Principal Associate, Cyber Security Log Management
Capital OneAbout the role
Capital One is looking for a Principal Associate to join our Cyber Security Log Management team. This team is responsible for enabling comprehensive cyber monitoring by ensuring standard log events are generated across Capital One. We achieve our mission by setting security logging strategy and requirements and influencing enterprise technology teams to deliver.
What you'll do:
Assist in developing and communicating our minimum logging requirements across our applications, infrastructure (cloud, network, databases), and endpoints (workstations, servers). Maintain close ties to developers across the company ensuring we provide clear logging standards.
Review and assess security logging as delivered by enterprise teams versus requirements and standards. Ensure adherence to standard schemas, log design, log transportation deployments, and log quality.
Review cybersecurity logs to ensure that the most accurate and relevant log data is collected.
Establish technical best practices for security logging (event generation, delivery, storage).
Track logging compliance from enterprise teams and escalate non-compliance of logging to executive leadership.
Execute logging controls on a regular basis, following playbooks and collecting evidence.
Identify and document enterprise risks and issues, including dimensioning risk and collecting stakeholder feedback.
Collect, track, and report logging metrics to leadership. Collaborate with stakeholders to automate log compliance tracking and enforcement, including developing dashboards and executive reports.
About You:
You understand security logging & monitoring needs for a Cyber Operations team at a tactical level and have experience in hands on technical design and implementation of logging
You have experience implementing high-visibility and high-impact enterprise cybersecurity projects with cross-functional teams including planning, development and management of technical requirements, design, validation, and non-compliance escalation
You demonstrate strong assessment and analytical skills in the security logging domain, strong judgment skills determining adherence to security policies, and experience with governance, risk, and controls.
You are trusted to lead through ambiguity and can work with a leader to identify and focus on highest priority work.
You consistently deliver excellence autonomously.
You look outside of your team to create synergies and open, working relationships with technology groups and other stakeholders, sharing customer and engineering benefits for security logging to gain buy-in.
You have experience with security logging projects and programs across a technology environment, contributing to logging strategy with architects, developers, and data experts.
You have experience with program management and influencing matrixed technology teams to deliver requests.
You have passion and expertise in one or more of the following areas: security operations, security log analysis, cloud security, network security, application security, network security and exploitation, and host and endpoint security.
Basic Qualifications:
High School Diploma, GED or equivalent certification
At least 4 years of experience working in cybersecurity or information technology
At least 2 years of experience in cybersecurity operations
At least 1 year of experience working with Linux, Unix, or Windows operating systems
At least 1 year of experience with public cloud environments (AWS, Azure, or Google Cloud Platform)
Preferred Qualifications:
Bachelor’s Degree
2+ years of experience in enterprise data or logging strategy (defining schemas, configuring log production on applications, infrastructure, endpoints, data streaming, log consumption, and overall data architecture)
1+ year of experience in regulated financial services organizations
CISSP, GIAC, CISM, CCSP, CISA, CRISC, AWS Security, AWS Advanced Networking Specialty, or AWS Solutions Architect Certification
At this time, Capital One will not sponsor a new applicant for employment authorization for this position.
The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. S
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s