Cyber Reliability & Resilience Manager

PayPal PayPal · Fintech · Luxembourg, Luxembourg District, LU · Cybersecurity Risk

This role is a senior governance, risk, and controls position within PayPal's PCIS / ICR team, focusing on ensuring compliance with the EU Digital Operational Resilience Act (DORA) and other European regulatory frameworks. The Manager will oversee digital operational resilience, cyber risk management, and regulatory compliance, acting as a strategic bridge between local obligations and enterprise technology/security operations. Responsibilities include defining risk mitigation strategies, leading initiatives, managing a team, and overseeing BCM, DR, and cyber resilience controls.

What you'd actually do

  1. Recognized as a security governance, risk, and compliance expert, independently addressing the most complex security risks and providing strategic direction on risk mitigation and governance practices across the security domain.
  2. Define methods and procedures for new or special assignments, collaborating with cross-functional teams to drive security risk and governance initiatives that align with business needs and objectives.
  3. Lead complex, high-impact security governance and risk management initiatives, leveraging a deep understanding of business trends and security challenges to develop innovative risk mitigation strategies and solutions.
  4. Possess a keen awareness of the broader impact of decisions, with initiatives driving enterprise-wide improvements in risk management and security governance, enhancing overall security practices and operational efficiency.
  5. Lead a security risk and governance team; set clear priorities and define actionable plans, ensuring alignment with organizational goals.

Skills

Required

  • Security governance, risk, and compliance expertise
  • Risk mitigation and governance practices
  • Cross-functional collaboration
  • Security risk and governance initiatives
  • Team leadership
  • Digital Operational Resilience
  • DORA compliance
  • Business Continuity Management (BCM)
  • Disaster Recovery (DR)
  • Cyber resilience controls
  • Incident management
  • Regulatory reporting
  • Change management

Nice to have

  • Experience in fintech compliance
  • Experience with HIPAA
  • Experience with FedRAMP
  • Experience with SOC2

What the JD emphasized

  • EU Digital Operational Resilience Act (DORA)
  • cyber risk management
  • regulatory compliance
  • BCM, DR, and cyber resilience controls
  • material change management