ForgeApply
Try it free

ForgeApply · Job listing

Governance, Risk, and Compliance and Data Privacy Office Director

Dow

Midland (MI, USA) | Houston (TX, USonsite

See all 41 open roles at Dow

Tailor your resume for this Dow job in about a minute.

ForgeApply tailors your resume and cover letter to this exact posting, then hands you a ready-to-submit application for Dow's site. Free trial, no card required.

About this role

At Dow, we believe in putting people first and we’re passionate about delivering integrity, respect and safety to our customers, our employees and the planet.     Our people are at the heart of our solutions. They reflect the communities we live in and the world where we do business. Their diversity is our strength. We’re a community of relentless problem solvers that offers the daily opportunity to contribute with your perspective, transform industries and shape the future. Our purpose is simple - to deliver a sustainable future for the world through science and collaboration. If you’re looking for a challenge and meaningful role, you’re in the right place.

About this role

Dow has an exciting opportunity for a Governance, Risk, and Compliance and Data Privacy Director located in Midland, MI or Houston, TX .

In this role, you will lead and direct multiple teams (typically through other people leaders) and apply in-depth knowledge of your area of responsibility. You will lead cyber governance, risk, compliance, data privacy, and develop and implement an evergreen enterprise-wide cyber awareness program to ensure effective risk oversight, regulatory adherence, and develop a strong cybersecurity culture.

Responsibilities – Duties, projects, tasks, and activities you would be responsible for in this role • Own cyber security governance effectiveness – establish clear, enforceable policies, standards and control frameworks with unambiguous ownership and consistent application

• Own cyber and data privacy risk identification and visibility – ensure internal and external risks are clearly defined in central risk register, quantified and reported. Actively challenge and escalate unacceptable risk

• Own regulatory compliance and audit outcomes – ensure compliance is sustainable and audit-ready by design, with no reliance on reactive audit preparation and no recurring findings

• Own external cyber assessments and certification to enable the business ( e.g. customer cyber assessment, ISO 270001, NIST CSF, etc )

• Own security culture and behavior change outcomes – drive measurable improvements in workforce cyber and data privacy behaviors  

Key requirements • Risk-first mindset (non-negotiable) – uses compliance frameworks as tools, not goals; prioritizes exposure, control effectiveness and business impact

• Ability to challenge the business with credibility – pushes back on weak controls and unclear risk acceptance; forces clarity on ownership and impact

• Translates risks into business language – converts regulatory and control concepts into exposure, financial risk and operational impact

• Governance builder (not just operator) – designs governance forums, decision rights and escalation paths that enforce accountability and consistency

• Culture shaper – drives measurable shifts in how the organization thinks about and manages risk

Skills • Leadership: Demonstrates the ability to lead global teams, influence stakeholders, establish accountability, and drive enterprise-wide cybersecurity, risk, compliance, and data privacy initiatives.

• Strategic Planning: Develops and implements long-term governance, risk management, compliance, and cybersecurity strategies that align with business objectives and regulatory requirements.

• Decision Making: Evaluates complex cyber and privacy risks, prioritizes actions based on business impact, challenges inadequate controls, and drives informed risk acceptance decisions.

• Communication: Effectively translates technical cybersecurity, regulatory, and data privacy concepts into clear business language for executives, stakeholders, and non-technical audiences.

• Business Management: Oversees governance programs, compliance processes, audit readiness, risk reporting, external assessments, and organizational initiatives to ensure sustainable business outcomes.

Qualifications • A minimum of a bachelor’s degree or relevant military experience at or above a U.S. E5 ranking or Canadian Petty Officer 2nd Class or Sergeant.

• Minimum 10 years of progressive experience in IT and/or Cybersecurity

• Demonstrated leadership experience leading diverse global teams

• Deep understanding of regulatory compliance, audit readiness, and risk management in regulated industries

• Strong interpersonal, communication and stakeholder engagement skills across technical and non-technical audiences.

• A minimum requirement for this U.S. based position is the ability to work legally in the United States.  No visa sponsorship/support is available for this position, including for any type of U.S. permanent residency (green card) process.

Note: Domestic relocation may be provided for this role. Details to be discussed at the time of offer.

Benefits – What Dow offers you  

We invest in you.    Dow invests in total rewards programs to help you manage all aspects of you: your pay, your health, your life, your future, and your career. You bring your background, talent, and perspective to work every day. Dow rewards that commitment by investing in your total wellbeing.   Here are just a few highlights of what you would be offered as a Dow employee:  • Equitable and market-competitive base pay and bonus opportunity across our global markets, along with locally relevant incentives.  • Benefits and programs to support your physical, mental, financial, and social well-being, to help you get the care you need...when you need it.  • Competitive retirement program that may include company-provided benefits, savings opportunities, financial planning, and educational resources to help you achieve your long term financial-goals.  • Employee stock purchase programs (availability varies depending on location).

• Student Debt Retirement Savings Match Program (U.S. only). • Dow will take the value of monthly student debt payments and apply them as if they are contributions to the Employees’ Savings Plan (401(k)), helping employees reach the Company match.

• Robust medical and life in

Salary insight

This posting doesn't disclose pay. Across 298 Houston jobs with disclosed salaries on ForgeApply, the median is $125k.

Based on live postings with disclosed pay on ForgeApply; refreshed daily. Not an estimate of this employer's offer.

Tailor your resume for this Dow role before you apply.

Tailor my resume for this job

Similar jobs

Free ATS checker · No Salary on the Job Posting? How to Find the Number Before You Interview