DORA Project Manager
eFinancialCareers · London · Salary not listed
Job summary
DORA Project Manager Location: London – 3 days in Office The Role We are seeking an experienced DORA Implementation Project Manager to drive the transition from regulatory design to real-world execution for an Investment House on an interim basis. This is a critical role focused on embedding ICT risk management, digital operational resilience, and incident management into day-to-day business operations in line with the EU Digital Operational Resilience Act (DORA). You will take ownership of the end-to-end DORA implementation roadmap, working closely with business, technology, risk, operations, and third-party providers to ensure policies, controls, and processes are not only implemented but fully adopted and consistently applied across the organisation. Key Responsibilities Lead the transition from DORA design into practical, business-embedded implementation across the firm Own delivery of the DORA implementation roadmap, ensuring policies and procedures are operationalised and adopted Translate regulatory requirements into pragmatic processes, controls, and behaviours in collaboration with business units, IT, risk, operations, and third-party providers Drive rollout of DORA controls through operating models, RACI definitions, workflows, tooling, and training, ensuring clear accountability across first and second line teams Maintain and evolve detailed implementation plans covering remediation, control deployment, dry-runs, resilience testing, and readiness assessments Ensure DORA documentation (policies, procedures, playbooks) reflects actual operating practices rather than theoretical design Lead third-party ICT risk implementation activities, including onboarding, contract remediation, ongoing oversight, and integration with procurement and vendor management Facilitate practical working sessions, simulations, and walk-throughs (e.g. incident scenarios, BCP/DR testing, critical service mapping) to validate operational readiness Coordinate and embed ICT incident reporting, escalation, and communication processes, ensuring they are tested and understood Support and coordinate DORA-related resilience and scenario testing, driving lessons-learned remediation Act as the central point of coordination for DORA delivery across the wider regulatory change landscape, managing dependencies and avoiding duplication Provide clear, pragmatic reporting to senior management on progress, residual risks, and areas requiring business ownership or decision Monitor regulatory and supervisory developments relating to DORA and assess impacts on existing operating processes and controls Experience & Skills Proven experience delivering DORA (within a regulated Financial Services environment Demonstrable track record of embedding regulatory requirements into business operations, not just producing policy documentation Strong ability to engage credibly with both technical and non-technical stakeholders Experience driving behavioural change and practical process adoption across complex organisations