We are looking for

IT Continuity Expert

Back to offers list
Retour

IT Continuity Expert

  • Permanent
  • Full time
  • Bengaluru, Karnataka, India
Apply
Last update 05.10.2026

Job Title: IT Continuity Expert

Department: ITG CDF

About Business line/Function: Within IT Group, the Cybersecurity & Digital Fraud Department defines, steers and promotes the Group’s approach to IT risk management, cybersecurity, IT Continuity and operational resilience across BNP Paribas entities.

• Defining the vision, strategy and methodological framework for IT risk management, cybersecurity and IT Continuity,

• Monitoring the security, resilience and continuity posture of the Group’s information systems,

• Ensuring the effective deployment of Group standards and requirements across operating entities.

Against a rapidly evolving cyber threat landscape and increasing regulatory expectations, strengthening cybersecurity maturity, IT risk management and operational resilience is a strategic priority for BNP Paribas.

Within IT Group Cybersecurity & Digital Fraud department, you will be part of the team based in India.

In this role, the IT Continuity Expert will contribute to the development of the India platform and ensure that core IT Continuity activities are consistently understood, implemented and monitored across Group entities, in alignment with the Group IT Continuity, Cybersecurity and IT Risk frameworks.

Position Purpose: The IT Continuity Expert will play a key role in strengthening the Group’s IT Continuity, Backup, Cyber Resilience and Operational Resilience capabilities. The role combines expertise, governance, advisory support and continuous improvement to help entities implement robust continuity arrangements, meet regulatory expectations and enhance their ability to recover from disruptive events.

Responsibilities

Direct Responsibilities

· Framework Governance & Procedures Management

o Procedures Management

- Maintain IT Continuity and Cyber Resilience procedures in an effective, up-to-date and operationally usable state.

- Identify and drive required improvements based on:

· Group and entity maturity evolution,

· Regulatory developments such as DORA, ECB, OCC or PRA expectations,

· Feedback from entities and IT production teams,

· Industry best practices.

- Plan, coordinate and implement framework updates in close collaboration with the Governance team.

- Provide advisory support to entities by:

· Explaining procedures and framework expectations,

· Identifying gaps against Group requirements.

o Requirements & Objectives Management

- Maintain and continuously enhance IT Continuity, Backup and Cyber Resilience requirements and objectives.

- Ensure clear alignment between requirements, procedures, controls and governance expectations.

- Guide entities in interpreting, implementing and evidencing compliance with Group requirements.

- Contribute to the Cyber Program by:

· Providing guidance on requirements and objectives,

· Reviewing evidence submitted by entities,

· Identifying compliance gaps and improvement opportunities.

o Control Framework Management

- Maintain the Permanent Control Plans (GCL Controls) associated with the IT Continuity and Resilience framework.

- Ensure that controls remain relevant, effective and fully aligned with applicable requirements and procedures.

- Support stakeholders in understanding control objectives, expected evidence and implementation standards.

o Framework Consistency & Alignment

- Ensure consistency and coherence across the overall framework, including:

· Procedures,

· Requirements and objectives,

· Control plans,

· IT Continuity & Resilience Officer training materials,

· Exercise success criteria,

· Exercise reporting processes.

- Ensure alignment with related Group frameworks:

· Business Continuity Management (BCM),

· Third-Party Technology Risk Management (TPTRM),

· Cyber Risk Management Framework,

· Operational Resilience Framework.

- Ensure that framework evolutions are properly reflected in supporting tools and reporting platforms, including ServiceNow GRC, Tableau.

- Coordinate changes with tool owners and relevant stakeholders to ensure smooth implementation.

· Maturity Assessment, Compliance and Entity Support

o Entity Maturity Analysis

- Analyze maturity assessment results produced by the Cyber Program and identify key trends, weaknesses and improvement priorities.

- Identify and escalate where appropriate:

· Entities experiencing difficulties,

· Requirements requiring clarification,

· Group-level actions that could support entities.

o Community Engagement & Knowledge Sharing

- Identify topics that require further clarification, communication or guidance for entities through operational committees and community forums.

- Contribute actively to ICRO community meetings and support the continued professionalization of the IT Continuity community.

- Identify, formalize and promote reusable evidence, implementation approaches and best practices across the Group.

- Promote a culture of compliance, performance measurement and continuous improvement.

· Incident Analysis, Lessons Learned and Continuous Improvement

o Incident Analysis

- Analyze major incidents and events impacting IT Continuity, recovery capabilities and operational resilience.

- Identify: Root causes, recurrent issues and trends, systemic weaknesses.

o Lessons Learned Program

- Define and maintain a structured incident categorization and lessons learned framework.

- Produce, formalize and communicate lessons learned to support continuous improvement across the Group.

- Monitor remediation plans and ensure that improvement actions are tracked through to completion.

- Present key findings, trends and recommendations to governance bodies and the IT Continuity community.

o Stakeholder Coordination

- Identify and engage the relevant stakeholders required to contribute to lessons learned and remediation activities.

- Coordinate cross-functional reviews and improvement initiatives to strengthen resilience outcomes.

· Backup, Restore and SaaS Resilience Governance

o Backup Requirements Management

- Review, maintain and enhance Backup and Restore requirements in line with Group resilience objectives.

- Ensure alignment with: Internal standards, regulatory requirements, Cyber resilience expectations.

o Backup Procedures Assessment

- Assess existing backup procedures, operating models and recovery practices to ensure they remain effective and fit for purpose.

- Identify Gaps, obsolete practices, opportunities for improvement.

- Ensure that documentation is clear, actionable and aligned with operational needs.

o SaaS Backup Resilience

- Assess backup and recovery strategies for SaaS solutions and define the associated resilience expectations.

- Validate data protection, recoverability, availability and resilience capabilities for critical SaaS services.

- Review contractual commitments and technical guarantees with vendors where relevant.

- Define best practices for integrating SaaS backup and recovery approaches into the Group resilience framework.

o Cyber Program Support

- Analyze Cyber Program results related to Backup, Restore and Recovery capabilities.

- Recommend Group-wide improvement actions and support their prioritization.

- Support entities in understanding findings, defining remediation plans and implementing corrective actions.

· Operational Resilience Performance and Speed of Restoration

o Velocity Deployment & Adoption

- Support the deployment, adoption and operational integration of Velocity tools and initiatives.

- Promote stakeholder awareness, understanding and adoption of resilience performance improvement initiatives.

- Ensure effective integration with existing governance, monitoring and reporting processes.

o KPI Definition & Performance Measurement

- Define and maintain resilience-related KPIs, including Recovery performance, compliance indicators, incident management efficiency, operational resilience metrics.

- Define calculation methodologies, reporting principles and data quality standards.

- Establish meaningful baselines, targets and performance thresholds to support management decision-making.

o Continuous Improvement

- Analyze performance indicators to identify trends, risks and continuous improvement opportunities.

- Detect bottlenecks, recurring issues and opportunities to optimize recovery performance.

- Recommend, prioritize and monitor corrective actions in coordination with relevant stakeholders.

- Promote a data-driven culture focused on resilience performance, accountability and continuous improvement.

o Reporting & Governance

- Produce clear dashboards, management reports and executive-level insights.

- Present trends, risks, performance indicators and recommendations to governance bodies.

- Share best practices, success stories and improvement opportunities across the Group.

Contributing Responsibilities

Technical & Behavioral Competencies

· Strong autonomy, with the ability to improve methodologies, facilitate entity implementation, support team efficiency and anticipate stakeholder needs.

· Proven ability to operate effectively in large, complex and international organizations.

· Strong understanding of IT infrastructure, including servers, networks, storage systems, virtualization, cloud services and cybersecurity best practices.

· Excellent written and verbal communication skills in English.

· Ability to present complex information clearly, concisely and confidently to both technical and non-technical stakeholders.

· French language skills, including speaking, writing and reading, would be a strong advantage.

Specific Qualifications:

· Relevant certifications such as CBCP, CRISC or ITIL would be highly valued.

Skills Referential (Required knowledge, skills and abilities)

Transversal Skills:

· Ability to develop and adapt to a process 

· Analytical Ability

· Ability to work in a team environment

· Ability to collaborate

Behavioral Skills: 

· Ability to synthetize / simplify

· Ability to deliver / Results driven

· Communication skills - oral & written

· Respect for Diversity & Inclusion

Education Level: Bachelor’s degree in computer science, Information Technology or a related discipline, a master’s degree would be an advantage with minimum 15 years of professional experience, including at least 10 years in IT Continuity, resilience, disaster recovery or related domains.

Location: Bangalore/Chennai

About BNP Paribas Group:

BNP Paribas is the European Union’s leading bank and key player in international banking. It operates in 65 countries and has nearly 185,000 employees, including more than 145,000 in Europe. The Group has key positions in its three main fields of activity: Commercial, Personal Banking & Services for the Group’s commercial & personal banking and several specialized businesses including BNP Paribas Personal Finance and Arval; Investment & Protection Services for savings, investment, and protection solutions; and Corporate & Institutional Banking, focused on corporate and institutional clients. Based on its strong diversified and integrated model, the Group helps all its clients (individuals, community associations, entrepreneurs, SMEs, corporates and institutional clients) to realize their projects through solutions spanning financing, investment, savings and protection insurance. In Europe, BNP Paribas has four domestic markets: Belgium, France, Italy, and Luxembourg. The Group is rolling out its integrated commercial & personal banking model across several Mediterranean countries, Turkey, and Eastern Europe. As a key player in international banking, the Group has leading platforms and business lines in Europe, a strong presence in the Americas as well as a solid and fast-growing business in Asia-Pacific. BNP Paribas has implemented a Corporate Social Responsibility approach in all its activities, enabling it to contribute to the construction of a sustainable future, while ensuring the Group's performance and stability.

About BNP Paribas India Solutions:

Established in 2005, BNP Paribas India Solutions is a wholly owned subsidiary of BNP Paribas SA, European Union’s leading bank with an international reach. With delivery centers located in Bengaluru, Chennai and Mumbai, we are a 24x7 global delivery center. India Solutions services three business lines: Corporate and Institutional Banking, Investment Solutions and Retail Banking for BNP Paribas across the Group. Driving innovation and growth, we are harnessing the potential of over 10000 employees, to provide support and develop best-in-class solutions.

Commitment to Diversity and Inclusion

At BNP Paribas, we passionately embrace diversity and are committed to fostering an inclusive workplace where all employees are valued, respected and can bring their authentic selves to work. We prohibit Discrimination and Harassment of any kind and our policies promote equal employment opportunity for all employees and applicants, irrespective of, but not limited to their gender, gender identity, sex, sexual orientation, ethnicity, race, colour, national origin, age, religion, social status, mental or physical disabilities, veteran status etc. As a global Bank, we truly believe that inclusion and diversity of our teams is key to our success in serving our clients and the communities we operate in. As a global Bank, we truly believe that inclusion and diversity of our teams is key to our success in serving our clients and the communities we operate in.