The purpose of this role is to lead the Group’s Technology Business Continuity Management (BCM) Resilience programs aligning with ISO 22301 and Central Bank regulatory mandates across multiple regional jurisdictions. The role holder is accountable for mandating and enforcing IT Disaster Recovery (DR) Resilience strategies that leverage emerging technologies—including Automated DR Failover Orchestration, Cloud-native resilience and Air-gapped backups to ensure the continuous availability of mission-critical banking systems across traditional, multi cloud, and microservices environments.
Key Responsibilities
Technology Resilience & Recovery.
• Mandate the Group-wide Technology BCM and Operational Resilience strategy, ensuring alignment with ISO 22301, global best practices, evolving regional regulatory mandates (e.g., CBK Prudential Guidelines) while integrating modern Cloud-Native resilience patterns, Automated DR Failover Orchestration, and Infrastructure as Code (IaC) for automated recovery.
• Partner with Group Cybersecurity to design and test specialized "Cyber Recovery Playbooks" (e.g., Ransomware recovery, immutable backups) to defend against and rapidly recover from destructive cyber-attacks.
DR Failover Simulations Orchestration & Testing.
• Direct and orchestrate multi-jurisdictional Disaster Recovery (DR) and Cyber Resilience failover simulations for the Group’s Core Banking and Tier-1 applications, rigorously validating strict Recovery Time Objectives (RTO) and Recovery Point Objectives (RPO).
• Develop technology-related crisis management frameworks and facilitate IT DRP simulation exercises (Tabletop drills) for the Group Technology teams.
High-Availability (HA) & BIA.
• Challenge Enterprise Architects and system owners on High Availability and redundancy designs; exercise authority to mandate the elimination of Single Points of Failure (SPOFs) across physical data centers and decentralized Multi-Cloud/Containerized architectures.
• Lead Business Impact Analyses (BIA) and IT Threat/Vulnerability assessments to proactively align technology recovery strategies with business demands.
Third-Party Cloud Resilience & Supply Chain Governance.
• Execute resilience audits and risk assessments of critical third-party technology vendors, SaaS/PaaS Cloud Service Providers (CSPs), and FinTech partners to prevent supply chain disruptions and mitigate systemic concentration risks.
Executive Reporting & Remediation Enforcement
• Design high-impact Operational Resilience dashboards and present strategic BCM risk profiles and compliance postures to the Group Risk Management Committee and the Board.
• Mandate and strictly track the closure of critical vulnerabilities, architectural gaps, and lessons learned identified during DR simulation exercises to their logical conclusion.
The Person
For the above position, the successful applicant should have the following: -
• A bachelor’s degree in Computer Science, Information Systems, Information Security or a related IT field is required.
• Professional Qualifications in Business Continuity / Resilience (CBCP (Certified Business Continuity Professional), AMBCI, MBCI, or ISO 22301 Lead Implementer / Auditor) is required.
• Professional Qualifications in Technology Governance & Security (CISA, CISM, CISSP, CRISC, or ITIL v4) is advantage.
• Master’s degree in business or technology is added advantage.
• At least 5 years’ experience in IT operations, architecture, or assurance functions within the Financial Services industry is required.
• At least 4 years of deep, practical knowledge of current business continuity planning techniques, disaster recovery, and performing complex risk and business impact analyses (BIA) is required.
• At least 3 years of demonstrated exposure to IT resilience practices, including Cloud-native recovery orchestration, Infrastructure as Code (IaC), Automated DR Failover Orchestration, and governing SaaS/PaaS resilience.
• At least 3 years in strong understanding of Core IT applications and experience in governing Third-Party/Vendor technology resilience.
• At least 4 years of proven track record of managing cross-functional technical teams during high-pressure crisis events or large-scale DR simulations.
• At least 3 years of practical knowledge of prudential guidelines on BCM and ICT Risk Management (e.g., CBK regulations).
To be considered your application must be received by Friday, 14th August 2026.
Qualified candidates with a disability are encouraged to apply.
Only short-listed candidates will be contacted