This role provides hands-on subject matter expertise in business continuity (BC) and disaster recovery (DR), leading the ongoing enhancement and rollout of the firm’s resilience program. The key purpose is to be the business partner for BC and DR, collaborating with individuals from all business services areas (IT, HR, Marketing, etc.) and client-facing practice groups internationally to develop, implement, maintain, and execute continuity and recovery plans that meet the strategic, tactical, and operational needs of the firm, and align with client, regulatory, and standard requirements.
This position works closely with senior leadership, Information Technology, General Counsel, Operational Risk Management, Marketing, HR, Finance, Audit, InfoSec, Procurement, and external stakeholders, feeding into the wider cross-function Operational Resilience framework, which includes Crisis Management and Enhanced Supplier Resilience.
Main duties and responsibilities
- Perform Business Impact Analyses and Risk Assessments across all practice groups and service areas, working with senior leadership, managers/owners of key business activities, subject matter experts, and other stakeholders
- Implement actions from the Enhanced Supplier Resilience forum into BC and DR, and report on progress
- Embed Crisis Management and Enhanced Supplier Resilience into the overall resilience framework
- Develop an in-depth understanding of business processes, facilities, equipment, IT networks/environment, suppliers, regulatory and client requirements, and interdependencies
- Update the firm's current business continuity framework and plans based on Business Impact Analyses, identifying appropriate strategies and tactics to achieve continuity, as well as threat mitigation measures and incident response structures
- Be part of the firm's business emergency response hotline and on-call response team for BC DR
- Support reporting for insurance renewals and client questionnaires and audits for all areas of BC DR
- Maintain the currency of BC and DR plans and all subordinate and supporting documentation such as policies, procedures, specialist plans, templates, and standards
- Train and prepare Bronze teams (offices) and work with internal stakeholders and external facilitators to train and test Silver, Gold, and Business Response Teams
- Ensure all of the above is done to comply with ISO22301 and support annual certification
- Lead the BC and DR integration into the firm's operational resilience framework
- Lead the disaster recovery team to ensure its effectiveness through IT’s implementation, including the currency of DR scripts and testing
- Be the leading expert on BC and DR at the firm
- Leverage the regional risk and resilience team, the risk culture and engagement team, external facilitators, and local business continuity champions to ensure robust BC DR across the firm
- Develop, maintain, and deliver annual business continuity/crisis management training and exercise programmes directly or by facilitating other resilience resources
- Provide post-exercise analysis and debrief
- Prepare firmwide communications to promote BC and DR, in conjunction with Head of Communications and Brand
- Prepare reports and presentations on BC and DR for Executive, Board, and Committees, particularly post-incident reviews and lessons learnt
- Oversee the execution of business continuity and response plans in the event of a business interruption/disruption, including supporting senior management by leading crisis management and incident response teams
- Manage relationships with the firm's key BC and DR suppliers
- Continuously validate the currency, accuracy, and completeness of the Business Continuity Framework and DR Program through regular reviews and audits
- Travel to office locations as needed to provide training, support, or project delivery where it cannot be done remotely or with local resource (limited)
- Support all business continuity/crisis management/disaster recovery operational preparedness including communications, response procedures, and logistical arrangements
- Benchmark best practice for business continuity and disaster recovery development and execution in a large international corporate environment
- Work with procurement, IT, and other areas to ensure suppliers are aligned with firm RPOs and RTOs
- Work with internal and external auditors to evidence and improve BC DR at the firm
- Ensure the ability to recover from a disaster from a technology systems perspective in a timely fashion and with minimal business impact, working within the IT Major Incident process
- Own the IT Disaster Recovery Plan, ensuring it is suitable, workable, maintained, and updated to reflect all relevant changes across the entire IT estate, and provide and maintain agreed Disaster Recovery (DR) standards
- Perform Business Impact Analysis of IT systems, document, highlight, and provide guidance to manage risks and single points of failure identified; provide guidance to service owners regarding controls and mitigation
- Collaborate with IT Operational teams to advance the IT Resilience programme ensuring processes are active and efficient
- Develop a comprehensive programme of validation, encompassing people, processes, plans, and technology, and ensure the plan is executed at the agreed frequencies, including coordinating tests/exercises and documenting scope, objectives/success criteria, and post-exercise/test reports/lessons learned
- Ensure that the IT Resilience recovery plans are maintained and updated to reflect all changes
- Provide assurance of any outsourced providers' DR provisions, validated testing through a rigorous review and challenge process
- Provide knowledge transfer to key staff regarding established IT Resilience procedures
- Identify, assess, and report IT Resilience related risks and issues. Maintain risks and issues log recording decisions formally, feeding into the main Information Security risk register
- Document and report on a monthly basis about progress against testing, risks and issues, and escalations requiring resolution
- Recommendations in terms of removal of redundant applications
About you
- Qualification in business management, risk management, resilience, emergency planning, disaster recovery, or business continuity management
- Business Continuity and Disaster Recovery expert preferred (MBCI, FBCI, or equivalent)
- 10 years of experience in business continuity, disaster recovery, or operational resilience, theory and practice
- Technical knowledge of IT systems important
- Demonstrated technical expertise in BCP documentation, including Business Impact Analysis, Incident Management, and Business Continuity planning
- Expert trainer able to inspire and influence busy executives to engage with Business Continuity/Disaster Recovery
- Excellent ability to manage stakeholders, driving action and challenging inaction
- Strong partnership abilities; skilled in influencing and motivating others, especially senior leaders
- Strong project management skills or experience of implementing a framework successfully across an international and matrixed organisation
- Strong ability to implement non-mandatory or regulatory change
- Strong problem-solving and decision-making skills
- Excellent verbal and written communication skills, including presentation development and delivery
- Proven ability to design and deliver well thought through, relevant, and challenging exercise scenarios to all levels of business continuity teams
- Ability to work independently and think critically
- A strong service focus with the need to listen and understand the essential requirements of different areas of the firm
- A flexible approach to variable working requirements
- Experience in lateral leadership as the role requires delivering through other teams internationally and in region
- Ability to build connections and work collaboratively across boundaries at all levels
- Ability to communicate in a succinct and engaging manner
- A strong and broad understanding of IT methodologies, frameworks, and best practices
- Proven experience in dealing/working with 3rd party suppliers to achieve results
- Ability to understand at high level the technical design for business applications and “translate” for Business Users
- A positive attitude that always exudes a “can do” approach
- Genuine passion for IT resilience
- Desire to develop (both themselves and their capabilities)
- Initiative and ability to work under time constraints
- Agility to adapt to fast paced change and moving stakeholder requirements
This role is equivalent to a Head of BC title in other organisations and has one direct report and support from consultancy and internal operations.
About us
We're a global law firm helping our clients achieve their goals wherever they do business. Our pursuit of innovation has transformed our delivery of legal services. With offices in the Americas, Europe, the Middle East, Africa, and Asia Pacific, we deliver exceptional outcomes on cross-border projects, critical transactions, and high-stakes disputes.
At DLA Piper, we understand that inclusion is not a one-size-fits-all concept. We embrace and celebrate the range of perspectives, backgrounds, and experiences that each individual brings to our firm. By fostering a culture that welcomes and appreciates all aspects of our individuality, we ensure that everyone has the opportunity to succeed.
Our commitment to inclusion and positive social impact enables us to provide exceptional service to our clients and communities, while nurturing a unique and inclusive culture for all our people. We welcome the unique contribution that you will bring to our firm and actively encourage applications from all talented people – however your talent is packaged, whatever your background or circumstance, and regardless of how you identify.
We are committed to being accessible and accommodating any reasonable adjustments needed throughout the recruitment process to ensure an inclusive experience for all. If you need any support or adjustments, please let us know.
Where local legislation permits, we will conduct relevant pre-engagement screening checks prior to your first day.