Jobs and Careers
CA

Principal Associate, Cyber Risk & Analysis (Technology and Cyber Change, MTC ID & Advisory)

Capital One
United Statesfull_timeVerifiedPosted 10 Apr 2025
💰 $145,500/yr($115,900/yr$145,500/yr)

About the role

Principal Associate, Cyber Risk & Analysis (Technology and Cyber Change, MTC ID & Advisory)

  

Do you want to join a collaborative team committed to making risk management a competitive advantage at Capital One? The Technology and Cyber Change (MTC ID & Advisory) team is seeking a Principal Associate to bring unique perspectives and drive our program forward.

Capital One, a rapidly growing organization, leverages innovative technologies to accelerate our business growth. Prioritizing cybersecurity and managing technology risk are as important as driving innovation.

As a Principal Associate of Cyber Risk and Analysis in Capital One's Enterprise Services Risk Office, you will support the Material Technology and Cyber Change program. You will work with business partners to identify, assess, consult, and/or mitigate potential risks related to enterprise-level technology/cyber initiatives. This includes driving project and program delivery, change risk identification, advisory, and governance to support the enterprise Technology and Cyber Risk Strategy. Collaborate closely with associates and executives across all Lines of Businesses and other risk management teams to perform and support work related to maturing risk management practices.

Responsibilities:

  • Collaborate with Technology and Cyber teams, Lines of Business, and risk management teams to identify material changes and enhance Capital One's cybersecurity program.

  • Enhance integrated and cyber governance risk management processes by providing thought leadership, oversight, and coordination.

  • Proactively identify risks, trends, and process improvements through analysis and reporting.

  • Stay informed about the changing regulatory environment and its impact on our work.

  • Assist with program delivery, including project and process management, reporting, and governance activities.

  • Participate in risk and other management forums, and contribute to continuous improvement.

  • Support responses to Internal Audit and Regulatory agency interactions.

  • Develop and enhance processes, tools, templates, job aides, and documents (policies, standards, procedures, guidelines).

  • Draft, edit, and deliver presentations aiding the design, development, refinement, and usage of risk methods.

Here's what we're looking for in an ideal teammate:

  • Risk Management Expertise: You have a proven track record in risk management and a deep understanding of technology functions and organizations.

  • Excellent Communicator: You can effectively articulate complex technical concepts to both technical and non-technical stakeholders, through clear, concise, and actionable written and verbal communication.

  • Business Acumen: You are a critical thinker who seeks to understand the business and can explain risk management to a diverse audience, including product management and software engineers.

  • Relationship Builder: You develop trusted relationships based on shared risk objectives to deliver outstanding business impact.

  • Results-Oriented: You possess a relentless focus on quality and timeliness, strong analytical and organizational skills, and excellent project management abilities.

  • Adaptable and Innovative: You embrace change, welcome bold ideas, and are intellectually curious. You challenge conventional thinking by asking questions and testing assumptions.

Basic Qualifications:

  • Bachelor's Degree or military experience 

  • At least 3 years experience in Cybersecurity, Technology, Risk Management, or Cyber Internal or External Audit, or a combination

  • At least 3 years of experience supporting, partnering, and interacting with internal business clients identifying risk

  • At least 2 years of project or process management experience

Preferred Qualifications:

  • At least 4 years experience in Cybersecurity, Technology, Risk Management or Cyber Internal or External Audit, or a combination

  • At least 3 years of project management experience leading cross functional projects and programs 

  • At least 2 years of experience in information security or technology risk identifications and assessments associated with new or changed initiatives

  • At least 2 years o

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Capital One

View company profile →