Operational Resilience & Cyber Security
• Drive the implementation and continuous improvement of PayPal Europe’s ICT operational resilience capabilities under DORA and related European regulatory frameworks.
• Partner directly with infrastructure, cloud, security engineering, SRE, and product teams to strengthen resilience of critical ICT services and business processes.
• Lead resilience testing activities including disaster recovery exercises, cyber simulations, failover validation, tabletop exercises, and scenario-based operational testing.
• Support the secure design and resilience review of technology platforms, cloud environments, outsourcing arrangements, and major transformation initiatives.
• Contribute to the identification, prioritization, and remediation of technology and cyber security risks impacting the regulated entity.
ICT Risk & Secure Change Management
• Act as First Line ICT risk lead for major technology changes, cloud migrations, new product launches, and operational transformation programs.
• Perform practical ICT and cyber risk assessments across infrastructure, applications, third-party services, and operational processes.
• Ensure security, resilience, and regulatory requirements are integrated into technology delivery lifecycles and operational processes.
• Work closely with engineering and product stakeholders to ensure remediation plans are technically realistic, measurable, and effectively implemented.
• Assess operational impacts of material ICT changes under DORA, PSD2/PSD3, GDPR, and ECB expectations.
Incident Response & Regulatory Engagement
• Serve as a senior First Line subject matter expert during cyber security incidents and operational disruption events.
• Coordinate ICT incident assessment, regulatory notification inputs, root cause analysis, and remediation tracking.
• Support engagement with European regulators including CSSF, CNPD, ECB, and external auditors during inspections, reviews, and incident-related communications.
• Contribute to post-incident reviews and resilience improvement initiatives following operational or cyber events.
Control Environment & Technical Risk Reduction
• Support the implementation and operational effectiveness of ICT security and resilience controls across the regulated entity.
• Partner with enterprise security and engineering teams to improve detection, recovery, resilience, and operational monitoring capabilities.
• Track remediation of resilience and cyber control gaps and support risk-based prioritization activities.
• Contribute to operational resilience metrics, KRIs, and executive reporting focused on measurable risk reduction outcomes.
• Bachelor’s or Master’s degree in Cyber Security, Computer Science, Information Technology, Software Engineering, Information Systems, or a related technical discipline.
• Strong preference for candidates with an engineering or technical operations background combined with experience in cyber security, operational resilience, or technology risk within regulated environments.
• Professional certifications are highly desirable, particularly those demonstrating practical cyber security, resilience, or technology risk expertise, such as:
o ISO 27001 Lead Implementer / Lead Auditor
o ISO 22301 Business Continuity certifications
o Cloud security certifications (AWS Security, Azure Security, GCP Security) are considered an advantage
o SANS / GIAC certifications are considered a strong advantage
• Additional training or certifications related to operational resilience, incident response, cloud infrastructure, cyber defence, or financial sector regulation are highly valued.
• Knowledge of European regulatory frameworks and supervisory expectations (including DORA, CSSF, CNPD, ECB, EBA, PSD2/PSD3, and GDPR) is strongly preferred.
• 7+ years of experience within financial services, payments, fintech, or other regulated technology environments, with demonstrated senior-level responsibility in cyber security, ICT risk, operational resilience, or technology operations.
• Proven experience operating within a First Line of Defence function or closely partnering with engineering, infrastructure, security operations, or technology delivery teams.
• Strong practical understanding of enterprise technology environments, cloud infrastructure, cyber security operations, and ICT risk management practices.
• Hands-on experience with:
o operational resilience testing
o disaster recovery and business continuity
o cyber incident management
o technology change risk assessments
o control remediation and risk reduction initiatives
• Strong working knowledge of DORA, PSD2/PSD3, GDPR, EBA Guidelines, and ECB supervisory expectations.
• Experience engaging with European regulators and supervisory authorities such as CSSF, CNPD, ECB, or equivalent regulatory bodies is highly desirable.
• Experience supporting or leading regulatory inspections, audits, operational resilience exercises, or major incident response activities.
• Ability to work effectively across technical and non-technical stakeholders in fast-paced and highly regulated environments.
• Familiarity with cloud platforms, infrastructure resilience, cyber security tooling, and modern technology operating models is considered a strong advantage.
• Experience with GRC platforms, operational risk tooling, and executive-level risk reporting is beneficial but not the primary focus of the role.
• Strong technical and analytical mindset with the ability to assess complex ICT and cyber security risks within modern technology environments.
• Ability to translate technical risk scenarios into practical operational and management actions.
• Credible partner to engineering, infrastructure, security, and product teams with the ability to influence and drive resilience improvements collaboratively.
• Strong understanding of operational resilience, cyber security principles, and technology risk management within regulated financial environments.
• Excellent stakeholder management and communication skills, including experience interacting with senior management, regulators, auditors, and technical teams.
• Ability to operate independently, prioritize effectively, and make risk-based decisions in high-pressure or incident-driven situations.
• Strong problem-solving capability with a focus on practical risk reduction and operational outcomes.
• High standards of documentation, regulatory discipline, and execution quality.
• Resilient and composed during cyber incidents, operational disruptions, and regulatory engagements.
• Continuous improvement mindset with strong curiosity for emerging technology, cyber threats, and resilience practices.