Head of Operational and Cyber Resilience
Business Type
Risk Management / Control
Job Title
Head of Operational and Cyber Resilience
Contract Type
Permanent Contract
Job Summary
The Head of Operational and Cyber Resilience will be responsible for developing, implementing, and overseeing the bank’s strategy to ensure resilience against operational disruptions, cyber threats, and systemic risks. This role will lead enterprise-wide resiliency initiatives, ensuring alignment with regulatory expectations, industry best practices, and emerging threats. The ideal candidate will collaborate closely with technology, risk management, compliance, and business leadership to enhance operational integrity and incident response capabilities. This is a high-impact role requiring deep expertise in cybersecurity, operational risk management, and business continuity planning in a highly regulated financial environment.
Key Responsibilities
- Enterprise Resilience Strategy Development
- Develop and implement a comprehensive operational and cyber resiliency strategy aligned with regulatory requirements and industry standards.
- Define resilience objectives, key risk indicators (KRIs), and performance metrics to measure the effectiveness of resiliency programs.
- Collaborate with senior leadership to embed resilience principles into business and technology processes.
- Stay ahead of emerging risks, regulatory changes, and threat landscapes to refine and enhance resilience strategies.
- Cyber Resiliency and Incident Management
- Oversee the development and execution of the bank’s cyber resilience framework, ensuring rapid response and recovery from cyber incidents.
- Lead tabletop exercises and simulations to test cyber incident response and business recovery capabilities.
- Coordinate with internal and external stakeholders (e.g., regulators, law enforcement, third-party service providers) during cyber events.
- Ensure integration of cyber resilience into broader enterprise risk management and IT security functions.
- Business Continuity and Disaster Recovery (BC/DR)
- Develop and maintain enterprise-wide business continuity and disaster recovery plans, ensuring readiness to sustain critical business operations during disruptions.
- Conduct regular BC/DR testing, audits, and training sessions to validate effectiveness and improve preparedness.
- Work closely with technology teams to ensure recovery time objectives (RTOs) and recovery point objectives (RPOs) are met for critical systems.
- Establish and maintain alternative operational processes to mitigate disruptions during system failures or cyber events.
- Regulatory Compliance and Governance
- Ensure compliance with all relevant regulatory frameworks (e.g., FFIEC, OCC, Basel, DORA) related to operational and cyber resiliency.
- Serve as a key liaison with regulatory bodies and auditors, preparing reports and responses to inquiries regarding resilience programs.
- Develop governance frameworks, policies, and procedures to enforce resilience-related mandates across the organization.
- Foster a culture of compliance and resilience awareness.
- Third-Party and Supply Chain Resilience
- Assess and mitigate risks associated with third-party vendors, ensuring they meet the bank’s operational and cyber resilience standards.
- Establish rigorous due diligence processes for critical suppliers, including resilience testing and contractually mandated recovery capabilities.
- Develop contingency strategies for vendor-related disruptions and ensure robust exit strategies for key service providers.
- Collaborate with procurement and risk management teams to integrate resilience considerations into vendor selection and onboarding processes.
- Threat Intelligence and Risk Monitoring
- Develop and oversee an operational risk and threat intelligence program to proactively identify vulnerabilities and emerging threats.
- Partner with cybersecurity, fraud prevention, and risk management teams to integrate threat intelligence into resilience planning.
- Monitor key operational risk indicators and trends, ensuring timely action to mitigate potential disruptions.
- Implement continuous improvement processes based on lessons learned from incidents, audits, and threat assessments.
Salary Range
$200k – $250k
Geographical Area
America, United States Of America
Minimum Qualifications
Bachelor’s degree in Cybersecurity, Information Technology, Business Administration, or a related field. Advanced degree (MBA, MS) is strongly preferred. Relevant industry certifications (CISSP, CISM, GIAC) are strongly preferred.
Experience
Minimum 10+ years of experience in information security or related field. At least 3 years of experience in a senior leadership role within the banking or financial services industry.
Core Competencies
Experience & Expertise:
- 15+ years of experience in operational resilience, cybersecurity, business continuity, or risk management within the financial sector.
- Proven leadership experience in a senior resiliency role at a highly regulated financial institution.
- Deep understanding of regulatory requirements such as FFIEC, OCC, Basel, and DORA, with experience managing regulatory interactions.
- Industry certifications such as CISSP, CISM, CISA, CBCP, or CRISC strongly preferred.
Required Skills
- Expertise in cyber resilience frameworks, incident response methodologies, and business continuity planning.
- Strong knowledge of operational risk management, threat intelligence, and IT disaster recovery strategies.
- Ability to analyze complex risks and develop practical, actionable resilience strategies.
- Excellent verbal and written communication skills, with experience presenting to regulators, auditors, and senior stakeholders.
General Information
About Crédit Agricole Corporate and Investment Bank (Crédit Agricole CIB): Crédit Agricole CIB is the corporate and investment banking arm of Crédit Agricole Group, the 10th largest banking group worldwide in terms of balance sheet size. 8,600 employees in more than 30 countries across Europe, the Americas, Asia-Pacific, the Middle-East, and North Africa support the Bank\’s clients. For more information, please visit .
#J-18808-Ljbffr
Head of Operational and Cyber Resilience Arbeitgeber: Crédit Agricole SA

Kontaktperson:
Crédit Agricole SA HR Team