JOIN OUR AWARD WINNING TEAM!
Location: Hybrid, with 2 days per week
Salary: Competitive + Car Allowance
Working Hours: Between the hours of 8:00 to 17:00 (7 hour days), Monday to Friday.
Benefits: Car Allowance, Private Healthcare, 25 days holidays + Bank holidays, Health Cash Plan, Discount Shopping, Gym, Days Out, Learning & Development opportunities, Paid Volunteering Days, plus many more.
About EMCOR UK:
At EMCOR UK, we revolutionise facilities management by combining our engineering heritage and innovation capability. We prioritise people in everything we do, collaborating closely with our customers to understand all their needs, from the big picture to day-to-day operations. Our purpose is to “create a better world at work”. Using our unique insight platform, "One Data World," we harness data-driven intelligence to make informed decisions, adapting our services to meet our customers’ evolving requirements. This allows us to cultivate an enhanced workplace experience for their teams whilst optimising efficiency, meticulously managing every asset, and minimising their impact on the planet. All supported by our commitment to safety, compliance, and assurance. Our partnering approach empowers our customers to shape a better future. Whether guiding their path to net zero or redeveloping their facilities for enhanced efficiency, we create better places for work whilst taking away the burden of facility operations, freeing up our customers to concentrate on their business.
Role Overview:
The Risk Assurance & Business Continuity Planning (BCP) Manager is responsible for
overseeing the implementation and continuous improvement of the organisation’s enterprise
risk management framework. This includes managing and maintaining risk registers, facilitating
risk assessments, and ensuring that effective controls and mitigation plans are in place. The
role provides independent assurance that risks are being appropriately identified, assessed,
and managed across the business. Additionally, the manager leads the development,
maintenance, and testing of business continuity and crisis response plans, ensuring
organisational readiness and resilience in the face of disruptions. By embedding strong risk and
continuity practices, the role supports informed decision-making, regulatory compliance, and
strategic risk mitigation.
Risk management
- Accelerate and continually improve the organisations enterprise risk management framework aligned to ISO 31000.
- Manage and maintain comprehensive risk registers reflecting the identification, analysis, evaluation and treatment of risks.
- Ensure the development and maintenance of operational risk registers with appropriate escalation and de-escalation of risk within the business.
- Develop and facilitate risk training courses to ensure a comprehensive understanding and progression of organisational culture for risk management.
- Co-ordinate development and monitoring of risk treatment plans to mitigate risk.
- Collaborate with the Safety Operations team and other departments to align risk matrices within the organisation within the enterprise risk management system.
- Provide an independent assurance that the risk management process conforms to ISO 31000 framework and organisational policies.
- Conduct periodic reviews and validations, collaborating with internal audit and compliance teams to test risk controls and effectiveness.
- Report risk exposure, treatment status and assurance findings to senior management, the risk review committee and the Executive Leadership Team (ELT).
- Customer facing lead for key contracts, with resource from these accounts having a dotted line into the role.
Business Continuity Management
- Lead the design, implementation, and continual improvement of the Business Continuity Management System (BCMS) in line with ISO 22301 requirements.
- Maintain and recertify ISO 22301 and re-evaluate internal audit provision and delivery.
- Conduct Business Impact Analyses (BIA) to identify critical business functions, resources, and recovery time objectives (RTOs).
- Develop, maintain, and review business continuity plans (BCPs) ensuring alignment with organisational risk priorities and resilience goals.
- Plan and coordinate regular BCP testing, exercises, and simulation drills to validate preparedness and identify improvement opportunities and effectiveness of plans.
- Maintain incident response and crisis management plans to ensure effective response and recovery from disruptive events.
- Proactive SME engagement in bid & mobilisation support (Risk & BCP).
- Lead and continue to develop organisational resilience through engagement from departments to develop and implement business continuity plans.
- Working closely with the IT team to connect the BCMS with the IT infrastructure and information security requirements (ISO 27001)
- Collaborate with the SQP Team to develop and implement US Platform model to meet UK reporting requirements.
Stakeholder Engagement & Reporting
- Collaborate with business units, IT, HR, and external partners to embed risk and continuity practices organisation wide.
- Prepare and present clear, concise risk management and business continuity reports and dashboards for executive leadership, risk committees, and regulators.
- Support compliance audits and regulatory inspections related to risk and continuity management.
Continuous Improvement & Training
- Promote ongoing development of risk and business continuity awareness through tailored training programs and communications aligned with ISO 31000 and ISO 22301 standards.
- Monitor industry best practices, regulatory changes, and emerging threats to proactively update risk and continuity frameworks.
- Lead post-incident reviews and incorporate lessons learned into the risk and BCMS processes.
Accountabilities
- Accountable for ensuring that the enterprise risk management framework is fully compliant with ISO 31000 principles and effectively integrated into organisational strategy.
- Ownership of the business continuity management system aligned with ISO 22301, ensuring that business continuity plans are comprehensive, regularly tested, and up to date
- Ensuring accurate maintenance of risk registers and BIA documentation, reflecting current risk exposures and continuity priorities.
- Timely escalation and reporting of risk and continuity status, incidents, and assurance outcomes to senior management and governance bodies.
- Driving compliance with applicable laws, regulations, and international standards for risk management and business continuity