Senior Cyber Assessments Engineer
Capital OneAbout the role
Capital One is seeking a technical security solution leader to deliver game-changing cybersecurity solutions based on threat, data, and design thinking. We are a technology oriented company delivering financial products to market through modern technology and constant innovation at a massive scale. Part of that innovation is leveraging technology to deliver the best cybersecurity solutions for the business.
As a candidate for this role, you’re able to seamlessly switch from technical deep dives to collaborative discussions around team strategy and mentorship. You are naturally curious and stay on top of emerging trends and threats. You are not afraid to question existing processes and solutions, yet you display a keen sense of business value and focus on the right priorities. You are a clear thinker, thrive in working across teams, and are an expert in dealing with ambiguity. You believe that a core component of security’s role is to enable the business, not just to secure it, and the solutions you bring to life are aligned to the needs of our technology partners and business stakeholders. You thrive in working in a fast-paced, technologically forward-leaning environment and are not afraid to push the boundaries of security capabilities.
What you'll do
Lead the technical implementation of cyber assessment solutions, from planning and design to execution and deployment, including hands-on configuration, integration, and testing.
Mentor and guide junior team members, fostering their growth in software development with a strong emphasis on secure coding practices and integration of security principles, sharing expertise in security assessments, process improvement, and data analysis.
Closely collaborate with team lead, product owners, and customers to ensure quality and consistency of the team's output, contributing to strategic planning and roadmap development.
Collaborate with business stakeholders to understand their needs and workflows related to cybersecurity assessments. Use this understanding to identify opportunities for automation and process improvement, ultimately enhancing the efficiency and effectiveness of security operations and improving the overall security posture of the organization.
Contribute to enriching threat models and other security assessments by integrating data from various sources, including REST APIs, enterprise security tools (SIEM, SOAR, vulnerability scanners), and data warehouses (Snowflake).
Continuously learn and stay up-to-date with the latest cybersecurity trends, technologies, and best practices, sharing knowledge with the team.
About You
You possess a strong understanding of cybersecurity assessment principles, methodologies, and best practices, and you're eager to share your knowledge with others.
You are detail-oriented and articulate key details clearly, both in conversation and technical documentation.
You are capable of driving complex technical initiatives to full delivery, leveraging your knowledge of cybersecurity practices, software engineering principles, agile frameworks, and customer engagement.
You have the ability to foster collaborative, open working relationships with technology groups and other stakeholders.
You have demonstrated clear communication skills, including the ability to effectively present technical concepts and demonstrations to stakeholders at all levels of the organization.
You have experience working in or managing multiple high-visibility and high-impact enterprise cybersecurity projects with cross-functional teams.
You have hands-on experience transforming cybersecurity assessment processes, migrating them to new tools and platforms, and integrating those tools with existing security infrastructure.
You are a self-starter, actively identifying gaps in our security posture and determining ways to solve them.
You are a team player, willing to step in and assist associates both on and off the team.
Basic Qualifications:
High School Diploma, GED, or equivalent certification
At least 3 years of experience in cybersecurity or information technology
At least 2 years of experience with cloud security (AWS, Azure, GCP)
At least 2 years of experience working with REST APIs and data integration
At l
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s