Principal Associate, Cyber Risk & Analysis
Capital OneAbout the role
Capital One is one of the fastest growing organizations in the world today. The growth of the business is being accelerated by leveraging innovative and emerging technologies. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years, fully exiting our data centers. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity and managing technology risk. Cybersecurity Risk professionals at Capital One are trusted expert advisers who shape decisions, challenge activities to ensure they meet our standards, and generally oversee technology, cybersecurity, and information security risk across the business and the central technology organization.
Cybersecurity risk and analysis plays a critical role in ensuring that the company’s risk-taking entities are aware of the risks inherent in their activities and decisions, the impact of their actions on the company at an enterprise level, and opportunities to reduce, mitigate, or avoid the risks altogether. Associates are highly-skilled and have a wealth of experience and a demonstrated ability to provide value added recommendations and deliver high-impact results in the cybersecurity domain areas.
Cybersecurity is a strategic priority at Capital One, with heavy engagement from the Board, the Chief Executive Officer, and the executive committee. By joining Capital One, you will be providing these executives with the trusted, independent voice they need to ensure our company’s cybersecurity risks are appropriately managed. The position affords opportunities for substantial growth. The demands and high-visibility nature of this position require an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately.
Job Responsibilities:
Serve as a liaison on Department-led efforts requiring Information Security Office input or participation
Develop and manage the Information Security intake process and tools
Develop and manage organization’s knowledge management tools
Improve and document critical business processes
Conduct quality assurance on regulator-required cyber risk reports
Serve as a liaison between the Divisional Information Security Office and its Audit and assurance partners
Review and triage intake requests and adjudicate new services for the Information Security Office
Collaborate with Divisional Information Security Office teams to ensure they have the tools necessary to support their customers
Participate in functional communities of practice to ensure consistency across Information Security Office teams
Work with the Information Security Office leadership team on senior leader initiatives
Provide support on agenda and materials development and execution of Information Security Office and Department meetings and events
Be knowledgeable about Capital One’s Information Security offerings, policies, procedures and standards
Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve strategic objectives.
Excellent verbal and written communication skills across levels of leadership.
Passion and expertise in cybersecurity, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions.
Ability to manage and synthesize information into meaningful messages for both upstream (e.g., executive management) and downstream (e.g., Line of Business stakeholder) audiences.
Basic Qualifications:
High School Diploma, GED, or equivalent certification
At least 4 years of experience with technology or cyber security risk management frameworks
At least 1 year of experience developing, evaluating, or implementing cybersecurity, technology, or risk assessment activities
Preferred Qualifications:
Bachelor’s Degree
3+ years of Risk Management experience in a Cyber or Information Security practice
Project Management experience leading cross functional projects in Risk
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s