Digital & Cyber Resilience Manager

Hargreaves Lansdown
Bristol, UK
6 days ago
Apply on www.totaljobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Amazon Web Services Backup Devices Cloud Engineering Encodings Disaster Recovery Failover Reliability Engineering

Job description

As the Digital & Cyber Resilience Manager you will own the first-line design, embedding and evolution of HL’s technical and cyber resilience capability across the Digital function. The role is accountable for the Technical Resilience Framework, cyber recovery capability and technical service continuity practices, ensuring engineering and platform teams design, operate and recover services in a way that protects HL’s Important Business Services (IBS) from technology failure and cyber disruption, while enabling delivery velocity and supporting regulatory alignment.

What you will be doing

  • Own and evolve the Technical Resilience Framework, policies and standards on behalf of Digital, keeping them current, pragmatic and aligned to regulatory expectations.
  • Embed resilience-by-design practices across engineering and platform teams through patterns, guardrails, playbooks and pragmatic guidance.
  • Lead HL’s Cyber Recovery capability, defining recovery objectives, cyber recovery plans and Minimum Viable Business (MVB) approach for systems supporting IBS.
  • Drive technical service continuity, ensuring Criticality Assessments and data/system recovery plans are in place, current and owned by system owners.
  • Own the technical resilience testing cycle, coordinating DR, failover, backup and cyber recovery exercises and reporting outcomes and remediation.
  • Provide first-line technical service risk assessment for new and changing services through Architecture Panel / DPS TDA, acting as guardian of resilient change.
  • Track and report on the resilience posture of Digital, providing management information, KRIs and evidence to support Digital Leadership and internal/external assurance.
  • Strengthen technology cyber incident readiness in partnership with Cyber Defence, Incident Management and SRE, focusing on containment, recovery and clean-build capability.
  • Collaborate with second-line Technology Risk, Operational Resilience, Business Continuity and Procurement to ensure aligned outcomes and clear ownership.
  • Champion a resilience culture across Digital through the Engineering Chapter, community forums, learning content and coaching of engineering leaders.

Requirements

  • Proven experience leading technical and/or cyber resilience, disaster recovery, or SRE capability in a complex regulated environment (financial services strongly preferred).
  • Strong working knowledge of cyber recovery techniques including ransomware response, immutable backups, clean-build patterns and recovery orchestration.
  • Solid understanding of hybrid infrastructure and cloud-native architectures (AWS preferred), covering redundancy, failover, dependency management and fault isolation.
  • Practical experience designing and running resilience testing programmes including DR exercises, failover testing, chaos engineering and technical tabletop exercises.
  • Working knowledge of relevant UK regulatory expectations (FCA/PRA Operational Resilience, Impact Tolerances, IBS protection, DORA-equivalent principles) and their translation into technology controls.
  • Able to define and use KRIs, metrics and evidence to prioritise action and demonstrate control effectiveness to technical and non-technical audiences.
  • Strong stakeholder influencing skills - able to build consensus across engineering, architecture, security, risk and operations without relying on direct authority.
  • Comfortable operating as a first-line owner, partnering with 2nd-line assurance, Business Continuity and Third-Party Risk functions.
  • Excellent written and verbal communication, able to translate technical resilience concepts for engineering, product and executive audiences.
  • Relevant certifications welcomed but not essential (e.g. ISO 22301, CBCI, CISSP, ITIL, AWS Solutions Architect / Well-Architected).

Benefits & conditions

This role is based in Bristol head office, BS1 5HL. This role is permanent, full time, 37.5 hours per week, Monday to Friday. We have returned to the office 2 days a week., * Discretionary annual bonus* and annual pay review

  • 25 days* holiday plus bank holidays and 1-day additional Christmas closure
  • Option to purchase an additional 5 days holiday**
  • Flexible working options available, including hybrid working
  • Enhanced parental leave
  • Pension scheme up to 11% employer contribution
  • Income Protection and Life insurance (4 x salary core level of cover)
  • Private medical insurance*
  • Health care cash plans - including optical, dental, and out patientcare
  • Health screening programme
  • Help@hand - confidential support including mental health counselling and remote GP
  • Wellhub - unlimited access to fitness providers and wellness coach sessions
  • Variety of travel to work schemes with bike storage and shower facilities
  • Inhouse barista and deli serving subsidised coffee and sandwiches
  • Two paid volunteering days per year

  • dependant on role level

** only available to select during our annual benefits window, in November each year

About the company

Here at HL, we’re the UK’s number 1 investment platform for private investors, based in Bristol. For more than 40 years we’ve helped investors save time, tax and money on their investments.

To achieve our mission, we believe we have a workplace like no other, with constant learning, dynamic teams, and a great ethos. We’re steered by core values that promote service, quality, innovation, and opportunity in everything we do.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.totaljobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:11 min

Establishing secure recovery factors without password fallbacks

Clemens Hübner Clemens Hübner · World Congress 2023

3:17 min

Optimizing character encoding with Kim variable byte encoding

Douglas Crockford Douglas Crockford · World Congress 2024

2:59 min

Scaling clusters and handling automated replica failover

Jürgen Pilz · World Congress 2023

3:02 min

Navigating DORA compliance and executive liability in security

Michele Zuccala Michele Zuccala +4 · World Congress 2026 Europe

4:12 min

Distilling cross-encoder models into smaller efficient sentence embedding models

Marek Suppa · LIVE

1:44 min

Background and career journey in regulated software systems

Martin Hynie · Coffee With Developers

Videos

See all

Related articles

See all