Jobs and Careers
CA

Principal Associate, Cyber Risk & Analysis

Capital One
United Statesfull_timeVerifiedPosted 22 Aug 2024

About the role

Center 3 (19075), United States of America, McLean, Virginia

Principal Associate, Cyber Risk & Analysis

Capital One is one of the fastest growing organizations in the world today. The growth of the business is being accelerated by leveraging innovative and emerging technologies. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years, fully exiting our data centers. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity and managing technology risk. Cybersecurity Risk professionals at Capital One are trusted expert advisers who shape decisions, challenge activities to ensure they meet our standards, and generally oversee technology, cybersecurity, and information security risk across the business and the central technology organization.

Cybersecurity risk and analysis plays a critical role in ensuring that the company’s risk-taking entities are aware of the risks inherent in their activities and decisions, the impact of their actions on the company at an enterprise level, and opportunities to reduce, mitigate, or avoid the risks altogether. Associates are highly-skilled and have a wealth of experience and a demonstrated ability to provide value added recommendations and deliver high-impact results in the cybersecurity domain areas.

Cybersecurity is a strategic priority at Capital One, with heavy engagement from the Board, the Chief Executive Officer, and the executive committee. By joining Capital One, you will be providing these executives with the trusted, independent voice they need to ensure our company’s cybersecurity risks are appropriately managed. The position affords opportunities for substantial growth. The demands and high-visibility nature of this position require an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately.

Job Responsibilities:

  • Serve as a liaison on Department-led efforts requiring Information Security Office input or participation

  • Develop and manage the Information Security intake process and tools

  • Develop and manage organization’s knowledge management tools

  • Improve and document critical business processes

  • Conduct quality assurance on regulator-required cyber risk reports

  • Serve as a liaison between the Divisional Information Security Office and its Audit and assurance partners

  • Review and triage intake requests and adjudicate new services for the Information Security Office

  • Collaborate with Divisional Information Security Office teams to ensure they have the tools necessary to support their customers

  • Participate in functional communities of practice to ensure consistency across Information Security Office teams

  • Work with the Information Security Office leadership team on senior leader initiatives

  • Provide support on agenda and materials development and execution of Information Security Office and Department meetings and events

  • Be knowledgeable about Capital One’s Information Security offerings, policies, procedures and standards

  • Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve strategic objectives.

  • Excellent verbal and written communication skills across levels of leadership.

  • Passion and expertise in cybersecurity, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions.

  • Ability to manage and synthesize information into meaningful messages for both upstream (e.g., executive management) and downstream (e.g., Line of Business stakeholder) audiences.

 

Basic Qualifications:

  • High School Diploma, GED, or equivalent certification

  • At least 4 years of experience with technology or cyber security risk management frameworks

  • At least 1 year of experience developing, evaluating, or implementing cybersecurity, technology, or risk assessment activities

Preferred Qualifications:

  • Bachelor’s Degree

  • 3+ years of Risk Management experience in a Cyber or Information Security practice

  • Project Management experience leading cross functional projects in Risk

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Capital One

View company profile →