What are the responsibilities and job description for the Operational Risk Manager position at Dinsmore & Shohl LLP?
Dinsmore is seeking an Operational Risk Manager at its Cincinnati, OH location. The Operational Risk Manager is responsible for assisting in designing, implementing and maintaining processes, policies and controls to ensure the Firm is compliant with regulatory, contractual and business requirements for operational risk considerations. Responsibilities include investigation of existing processes and work flows to identify areas of the business where process improvement can be applied to reduce risk and help the business meet intended goals, as well as managing programs designed to reduce risk.
Responsibilities
Participate in ongoing development, documentation and maintenance as well as execution of day-to-day Vendor Risk Management Program activities
Administer the Vendor Risk Management roadmap, and execute and assign deliverables to complete roadmap items
Support lifecycle management of vendor relationships and projects including processes for vendor onboarding, identification, vendor risk assessments, contract review and execution, account & performance management, risk treatment, and termination
Communicate Vendor Management program requirements internally and to third-parties, train Firm members on requirements for engaging and onboarding new vendors and executing controls for existing engagements
Complete a baseline review process of due diligence documentation from third-parties and ensure escalation of potential issues as they arise
Execute process mapping to identify significant operational risks and controls
Maintain ongoing understanding and purview of regulatory and contractual requirements to ensure current processes meet those expectations and, where they do not, lead remediation efforts to ensure compliance
Participate in the maintenance of the firm Risk Register
Work together with other organizational business units in holistically addressing firm risk goals
Maintain existing Governance Risk and Compliance tools and provide recommendations for technological solutions to manage compliance and reduce risk
Participate in internal and external compliance reviews and requests for mutually approved artifacts
Create and monitor standardized internal processes to ensure processes are consistent with overall operational risk management goals
Participate in education efforts of Firm employees regarding firm processes and governance established to address operational risks
Participate in Privacy Programming initiatives
Execute defined audit and compliance activities that address privacy and risk
Advise firm of current industry trends and operational risk threats
Maintain working knowledge of various compliance needs and changes in various industries
Propose and lead improvements based on knowledge and practical application of industry best practices, including but not limited to risk assessments, compliance, and monitoring tools and programs
Perform other duties as assigned
Requirements
Aptitude for establishing and successfully socializing new programs and initiatives
Passion for learning and growth
Ability to build effective working relationships to promote cooperation and inspire confidence to meet goals and achieve deliverables
High degree of initiative and dependability
Strong analytical thinking and problem-solving skills
Proven record of executing projects and providing necessary follow-through
Ability to set goals and prioritize tasks
High attention to detail with strong planning, project management and organizational skills
Desire to explore, learn and apply new technologies independently and provide subject matter expertise in all areas of responsibility
Strong verbal and written communication skills
A bachelor’s degree or equivalent
Must possess solid understanding of process, risk and governance
Legal or law firm background a plus
Experience with ISO 27001 framework a plus
Process development and/or auditing background preferred
Working knowledge of various regulatory compliance standards
Privacy regulation knowledge
Experience with Vendor Risk Management programs