DescriptionJOB SUMMARY:
The Director of Risk Management & Compliance is responsible for leading the organization's governance framework, enterprise risk management program, compliance activities, contract administration, legal affairs coordination, and security functions. This role ensures the organization operates in accordance with legal, regulatory, contractual, and ethical standards while effectively identifying, assessing, and mitigating organizational risks.
This position plays a critical role in safeguarding the organization's assets, reputation, people, and long-term sustainability.
ESSENTIAL DUTIES & RESPONSIBILITIESinclude the following. Other duties may be assigned:
- Steward our mission (to enrich lives by providing differentiated packaging automation and services) and values (unwavering integrity, servant's heart, ownership spirit and continuous innovation and improvement).
- Model and champion our leadership qualities (live Douglas values, chart the course, energize others, and raise the bar).
- Governance
- Develop and implement policies, controls, and procedures to mitigate risks and maintain compliance.
- Contracts Management
- Lead the processes for review, negotiation, drafting, and administration of customer, vendor, service, and partnership contracts.
- Develop contract standards, templates, and approval processes.
- Ensure contractual obligations, risks, and liabilities are appropriately identified and managed.
- Maintain contract repository and monitor critical dates, renewals, and compliance requirements.
- Partner with business leaders to support contract negotiations and dispute resolution.
- Legal Affairs
- Coordinate with internal and external legal counsel on corporate legal matters.
- Monitor and advise on legal and regulatory developments affecting the organization.
- Support litigation management, employment matters, and regulatory inquiries when applicable.
- Ensure policies and business practices align with applicable laws and regulations.
- Provide guidance on corporate governance and compliance initiatives.
- Enterprise Risk Management
- Develop and maintain a comprehensive risk management framework.
- Identify, assess, monitor, and mitigate strategic, operational, financial, and compliance risks.
- Facilitate risk assessments and business continuity planning.
- Prepare risk reports and recommendations.
- Lead incident response and corrective action processes.
- Security Management
- Collaborate with facilities on physical security programs, access controls, investigations, and asset protection initiatives.
- Collaborate with IT leadership on cybersecurity governance and risk mitigation strategies.
- Develop and maintain security policies, emergency response plans, and crisis management procedures.
- Conduct security assessments and recommend improvements to safeguard employees, facilities, and information assets.
- Ensure compliance with applicable security standards and regulatory requirements.
- Compliance & Governance
- Establish and maintain compliance programs, policies, and internal controls.
- Lead business-appropriate ESG reporting and initiatives.
- Support audits, regulatory inspections, and compliance reviews.
- Deliver training and awareness programs related to contracts, compliance, risk, and security.
- Monitor organizational adherence to policies and regulatory requirements.
QUALIFICATIONS:
To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
- Strong contract negotiation and legal issue-spotting skills.
- Comprehensive understanding of risk management principles
- Knowledge of compliance frameworks and regulatory requirements.
- Understanding of physical security and cybersecurity governance practices.
- Excellent analytical, communication, and problem-solving skills.
- Ability to balance business objectives with legal and risk considerations.
- Strong leadership, organizational, and project management capabilities.
EDUCATION AND/OR EXPERIENCE:
Education- Bachelor's degree in Business Administration, Legal Studies, Risk Management, Security Management, or related field required.
- MBA, Risk Management, or equivalent professional certification preferred.
Experience- 5+ years of progressive experience in contracts, legal, risk management, compliance, security, or related disciplines.
- 2+ years of leadership experience.
- Experience managing complex contracts and corporate risk programs.
- Demonstrated success partnering with leadership and outside counsel.
OTHER INFORMATION:
All full-time positions offer attractive compensation and benefits that include ESOP stock allocation, 401(k) match, a company health clinic, medical, dental, life and disability insurance, volunteer time off, along with holiday pay and paid time off.