Principal Attorney, Regulatory Compliance
CB&I · The Woodlands, TX · 4 wk ago
LegalFull-time
About the role
The Principal Regulatory Compliance Attorney is responsible for designing and implementing a comprehensive risk-based compliance framework; managing regulatory strategy and examinations; protecting data and privacy; and mitigating regulatory and compliance risk across our global organization.
Responsibilities
- Help design, implement, and improve CB&I’s enterprise compliance program across multiple jurisdictions, including creating policies, procedures, and controls to confirm alignment with applicable laws, regulations, and industry standards
- Provide oversight and collaboration on compliance matters intersecting with export controls, trade compliance, cross-border regulatory requirements, and third-party due diligence
- Conduct risk assessments, identify root causes, develop mitigation strategies, implement and manage correction actions, and track compliance and remediation efforts
- Support and help lead supply chain and trade and export compliance
- Support and conduct confidential internal investigations, draft investigation reports, and help manage the employee whistleblower hotline and metric reporting
- Serve as a primary contact for regulator, inspector, or supervisory communications, and help coordinate or lead productions, submissions, and responses to regulatory exams, audits, inquiries, remediation plans, incidents, or breaches
- Help design, implement, and improve the company’s privacy framework and data protection program, ensuring alignment with GDPR principles, accountability requirements, and supervisory authority expectations
Qualifications
- Education: J.D., LL.M., or LL.B.
- License: Licensed attorney in good standing in Texas or who qualifies to work as in-house counsel under Texas rules
- Experience: 8-10 years of building and overseeing compliance programs and frameworks (preferably multi-jurisdictional experience)
- Experience: 3-5 years of EU and UK regulatory compliance experience, including GDPR and EU data governance, data protection, and privacy
- Experience: 3-5 years defending against regulatory inquiries, investigations, and enforcement and interacting with regulators and supervisory authorities (EU or UK experience preferred)
Skills and Behaviors
- Strong functional knowledge and proven experience building and maintaining compliance frameworks and handling regulatory matters for a global or multijurisdictional organization
- Functional knowledge and proven experience designing and maintaining EU/UK and GDPR compliance
- Subject matter expertise on U.S., EU, and GDPR regulatory, compliance, privacy, and data protection regulations
- Practical approach to regulatory compliance in operational environments
- Ability to work autonomously and proactively without frequent supervision
- Strategic thinker with strong analytical and problem-solving skills
- Business presence, polish, and credibility with regulators, leadership, and colleagues
- High emotional intelligence and interpersonal skills
- Strong written and verbal communication and presentation skills
- Fluent in English (speaking and writing), with Spanish being a plus but not required