use KPMG-approved Generative AI tools to support your daily work tasks.
Expected to work in a fast-paced team environment.
Will be working primarily in a paperless environment and expected to be using information systems for the entire workday to access data or perform activities.
May be required to work extended hours periodically or on public holidays.
Is this job for you?
If YES, please view the Job Description and APPLY on our job webpage immediately below:
- IT Risk and Compliance Manager (K-JESS)
- APPLY HERE
.
Learn more about JESS here:
- K-JESS Homepage
© 2026 KPMG, a Jamaican partnership and a member firm of the KPMG global organization of independent member firms affiliated with KPMG International Limited, a private English company limited by guarantee. All rights reserved.
- Ref: IT Risk and Compliance Manager (JESS)CCCC
- Log in or register to apply