Mammothbrands

Open

Director, Internal Controls & Risk Management

Location
New York, NY
Posted
Jul 29, 2026
Last seen
Aug 7, 2026

About the role

About Mammoth Brands

Mammoth Brands (formerly Harry’s Inc.) is the modern CPG company behind brands Harry’s, Flamingo, Lume, Mando, and Coterie. We’re building a new model—and home—brands, founders, and talent looking to solve unmet needs, improve peoples’ lives, and ultimately challenge the status quo. Our mission is to “Create Things People Like More.” Simply put: everything we do should be better than what already exists. If it’s not, we don’t do it. This guides everything we do, from developing the best product experiences, to making Mammoth Brands a great place to work, to exploring innovative ways to give back to our community.

We got our start in 2013 when our co-founders created Harry's. They built the brand differently—online first, prioritizing direct relationships with customers—and in the process learned they’d created something bigger: a playbook and platform that could help other brands grow and scale to their full potential, and a vision to reimagine consumer packaged goods. Today, Mammoth Brands is a growing portfolio of brands and the largest CPG company built in the last 20 years. Even as we grow, we take extra care to maintain the small, scrappy, entrepreneurial culture that helped to get us where we are today: to create a company that people like more, that better serves its customers, employees, and community. As a company, we’re also committed to making a positive impact and have donated over $20 million through our network of nonprofit partners to date.

We build brands that move fast and think big — and we hire people who are curious about AI, willing to experiment with it in their day-to-day work, and excited to accelerate what's possible. We prioritize giving our team the tools, training, and space to build real fluency, so you grow alongside the technology and help shape how we use it.

About the team

The Accounting and Finance team collaborates as a strategic partner to every department across Mammoth Brands. We sell our products around the world through multiple channels, with on-the-ground teams and offices in New York, the United Kingdom, and Germany. As our revenue grows, so does the complexity of how we operate — and we need an experienced leader to help build the internal controls and risk management infrastructure that lets the rest of the business move fast with confidence.

About the role

We're looking for someone to lead and grow our internal audit, risk management and governance function — and to do it in a way that makes people across the business genuinely glad you're here. This is a role for someone who knows that the best compliance programs don't slow companies down; they make them more fearless.

You'll inherit a SOX program with real momentum: we’ve already laid the groundwork and we have a clear-eyed view of what's left to build. The controls framework is maturing, a GRC implementation is underway, and there's an opportunity to bring modern audit automation into the function. But this role is bigger than SOX. You'll also own our enterprise risk management program — maturing how we identify, assess, and respond to risk across the business — and serve as a key voice in our governance infrastructure, from disclosure committee to audit committee reporting. We need the right leader to accelerate all of it — and to bring our Finance, IT, Operations, and Legal partners along with genuine enthusiasm, not reluctant compliance.

As Mammoth grows — through new channels, new markets, and acquisition — the business will evolve, and this function will have to evolve right alongside it. That means the controls that work today may need to be redesigned tomorrow, and the risks we're managing now will look different in two years. We need someone who sees that as exciting, not exhausting.

What you will accomplish

  • Earn the room. Build a trusted, credible internal audit presence that Finance, IT, and Operations partners want to engage, collaborate with and learn from. Along the way, you will effectively manage relationships with co-source partners and external auditors.
  • Mature our SOX program . Evaluate our risk-based internal audit plan, close any control gaps and evolve our controls testing from early-stage to a repeatable, scalable annual cycle with expanded coverage and clean external auditor coordination
  • Be a thought partner on control design. As the business grows — including through acquisition — sit at the table early to help design key controls that are risk-adjusted, scalable, and built to move with the business rather than slow it down. The goal isn’t perfect controls; it’s the right controls at the right time.
  • Key stakeholder in our GRC implementation . Drive the design and rollout of a GRC program on our ERP, bringing best practices and ensuring the tool becomes something the business actually uses and trusts.
  • Bring AI and automation to internal audit. Evaluate and implement AI-driven audit tools to increase testing efficiency, reduce manual work, and position our audit function as a model for what modern, tech-forward internal audit looks like.
  • Own our governance cadence. Run quarterly disclosure committee meetings, prepare audit committee materials, and coordinate across Legal, Finance, and leadership to ensure our reporting is timely, accurate, and board-ready.
  • Expand our ERM program . Build on our existing enterprise risk management foundation — maturing our risk assessment process so it meaningfully informs both the audit plan and business decisions.

This should describe you

  • You make people want to prioritize controls — at every level. From the CFO and audit committee to the IT manager who owns a key system, you know how to frame risk in a way that drives decisions and earns ownership. You have a real playbook for this, and a track record of making compliance feel like an enabler, not a burden, even in fast-moving, dynamic environments.
  • You're a builder who thrives without a blueprint. You've designed programs from scratch, know how to sequence what to tackle first, and don't wait for perfect conditions to make progress.
  • You communicate up and across with equal clarity . Whether it's an audit committee presentation or a working session with an IT system owner, you translate complex risk into language that lands.
  • You know your way around ITGCs, GRC tools, and audit technology . You have hands-on experience with complex and evolving tech stacks including SAP S4 Hana, Netsuite, Shopify, Microsoft Entra, GitHub, Data Dog, Google Cloud Platform .
  • You’re excited about the opportunity to build a modern-day AI forward Internal Audit function . The landscape for complianc