Member of Global Operations, Information & Security (Business Continuity & Disaster Recovery)
About the Role
You will develop, scale, and operationalize a forward-looking business continuity and disaster recovery program tailored to regulatory requirements (FFIEC, NIST) and business needs. You will maintain policies and controls, conduct and assess BIAs and BCPs, guide initiatives from conception to business as usual, coordinate tabletop and functional exercises, resolve audit findings, evaluate third-party BCM documentation, and communicate program goals and risks across stakeholders to ensure timely recovery of critical services.
Requirements
- Knowledge of FFIEC IT Examination Handbook on BCM, NIST SP 800-34, or ISO 22301
- Deep understanding of cloud infrastructure configurations and architecture
- Experience in disaster recovery plan development and management
- Knowledge of information security and IT risk management concepts
- Ability to translate regulatory requirements into technical controls
- Ability to conduct and critically assess Business Impact Analyses and Business Continuity Plan updates
- Program management and strong written and verbal communication skills
- Experience with Google Workspace, AuditBoard, Linear, Notion, Slack, Jira, and Whimsical
- Familiarity with cloud provider dashboards such as Google Cloud Platform
- Exposure to supervisory examination personnel (for example OCC)
Responsibilities
- Develop and scale the business continuity and disaster recovery program
- Maintain business continuity and disaster recovery policies and program documentation
- Communicate and support implementation of program elements across business lines
- Conduct and assess Business Impact Analyses and update Business Continuity Plans
- Operationalize strategies and guide initiatives from conception to business as usual
- Collaborate with enterprise groups to implement data system and process restoration practices
- Track and report metrics and controls related to resilience and regulatory expectations
- Support and document tabletop and functional exercises with business units and third parties
- Resolve audit issues and implement management action plans
- Evaluate and monitor third-party BCM documentation and due diligence
