IT Operational Resilience Manager
Are you passionate about financial sector regulations and technology risk management? This is a unique opportunity to help build and drive a new financial entity with direct leadership engagement and enterprise Finance team support.
Microsoft is on a mission to empower every person and every organization on the planet to achieve more. Our culture is centered on embracing a growth mindset, a theme of inspiring excellence, and encouraging teams and leaders to bring their strengths each day. In doing so, we create life-changing innovations that impact billions of lives around the world. You can help us achieve our mission.
The role aligns closely with Microsoft Treasury — which supports over $150B in trade and receivables, $11B in annual payment solutions, and a $130B investment portfolio, along with currency risk, bank account infrastructure and business risk insurance — and sits within Finance Data & Experiences (FD&E), an organization on a mission to redefine how Microsoft measures, monitors, and optimizes its global business. FD&E brings together data, AI, and engineering talent to build reliable, scalable, and secure solutions that power decision-making, business insights, automation, and AI-driven experiences across Finance, Sales, Marketing, Business Operations, and Product Engineering.
The IT Operational Resilience Manager will own technology strategy and ICT risk and resilience oversight for outsourced payment services in a newly created Payments Institution based in Dublin, Ireland.
You will shape how Microsoft governs technology risk and resilience in a regulated environment, operating independently, applying your technical program management expertise to own the ICT risk management framework in line with the EU Digital Operational Resilience Act (DORA) and to provide oversight of services delivered by Microsoft group entities and third parties, aligned to Central Bank of Ireland (CBI) requirements.
Responsibilities
- Effective technology strategy and governance. Define the entity's technology strategy within an outsourced operating model, ensuring alignment with regulatory expectations, Group architecture, and business objectives. Establish the governance forums, standards, and decision rights needed to direct and challenge technology delivered on the entity's behalf.
- Lead DORA and ICT risk management. Own the ICT risk management framework in line with the Digital Operational Resilience Act (DORA), including ICT risk identification and assessment, control design and validation, and oversight of outsourced ICT services. Maintain the ICT third-party register and ensure contractual, security, and control requirements are met and evidenced.
- Build and run the technology operational resilience framework. Lead resilience planning — including impact tolerances, dependency mapping, and scenario testing — so that critical payment services can withstand, respond to, and recover from disruption within agreed tolerances.
- Hold regulatory accountability for technology. Support technology-related inspections, audits, and regulatory submissions to the CBI and other applicable authorities, providing clear, evidenced responses on ICT risk, security, and resilience.
- Oversee ICT incidents and escalation. Ensure major ICT incidents are appropriately managed by providers, with independent internal assessment, timely escalation, and regulatory notification in line with DORA and CBI requirements. Drive root cause analysis and confirm remediation is completed and sustained.
- Report to the Board and its committees. Deliver clear, decision-ready reporting on technology risks, resilience posture, and provider performance to the Board and relevant committees, using data and storytelling to adapt to audience and business need.
- Provide change and architecture assurance. Provide oversight and constructive challenge on material technology changes delivered by the Group or vendors, ensuring change risk is assessed, resilience impacts are understood, and security and privacy principles are incorporated into planning.
- Partner across the entity and FD&E. Team closely with the Operational Risk & Resilience Manager so that technology and business resilience are managed as one joined-up picture, and partner with Risk, Compliance, and Internal Audit. Bring the entity's requirements back into FD&E and the wider Microsoft technology and risk community.
Required:
- A Bachelor's degree in Computer Science, Engineering, Information Systems, Business, or a related field, and relevant experience in technology risk, ICT or operational resilience, IT service management or technical program management; OR equivalent professional experience in lieu of the qualification.
- Demonstrated experience leading complex technology risk, ICT resilience or IT governance programs end to end within a large, complex organisation, including control design, KPI design, service delivery management, and risk and remediation reporting to senior management.
- Proven ability to engage credibly with senior stakeholders, regulators or external auditors, with the ability to communicate complex technical, architectural and risk concepts clearly to non-specialist audiences.
Any of the following are considered an advantage:
- Master's degree in Computer Science, Engineering, Information Systems, Business or a related field with relevant experience; OR Bachelor's degree with relevant experience in technology risk, ICT resilience, IT governance or technical program management.
- Prior experience implementing or operating an ICT risk management and operational resilience programme, including alignment to DORA or equivalent regulatory requirements.
- Prior experience in financial services, payments, technology, cloud services or online platforms sectors.
- Exposure to CBI or EBA outsourcing and ICT requirements, PSD2, or other regulated outsourcing regimes.
- Working proficiency in a second European language is desirable but not required; all working communications can be conducted in English.
Technical Program Management IC4 - The typical base pay range for this role across Ireland is € 77,400.00 - € 130,000.00 per year. Certain roles may be eligible for benefits and other compensation.
Find additional benefits and pay information here:
https://careers.microsoft.com/v2/global/en/corporate-pay/ireland-corporate-pay.html
This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled.
Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.