General Information

Position
Non-Financial Risk Senior Consultant / Manager
Work arrangement
Full-time
City
Sofia
Country
Bulgaria
Department
Risk Advisory
Team
Financial Industry Risk & Regulatory
Area of interest
Finance, Risk & Regulatory Management
Way of work
Hybrid

Description & Requirements

Who we are looking for
• You have a university degree (Bachelor’s or Master’s) in Business Administration, Business Management, Banking, Risk Management, Law, Engineering, or another relevant field.
• You bring 4–8+ years of relevant experience in banking, insurance, consulting, regulatory institutions, or internal audit, with a strong focus on non-financial risk, operational risk, governance, or regulatory compliance.

• You have hands-on experience in one or more of the following areas:
  • Non-Financial / Operational Risk frameworks
  • Risk & Control Self-Assessments (RCSA)
  • Incident and loss data management
  • Key Risk Indicators (KRIs)
  • Outsourcing and third-party risk management
  • Internal Control Systems 
  • Operational resilience, business continuity, or crisis management
• You have a solid understanding of regulatory frameworks relevant to financial institutions, such as:
  • ECB / local supervisory expectations
  • EBA guidelines (internal governance, outsourcing, ICT risk)
  • DORA and operational resilience requirements
• You are motivated to lead client engagements, manage teams, and translate regulatory requirements into practical, implementable solutions.

• You are analytical, structured, and purpose-driven, with:
  • Strong problem-solving skills and the ability to navigate complex regulatory topics
  • Confidence working independently and leading diverse, cross-border teams
  • Excellent communication skills in English, including report writing and senior stakeholder communication
  • Fluent English (additional regional languages such as Croatian, Bulgarian, Slovenian or Serbian are a plus)
  • A professional mindset and ambition to grow within one of the world’s leading advisory firms
  • Curiosity to explore emerging risk topics such as operational resilience, digital risk, AI governance, and data-driven risk management

Your future role
As an Advisory Senior Consultant/Manager in the Deloitte Risk & Regulatory Advisory team, you will lead and deliver high-impact non-financial risk engagements for leading financial institutions. You will work closely with senior client stakeholders and regional Deloitte teams, contributing both to delivery excellence and business development.

Your responsibilities will include:

Client Delivery & Leadership
  • Lead non-financial risk and regulatory advisory engagements end-to-end
  • Act as a trusted advisor to CROs, COOs, Heads of Risk, Compliance and Internal Audit
• Frameworks & Operating Models
  • Design and implement NFR and operational risk frameworks
  • Develop target operating models (TOMs) for risk, control, and governance functions
• Regulatory & Supervisory Support
  • Support clients in regulatory remediation, inspections, and supervisory interactions
  • Interpret and operationalize regulatory requirements (ECB, EBA, DORA)
 Operational Resilience & Third-Party Risk
  • Advise on outsourcing risk, third-party risk management, and operational resilience
• Governance & Controls
  • Support RCSA, KRI frameworks, incident management, and control testing
• Business Development
  • Contribute to proposals, thought leadership, and client relationship development
• People Development
  • Coach and develop junior team members and foster a high-performance team culture

How will you grow:

Deloitte’s Risk, Regulatory & Forensic practice is a global leader in helping clients manage risk and uncertainty from the boardroom to operations.

• You will lead complex, high-visibility projects across the wider Central Europe region
• You will gain exposure to senior management and board-level discussions
• You will be supported through structured career development, mentoring, and leadership training
• You will help shape and expand Deloitte’s non-financial risk and operational resilience offering
• As you grow, you will take on increasing responsibility for client relationships, people leadership, and market development

What we offer
  • Comprehensive Health Insurance for inpatient and outpatient treatment
  • International Travel Insurance for travel insurance during business and private trips abroad,
  • Employee Assistance Program (EAP) for phone consultations, covering legal, financial, and mental health advice to support you whenever needed,
  • Unrestricted access to LinkedIn Learning and Udemy courses, as well as diverse training and development prospects,
  • Baby Bonus and Compassionate Support Benefit,
  • Up to 10 days of study leave per year for exam preparation, exam taking, and obtaining professional licenses.
  • Flexible working model (3 days from the office + 2 days working from home),
  • Access to the benefits platform that allows you to independently choose the benefits you want (wellness & spa, tourism, sports, culture, entertainment, interior design, furniture, technology, clothing, restaurants, etc.),
  • Celebration of important dates, such as Appreciation Day, employee birthdays, and New Year's, with gifts and celebrations
  • Possibility to get additional extraordinary Bonuses such as Referral Bonus, Sales & Cross–Sales Bonus, Bonuses for obtaining a professional license, awards for the best employees
About Deloitte
For over 175 years, Deloitte has partnered with leaders worldwide—from the Global 500® to private businesses—to help them thrive and build better futures. We support their people in succeeding, while nurturing our communities. With a workforce of 467,000 of the industry’s greatest minds, Deloitte leads as the premier professional firm globally by delivering real, measurable results.
About the team
Deloitte’s Risk & Regulatory Advisory team operates as part of Deloitte Central Europe – Cluster South. We support financial institutions in identifying, managing, and transforming risks that affect their business. Our focus spans, beyond traditional risk types such as credit and market and liquidity risks, also emerging types such as non-financial risk, operational resilience, governance, regulatory compliance, ESG, geopolitical risks and digital risk, combining regulatory depth with practical implementation and innovation. 



https://www.facebook.com/DeloitteBulgaria/?locale=bg_BG  https://www.instagram.com/deloitte.bulgaria/  https://www.linkedin.com/company/deloitte  https://www.youtube.com/channel/UC7qeIjnZX6TW2oz1WKLwVYA/videos