Member of Global Operations, Information & Security (Business Continuity & Disaster Recovery) en Anchorage Digital
Anchorage Digital · Estados Unidos De América · Remote
Technical Skills:
- Knowledge and experience with key regulatory and industry frameworks and standards on BCM: FFIEC IT Examination Handbook on BCM, NIST SP 800-34, or ISO 22301, and their related application to each aspect of a compliant BCM program.
- A deep understanding of cloud infrastructure configurations and architecture, disaster recovery plan development and management, and general concepts of information security and IT risk management.
- A strong ability to "translate" relevant regulation into technical controls; and, conversely, possess the ability to explain how existing and / or net-new controls are suitably designed to meet regulatory requirements.
- A strong ability to independently conduct and critically assess Business Impact Analysis (BIA) and Business Continuity Plan (BCP) updates, and collaborate with functional lead SMEs to accurately translate and account for speculative business impacts and recovery requirements in BIA and BCP documentation.
- Excellent communication and program management skills to drive stability and successful execution in a fast-moving environment.
Complexity and Impact of Work:
- Support, scale, and improve Anchorage Digital’s resilience, business continuity, and disaster recovery programs based on applicable risks, regulatory requirements, and industry guidance, and be accountable for assigned work by identifying, resolving, and escalating blockers and dependencies.
- Collaborate with enterprise business groups to develop and implement best practices designed to protect and restore data, systems, and business processes following anticipated or unanticipated disruptions.
- Track meaningful reporting, metrics, analysis, and controls commensurate with both business needs and regulatory expectations.
- Support the execution of established resilience, business continuity, and disaster recovery strategies, guiding initiatives from conception to completion, in concert with external technology providers.
- Maintain enterprise-wide business continuity and disaster recovery program documentation commensurate with regulatory guidance, such as the FFIEC IT Handbook. Maintain program-relevant Bank controls and identify, report, and control incidents relevant to Bank services.
- Resolve internal and external audit issues, including the implementation of management action plans.
- Support the execution and documentation of periodic tabletop and functional exercises in collaboration with and across business units and critical third-party service providers.
Organizational Knowledge:
- Support and execute Anchorage Digital's business continuity and disaster recovery program elements, as well as maintain a control set and policy framework that satisfies regulatory requirements in an efficient and elegant manner.
- Collaborate with and guide each department to build and maintain enterprise-wide operational resilience, along with business continuity and disaster recovery programs, commensurate with changing business needs and industry and regulatory standards.
- Propose changes to the Bank’s business continuity and disaster recovery strategy when necessary or beneficial to Anchorage Digital’s objectives.
- Collaborate with the Anchorage Digital Third Party Risk Management team to independently conduct onboarding and ongoing monitoring due diligence evaluations of third-party service provider BCM documentation; assess and document an opinion as to the adequacy of third-party provided BCM documentation.
Communication and Influence:
- Communicate program concepts effectively across all operational functions, as well as to business leaders at all levels.
- Communicate risks and influence the implementation of measures necessary to mitigate those risks to the Bank.
- Assist in the development of business continuity and disaster recovery program reports for senior management teams.
- Create effective relationships across the enterprise and communicate program goals, needs, and capabilities to stakeholders.
You may be a fit for this role if you have:
- Exceptional attention to detail and are highly organized.
- A passion for improving existing processes.
- A highly reliable and proactive communication style.
- Excellent soft skills, including the ability to adapt communication for both internal and external stakeholders at all levels of seniority in an effective manner, bridging gaps with empathy, patience, and proactive communication.
- Experience using: the Google Workspace office suite; AuditBoard GRC tooling solutions; Linear; Notion; Slack; Jira; and Whimsical.
- Knowledge of cloud infrastructure dashboards and consoles (e.g., Google Cloud Platform).
- Exposure to or interactions with supervisory examination personnel (e.g., OCC).
Although not a requirement, bonus points if:
- You have relevant industry certifications.
- You have familiarity with Operational Risk Management; Audit, Governance, Risk, and Compliance software implementation and configuration (AuditBoard).
- You understand and have experience with baseline physical security measures.
- You were emotionally moved by the soundtrack to Hamilton, which chronicles the founding of a new financial system. :)