Director of Governance, Risk, and Compliance
webook.com
| Company | webook.com |
| Category | Legal & Compliance |
| Location | Riyadh |
| Remote | On-site (inferred) |
| Employment | Full-time |
| Level | Director |
| Salary | Not stated by the employer |
| Posted | 19 May 2026 |
| Last verified | 9 Aug 2026 |
| Source | Employer ATS (workable) |
Description
Do you want to love what you do at work? Do you want to make a difference, an impact, and transform peoples lives? Do you want to work with a team that believes in disrupting the normal, boring, and average? If yes, then this is the job you are looking for , webook.com is Saudi’s #1 event ticketing and experience booking platform in terms of technology, features, agility, revenue serving some of the largest mega events in the Kingdom surpassing over 2 billion in sales. Role Overview: The Director of Governance, Risk & Compliance will establish and lead webook.com's GRC function, building the frameworks, processes, and culture needed to manage risk and ensure compliance across our operating markets. This is a foundational role for the company. The successful candidate will be responsible for designing, implementing, and embedding the governance, risk, compliance, policy, and internal control frameworks needed to support webook.com’s continued growth, international expansion, and transition into a more structured corporate environment. The role requires someone who is both highly experienced and highly hands-on. The right candidate must be comfortable operating as an individual contributor: drafting policies, building risk registers, preparing board materials, setting up controls, running compliance reviews, and working directly with teams to close gaps. Over time, the Director will build and lead the GRC function as the business scales. Key Responsibilities: Governance Framework & Board Support Design and implement webook.com’s enterprise governance framework, including policies, approval authorities, decision-making protocols, committees, reporting cadences, and escalation paths. Support the company’s transition from founder-led/startup-style operations to a more structured governance model without slowing down execution unnecessarily. Establish clear accountability structures across departments, markets, and leadership forums. Develop and maintain a company-wide policy framework and policy library covering key operational, financial, legal, technology, data, people, and regulatory areas. Support board governance requirements by preparing clear, structured reporting on key risks, compliance matters, governance gaps, and mitigation plans. Work with executive leadership to ensure board decisions, actions, and follow-ups are tracked and implemented. Help establish governance routines such as risk committees, compliance reviews, policy approval processes, and management reporting cycles. Enterprise Risk Management Build and own the company’s Enterprise Risk Management framework from scratch. Develop and maintain the enterprise risk register, including strategic, operational, financial, regulatory, technology, cyber, third-party, reputational, and market-specific risks. Define risk assessment methodologies, scoring criteria, risk ownership, risk appetite, escalation thresholds, and mitigation planning processes. Partner with business leaders to identify, assess, prioritize, and manage risks across functions and geographies. Embed risk management into business planning, international expansion, product launches, vendor selection, major commercial deals, and operational decision-making. Provide regular risk reporting to executive leadership and the Board, including key risk indicators, emerging risks, mitigation progress, and areas requiring attention. Ensure risk management is practical, business-focused, and suitable for a fast-moving growth environment. Compliance Establish and manage the company’s compliance framework across all operating markets, and future international markets. Identify applicable laws, regulations, licensing requirements, contractual obligations, and internal policies relevant to the business. Monitor regulatory developments and assess their impact on webook.com’s operations, platform, commercial activities, data practic