Director of Compliance & Risk Management

Fordham University PortalRose Hill, VA
Onsite

About The Position

Reporting to the General Counsel, the Director of Compliance & Risk Management serves as a key member of the University’s leadership team, responsible for advancing Fordham’s enterprise approach to compliance while further developing and integrating risk management practices across the institution. At a pivotal time for the University, Fordham continues to evolve and strengthen its integrated approach to compliance and risk. This role offers a unique opportunity to shape and mature a comprehensive, university-wide compliance framework within a complex, decentralized academic environment. The Director will partner closely with senior leadership and stakeholders across academic, administrative, research, and technology functions to ensure alignment with regulatory requirements, strengthen governance structures, and promote a culture of ethical conduct and accountability. The Director will provide strategic leadership and be accountable for the overall effectiveness of Fordham’s compliance program, including the design, implementation, and continuous improvement of policies, processes, and monitoring systems. In parallel, the role will support the continued evolution of the University’s enterprise risk management (ERM) capabilities, helping to identify, assess, and mitigate institutional risks while informing strategic decision-making. The Director will also oversee a Technology Operations Manager and partner closely with the Director of Assurance Services/Internal Audit to ensure alignment across compliance, risk management, and internal audit functions. This position emphasizes leadership, influence, and program design over day-to-day technical execution. The successful candidate will leverage data, technology, and modern governance tools to enhance transparency, streamline oversight, and deliver actionable insights to University leadership.

Requirements

  • Serves as the leader for the University’s Hub and Spoke Hybrid compliance model, providing strategic direction to operational units while partnering with subject matter leaders across the institution.
  • Develops, implements, and maintains a comprehensive, university-wide compliance and ethics program, ensuring its effectiveness and continuous improvement.
  • Manages and oversees all major regulatory reporting requirements across diverse areas, including but not limited to Title VI, Title VII, Title IX, HIPAA, ERISA, Clery, FERPA, financial aid compliance, research compliance, NCAA, and information technology governance, cybersecurity, and data privacy.
  • Designs and oversees the integrated Enterprise Risk Management (ERM) framework, ensuring alignment between compliance mandates, risk assessments, and internal audit plans.
  • Directs the work of the Compliance and Operations Manager, ensuring coordinated, non-duplicative efforts.
  • Oversees monitoring activities, utilizing university staff expertise and directing the engagement of external specialized risk professionals for unique when justified.
  • Leads the comprehensive review and approval process for all university compliance-related policies and procedures.
  • Oversees the centralized Incident Reporting & Investigation mechanism, making final determinations on required actions and coordinating with Human Resources, Student Affairs, Public Safety, Office of General Counsel, and other offices as required.
  • Ensures robust, relevant “Training & Awareness” programs are deployed across the university, utilizing scalable, technology-driven platforms.
  • Directs the strategic integration and oversight of analytics and AI-powered tools for predictive risk modeling, real-time compliance monitoring, and anomaly detection across university operations, for interpreting results for executive action.
  • Leads the utilization of Governance, Risk, and Compliance (GRC) software platforms for centralized risk data aggregation, analysis, and reporting, translating complex data insights into actionable strategic recommendations for senior leadership.
  • Governs technology risk and cyber-compliance, maintaining a comprehensive understanding of the governance and compliance implications of IT systems, data privacy (e.g., FERPA, HIPAA), and cybersecurity, and leading the university’s response to the ethical, regulatory, and institutional risks associated with AI.

Nice To Haves

  • A Juris Doctor or other advanced legal credential.
  • Professional certification (e.g., CCEP, CCEP-I, CISA, CPA).
  • Experience in higher education or in similarly complex, mission-driven, and highly regulated environments (e.g., healthcare, financial services, nonprofit organizations, government).
  • Experience developing AI governance, data ethics, or technology compliance frameworks.

Responsibilities

  • Serves as the leader for the University’s Hub and Spoke Hybrid compliance model, providing strategic direction to operational units while partnering with subject matter leaders across the institution.
  • Develops, implements, and maintains a comprehensive, university-wide compliance and ethics program, ensuring its effectiveness and continuous improvement.
  • Manages and oversees all major regulatory reporting requirements across diverse areas, including but not limited to Title VI, Title VII, Title IX, HIPAA, ERISA, Clery, FERPA, financial aid compliance, research compliance, NCAA, and information technology governance, cybersecurity, and data privacy.
  • Designs and oversees the integrated Enterprise Risk Management (ERM) framework, ensuring alignment between compliance mandates, risk assessments, and internal audit plans.
  • Directs the work of the Compliance and Operations Manager, ensuring coordinated, non-duplicative efforts.
  • Oversees monitoring activities, utilizing university staff expertise and directing the engagement of external specialized risk professionals for unique when justified.
  • Leads the comprehensive review and approval process for all university compliance-related policies and procedures.
  • Oversees the centralized Incident Reporting & Investigation mechanism, making final determinations on required actions and coordinating with Human Resources, Student Affairs, Public Safety, Office of General Counsel, and other offices as required.
  • Ensures robust, relevant “Training & Awareness” programs are deployed across the university, utilizing scalable, technology-driven platforms.
  • Directs the strategic integration and oversight of analytics and AI-powered tools for predictive risk modeling, real-time compliance monitoring, and anomaly detection across university operations, for interpreting results for executive action.
  • Leads the utilization of Governance, Risk, and Compliance (GRC) software platforms for centralized risk data aggregation, analysis, and reporting, translating complex data insights into actionable strategic recommendations for senior leadership.
  • Governs technology risk and cyber-compliance, maintaining a comprehensive understanding of the governance and compliance implications of IT systems, data privacy (e.g., FERPA, HIPAA), and cybersecurity, and leading the university’s response to the ethical, regulatory, and institutional risks associated with AI.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service