Incidence Response and Cyber Resilience Manager
Ingenico Group
Ingenico is the global leader in payments acceptance solutions. As the trusted technology partner for merchants, banks, acquirers, ISVs, payment aggregators and fintech customers our world-class terminals, solutions and services enable the global ecosystem of payments acceptance. With 40 years of experience, innovation is integral to Ingenico’s approach and culture, inspiring our large and diverse community of experts who anticipate and help shape the evolution of commerce worldwide. At Ingenico, trust and sustainability are at the heart of everything we do.
Job Summary
As the Response and Cybersecurity Resilience Manager, you will oversee the organization’s global cybersecurity incident response capabilities and resilience strategies. You will ensure securing critical systems—such as secure payment platforms, support applications, global IT networks, and endpoints—against cyber threats. You will lead incident investigations, support crisis management, execute cyber crisis simulations, and ensure that lessons learned from incidents are integrated into risk management frameworks to bolster organizational resilience.
Key Responsibilities
- Incident Response Management
- Lead end-to-end incident response for cybersecurity events across the company, including secure payment platforms, IT infrastructure, and business applications.
- Develop, maintain, and test incident response plans and playbooks to address threats such as ransomware, data breaches, fraud, and system compromises.
- Coordinate response activities with SOC, internal teams, third-party vendors, regulatory bodies, and law enforcement as needed. Act as the primary point of contact for security incidents, coordinating detection, analysis, containment, eradication, and recovery activities.
- Lead the development, execution, and maintenance of the Incident Response Plan and playbooks.
- Crisis Management Support
- Support Ingenico to ensure cross-functional teams coordination during crisis events, ensuring clear communication and timely decision-making.
- Coordinate with legal, compliance, and public relations teams to manage internal and external communications during crises.
- Lessons Learned and Risk Integration
- Conduct post-incident root cause analysis to identify process gaps, technical failures, and areas for improvement.
- Integrate lessons learned into the enterprise risk register and collaborate with risk management teams to enhance cybersecurity posture.
- Regularly report the lessons learned to the Executive Committee for actions taken at a global level
- Monitor the effectiveness of implemented corrective actions and update mitigation strategies accordingly.
- Develop metrics and reporting processes to provide stakeholders with visibility into incident response and resilience progress.
- Cyber Resilience Strategy
- Develop and manage the cybersecurity resilience program, ensuring alignment with business continuity plans (BCP) and disaster recovery plans (DRP) strategies.
- Collaborate with business continuity and disaster recovery teams to align cyber resilience plans with organizational objectives.
- Drive adoption of proactive measures to mitigate risks, such as backups, failover strategies, and automated detection capabilities.
- Stakeholder Engagement and Communication
- Serve as the key liaison to executive leadership during significant cybersecurity incidents and crisis scenarios.
- Deliver clear and concise updates on incident status, recovery progress, and mitigation strategies to both technical and non-technical stakeholders.
- Conduct awareness programs to improve cybersecurity resilience across the organization.
- Cyber Crisis Simulations
- Develop and lead cyber crisis simulation exercises across global teams to test incident response readiness and decision-making processes.
- Simulate real-world attack scenarios (e.g., ransomware, malware propagation, payment fraud) to identify gaps in response processes, tools, and communication strategies.
- Analyze outcomes, provide actionable insights, and track improvements to ensure continuous readiness for cyber incidents.
- Regulatory Compliance & Reporting
- Ensure compliance with industry regulations (e.g., GDPR, PCI DSS, NIS v2, DORA) and report security incidents to relevant authorities when required.
- Collaborate with auditors, regulators, and clients during assessments and inquiries related to incident handling.
- Stay informed on regulatory changes and update internal processes accordingly.
- Continuous Improvement
- Monitor threat intelligence feeds and collaborate with threat hunters to anticipate and mitigate potential threats.
- Evaluate and refine incident and crisis management processes, leveraging tools and technology to optimize efficiency.
Key Skills & Qualifications
Education & Experience
- Bachelor’s degree in Cybersecurity, Information Technology, or a related field; advanced degree preferred.
- 5+ years of experience in cybersecurity, with a focus on incident response and crisis management in the financial or regulated industries.
- Experience with regulatory frameworks such as GDPR, NIS, SOX, or equivalent.
- Certifications such as CISSP, CISM, or CRISC preferred.
- Strong knowledge of cybersecurity frameworks (e.g., NIST CSF, ISO/IEC 27001, ISO/IEC 22361).
- Proven ability to lead under pressure and make informed decisions in high-stakes situations.
- Exceptional communication skills with the ability to explain complex technical issues to non-technical audiences.
- Familiarity with Security Information and Event Management (SIEM) tools and incident tracking platforms.
Key Competencies
- Problem-Solving & Analytical Thinking
- Leadership & Team Management
- Risk Management Expertise
- Effective Communication
As part of our values, we embrace diversity and inclusion at Ingenico. We are an equal opportunity employer and do not discriminate on the basis of an individual's race, national origin, color, gender, gender identity, gender expression, sexual orientation, religion, age, disability, marital status or any other protected characteristic under applicable law, whether actual or perceived.Ingenico welcomes and encourages applications from people with disabilities. Accommodations are available on request for candidates taking part in all aspects of the selection process.We want to adapt our processes and create a safe work environment that welcomes everyone.To learn more about what it's like working inside Ingenico, follow us on LinkedIn