Risk Manager
Department: Project & Engineering
1. Role Purpose
The Risk Manager is responsible for identifying potential hazards, conducting comprehensive risk assessments, and implementing effective risk mitigation strategies to protect people, assets, and the environment throughout all project phases.
This role ensures that robust risk management practices are fully embedded in the project lifecycle—from design and engineering through construction, installation, commissioning, and operational readiness—in alignment with industry best practices, corporate frameworks, and regulatory requirements.
2. Role Dimensions
Scope:
Provides expert risk management leadership across the entire lifecycle of the project, including design, procurement, construction, installation, and commissioning. Acts as a subject matter expert (SME) on all aspects of project risk and safety, particularly for FPSO-related systems.
Staff Supervision:
Individual contributor with no direct reports.
However, the role requires strong coordination with multidisciplinary engineering teams, EPC contractors, regulatory authorities, and specialist risk consultants to ensure consistent implementation of risk processes across all project scopes.
3. Key Accountabilities
A. Risk Assessment & Management
- Lead and conduct risk assessments during all project phases, focusing on FPSO design, construction, installation, and operational interfaces.
- Develop, implement, and track risk mitigation strategies to ensure risks are reduced to ALARP.
- Maintain and manage the project risk register, ensuring accuracy and timely updates.
B. Hazard Identification & Analysis
- Lead hazard identification and risk analysis activities covering safety, technical, environmental, and operational risks.
- Facilitate structured risk studies including HAZID, HAZOP, FMEA, FTA, QRA, and other relevant methodologies.
- Prioritize risks and recommend appropriate engineering and procedural controls.
C. Risk Reporting
- Prepare comprehensive risk reports for management and project stakeholders.
- Provide clear visibility on key risks, mitigation progress, and residual risk exposure.
- Support Stage Gate reviews by presenting updated risk assessments and mitigation status.
D. Risk Monitoring & Control
- Continuously monitor project execution for new or changing risks.
- Verify the effective implementation of risk controls by project teams, contractors, and vendors.
- Conduct periodic risk reviews and ensure continuous improvement of risk processes.
E. Safety & Compliance
- Ensure all risk management activities comply with corporate safety policies, international standards, and regulatory requirements (e.g., SKK Migas, ISO 45001/OHSAS 18001).
- Support safety case development and promote a strong safety culture aligned with the principle of zero harm.
F. Incident Investigation
- Lead or support investigations of incidents and near-misses using recognized root cause analysis methodologies.
- Develop corrective and preventive actions and ensure lessons learned are communicated and implemented.
- Prepare formal incident investigation reports for internal and external stakeholders.
4. Framework, Boundaries & Decision-Making Authority
Framework
- Operates within the company’s risk management framework aligned with ISO 31000, corporate ORM/ERM policies, and project-specific risk management plans.
Boundaries
- Focuses on project-related technical, safety, environmental, and operational risks associated with FPSO facilities, subsea systems, pipelines, and onshore support elements.
- Collaborates with other functions for non-project or enterprise risks (e.g., financial or commercial).
Decision-Making
- Authorized to make immediate operational decisions on routine risk mitigation actions within project guidelines.
- Holds stop-work authority when an immediate high-risk situation is identified.
- Escalates significant project risks affecting cost, schedule, or requiring additional resources to senior management.
5. Communications & Working Relationships
Internal
- Collaborates closely with Project Management, engineering discipline leads (Process, Mechanical, Electrical, Subsea), HSSE teams, and Operations/Asset teams.
- Interfaces with corporate Risk Management, HSSE, and Engineering authorities.
- Provides guidance and training to project personnel, fostering a proactive risk management culture.
External
- Works with regulators (e.g., SKK Migas, MIGAS) to ensure compliance with safety case and risk management requirements.
- Coordinates with classification societies (ABS, DNV) and independent verification bodies.
- Manages interactions with EPC contractors, vendors, third-party consultants, HSE auditors, and insurance risk engineers for QRAs, safety reviews, and audits.
6. Knowledge, Skills & Experience
Education
- Bachelor’s degree in Mechanical, Chemical, Safety Engineering, Risk Management, or a related discipline.
- Master’s degree in engineering, process safety, or risk management is an advantage.
Experience
- Minimum 20 years of experience in risk management within the oil & gas sector, preferably with offshore/FPSO project exposure.
- Proven experience in conducting hazard studies and implementing risk mitigation strategies in large-scale capital projects.
Technical Skills
- Deep knowledge of risk and process safety methodologies: HAZID, HAZOP, FMEA, FTA, QRA, bow-tie analysis, LOPA, and RCA tools.
- Able to interpret P&IDs, engineering drawings, and safety schematics.
Regulatory & Standards Knowledge
- Strong understanding of oil & gas safety and risk standards: API, ISO 17776, IMO FPSO guidelines.
- Familiarity with Indonesian regulatory frameworks (SKK Migas, MIGAS) and global safety management standards (ISO 45001/OHSAS 18001, ISO 31000).
Certifications
Preferred:
- NEBOSH IGC / Oil & Gas
- Certified Risk Manager (CRM)
- PMP (with risk management focus)
- IRCA Lead Auditor (ISO 45001 or ISO 31000)
- TapRooT® or equivalent incident investigation training
- Valid BOSIET for offshore work
Analytical & Communication Skills
- Strong analytical skills with capability to perform quantitative and probabilistic risk analysis.
- Excellent communication skills with ability to simplify complex risk concepts for diverse stakeholders.
- Skilled in facilitating workshops and delivering training.
Tools & Software
- Proficient in risk analysis software, consequence modeling, Monte Carlo simulations, and risk register systems.
- High proficiency in MS Office and familiarity with project management and incident reporting tools.