Job DescriptionThe Impact you will have in this role:Being a member of IT Cybersecurity & Platform Strategy team, the
Director, Cyber Resiliency willbuild, lead, and mature our capability focusing on recovery from destructive events that may impact core business operations. This is a hands-on leadership role accountable for two core capability areas:
- Immutable backup recovery: immutable, air-gapped backup storage, malware and ransomware analysis on backup data, and digital forensics support to enable clean, trusted recovery decisions.
- Full-stack and bare-metal recovery: the capability to rebuild and restore infrastructure and applications from the ground up following a significant cyber-induced disruption.
The environment spans on-premise data center infrastructure (mainframe, distributed databases, application servers on Linux/VMware, and enterprise storage) as well as public cloud. The successful candidate will bridge traditional infrastructure resiliency with modern cloud recovery patterns and will be a key partner to Security, Infrastructure, Business Continuity, Risk, and Technology leadership.
Your Primary Responsibilities:Cyber Resiliency Strategy & Program Leadership- Own the enterprise cyber resiliency strategy and roadmap for recovering from extreme cyber events (ransomware, destructive malware, data corruption), tracking key recovery metrics and reporting to senior leadership and risk committees.
Isolated & Immutable Backup Recovery- Lead immutable/air-gapped backup infrastructure, including malware and integrity scanning of backup data and forensic support for incident investigations, in partnership with the IR/Forensics team.
Full-Stack & Bare-Metal Recovery- Own recovery readiness (runbooks, automation, and regular testing) for critical infrastructure and applications across mainframe, Linux/VMware, storage, and cloud, in partnership with Infrastructure and Cloud teams.
Cross-Functional Partnership & Governance- Serve as the key liaison to Business Continuity, Risk, and Audit on resiliency posture and regulatory readiness, and represent cyber resiliency in incident response and crisis management planning.
Team Leadership- Hire, develop, and lead the resiliency engineering team, and manage vendor/managed-service relationships supporting recovery tooling.
**NOTE: The Primary Responsibilities of this role are not limited to the details above. **Qualifications: - Min 10+ years of relevant experience
- Bachelor's Degree and/or equivalent experience
Talents Needed for Success: - 10+ years of progressive experience in infrastructure, disaster recovery, business continuity, or security roles, with at least 4-5 years in a leadership capacity.
- Demonstrated experience designing or operating cyber recovery capabilities (isolated recovery environments, immutable backups, bare-metal recovery) - not just traditional DR/BCP.
- Strong working knowledge of enterprise infrastructure, ideally spanning mainframe systems, distributed databases, Linux/VMware server environments, and enterprise storage platforms.
- Hands-on familiarity with public cloud infrastructure (AWS preferred) and recovery patterns (backup, snapshotting, cross-region/account recovery, access considerations for isolated recovery).
- Experience with ransomware/malware forensics concepts and backup integrity validation, or close partnership with forensics/IR teams.
- Experience leading enterprise-scale recovery exercises (tabletop through full-scale) and reporting outcomes to senior stakeholders.
- Strong understanding of regulatory/operational resilience expectations relevant to the industry.
- Excellent stakeholder management and executive communication skills; ability to translate technical recovery posture into business risk terms.
- Isolated backup and full-stack recovery capabilities are documented, tested, and validated against defined RTO/RPO targets for the organization's most critical services.
- A recurring cyber recovery exercise program is in place with executive-level reporting.
- Clear, auditable evidence of immutable backup coverage and recovery runbooks across on-premise and cloud environments.
- Strong working relationships established with Security, Infrastructure, Business Continuity, and Risk stakeholders.
The salary range is indicative for roles at the same level within DTCC across all US locations. Actual salary is determined based on the role, location, individual experience, skills, and other considerations.