Senior Resilience Manager

This role is to provide hands-on subject matter expertise in business continuity (BC) and disaster recovery (DR), lead the ongoing enhancement and roll out of the firm’s resilience program. The key purpose is to be the business partner for BC and DR to collaborate with individuals from all  business services areas (IT, HR, Marketing, etc) and client-facing practice groups internationally to develop, implement, maintain and execute continuity and recovery plans that meet the strategic, tactical and operational needs of the firm, and align with client, regulatory and standard requirements.

This position will be required to work closely with senior leadership, Information Technology, General Counsel, Operational Risk Management, Marketing, HR, Finance, Audit, InfoSec, Procurement and external stakeholders: feeding into the wider cross-function Operational Resilience framework which includes Crisis Management and Enhanced Supplier Resilience.

  • Perform Business Impact Analyses and Risk Assessments across all practice groups and service areas of the firm, working with senior leadership, managers/owners of key business activities, subject matter experts and other stakeholders.
  • Implement actions from the Enhanced Supplier Resilience forum into BC and DR, and report on progress.
  • Embed CM and ESR into overall resilience framework.
  • Develop an in-depth understanding of the business processes, facilities, equipment, IT networks/environment, suppliers, regulatory and client requirements, and interdependencies.
  • Based on the Business Impact Analyses, update the firm's current business continuity framework and plans, identifying the appropriate strategies and tactics to achieve continuity, as well as appropriate threat mitigation measures and incident response structures.
  • Be part of the firm's business emergency response hotline and on-call response team for BC DR.
  • Support reporting for insurance renewals and client questionnaires and audits for all areas of BC DR.
  • Maintain the currency of BC and DR plans and all subordinate and supporting documentation such as policies, procedures, specialist plans, templates, standards, to support the deployment, validation and management of the program.
  • Train and prepare Bronze teams (offices) and work with internal stakeholders and external facilitators to train and test Silver, Gold and Business Response Teams.
  • Ensure all of the above is done to comply with ISO22301 and support annual certification.

 


Main duties and responsibilities


  • Lead the BC and DR integration into the firms operational resilience framework.
  • Lead the disaster recovery team to ensure its effectiveness through IT’s implementation, including the currency of DR scripts and testing.
  • Be the leading expert on BC and DR at the firm.
  • Leverage the regional risk and resilience team, the risk culture and engagement team, external facilitators and local business continuity champions to ensure robust BC DR across the firm.
  • Developing, maintaining and delivering annual business continuity / crisis management training and exercise programmes directly or by facilitating other resilience resources to do so.
  • Providing post exercise analysis and debrief.
  • Preparing firmwide communications to promote BC and DR, in conjunction with Head of Communications and Brand.
  • Preparing reports and presentations on BC and DR for Executive, Board, and Committees, particularly post incident reviews and lessons learnt.
  • Oversee the execution of business continuity and response plans in the event of a business interruption / disruption, including supporting senior management by leading crisis management and incident response teams in the coordination and execution of all business continuity plans and related activities.
  • Manages relationships with the firm's key BC and DR suppliers.
  • Continuously validate the currency, accuracy and completeness of the Business Continuity Framework and DR Program through regular reviews and audits, and maintenance of the materials.
  • Travelling to office locations as needed to provide training, support or project delivery where it cannot be done remotely or with local resource (limited).
  • Supporting all business continuity / crisis management / disaster recovery operational preparedness including communications, response procedures and logistical arrangements.
  • Benchmarking best practice for business continuity and disaster recovery development and execution in a large international corporate environment.
  • Work with procurement, IT and other areas to ensure suppliers are aligned with firm RPOs and RTOs.
  • Work with internal and external auditors to evidence and improve BC DR at the firm.
  • Ensure that we have the ability to recover from a Disaster from a technology systems perspective in a timely fashion and with minimal business impact. Working within the IT Major Incident process to support the technical response and act appropriately to the recovery using Disaster Recovery measures.
  • Own the IT Disaster Recovery Plan ensuring that it is suitable, workable, maintained and updated to reflect all relevant changes across the entire IT estate. In addition, provide and maintain agreed Disaster Recovery (DR) standards.
  • Perform Business Impact Analysis of IT systems, document, highlight and provide guidance to manage risks and single points of failure identified; provide guidance to service owners regarding controls and mitigation.
  • Collaborate with IT Operational teams to advance the IT Resilience programme ensuring processes are active and efficient.
  • Develop a comprehensive programme of validation, encompassing people, processes, plans and technology, and ensure the plan is executed at the agreed frequencies. This includes coordinating the tests/exercises, and the documentation of scope and objectives/success criteria and post-exercise/test reports/lessons learned.
  • Ensure that the IT Resilience recovery plans are maintained and updated to reflect all changes.
  • Provide assurance of any outsourced providers DR provisions, validated testing through a rigorous review and challenge process.
  • Provide knowledge transfer to key staff regarding our established IT Resilience procedures
  • Identify, assess, and report IT Resilience  related risks and issues. Maintain risks and issues log recording decisions formally, feeding into the main Information Security risk register.
  • Document and report on a monthly basis about progress against testing, risks and issues, and escalations requiring resolution.
  • Recommendations in terms of removal of redundant applications


About you


    • Qualification in business management, risk management, resilience, emergency planning, disaster recovery or business continuity management.
    • Business Continuity and Disaster Recovery expert preferred (MBCI , FBCI or equivalent).
    • 10 years of experience in business continuity, disaster recovery  or operational resilience, theory and practice.
    • Technical knowledge of IT systems important.
    • Demonstrated technical expertise in BCP documentation, including Business Impact Analysis, Incident Management and Business Continuity planning.
    • Expert trainer able to inspire and influence busy executives to engage with the Business Continuity / Disaster Recovery.
    • Excellent ability to manage stakeholders, driving action and challenging inaction.
    • Strong partnership abilities; skilled in influencing and motivating others especially senior leaders.
    • Strong project management skills or experience of implementing a framework successfully across an international and matrixed organisation.
    • Strong ability to implement non-mandatory or regulatory change.
    • Strong problem-solving and decision-making skills.
    • Excellent verbal and written communication skills including presentation development and delivery.
    • Proven ability to design and deliver well thought through, relevant and challenging exercise scenarios to all levels of business continuity teams.
    • Ability to work independently and think critically.
    • A strong service focus with the need to listen and understand the essential requirements of different areas of the firm.
    • A flexible approach to variable working requirements.
    • Experience in lateral leadership as the role requires delivering through other teams internationally and in region.
    • Ability to build connections and work collaboratively across boundaries at all levels.
    • Ability to communicate in a succinct and engaging manner.
    • A strong and broad understanding of IT methodologies, frameworks and best practices.
    • Proven experience in dealing/working with 3rd party suppliers to achieve results
    • Ability to understand at high level the technical design for business applications and “translate” for Business Users.
    • A positive attitude that always exudes a “can do” approach.
    • Genuine passion for IT resilience
    • Desire to develop (both themselves and their capabilities)
    • Initiative and ability to work under time constraints
    • Agility to adapt to fast paced change and moving stakeholder requirements.

    This role is equivalent to a Head of BC title in other organisations and has one direct report and support from consultancy and internal operations.

.