Capital One Logo

Capital One

Director, Cyber Risk and Analysis

Job Posted 6 Days Ago Posted 6 Days Ago
Be an Early Applicant
Hybrid
4 Locations
205K-281K Annually
Senior level
Hybrid
4 Locations
205K-281K Annually
Senior level
The Director of Cyber Risk and Analysis leads risk aggregation initiatives, assesses current tech risk frameworks, and provides advisory partnerships to senior leadership. Key responsibilities include evaluating threats, defining mitigation strategies, and ensuring compliance with regulatory standards.
The summary above was generated by AI

Director, Cyber Risk and Analysis
Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk.
For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Technology Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and other technology risks. The CTRO is independent, reports to the Chief Risk Officer, and oversees the work of the CISO and the CIO.
Technology Risk Management (TRM) is a small organization that packs a big punch. The ~100 professionals in TRM are trusted experts who oversee ~14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk.
Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results.
As a Director, Cyber Risk and Analysis, you will apply expertise on risk frameworks and best practices to assess current state, identify methodology gaps, and evaluate threats and/or business impact to enable advisory partnerships and effective oversight of tech and cyber risk across Capital One. You will lead risk aggregation initiatives, define mitigation strategies, prioritize and escalate recommendations to senior leadership. You will also participate in the design, socialization and implementation of risk management products and programs through your deep knowledge of risk assessments, information risk controls, regulatory and internal governance standards, data analysis, metrics / reporting, and customer engagement.
Responsibilities:

  • Maintains a broad, expert understanding of technology risk frameworks, has innate ability to leverage these frameworks in risk identification processes.
  • Researches, assembles, and/or evaluates information regarding industry practices or applicable regulatory changes affecting risk management policies or programs; recommends sound, practical solutions to complex issues.
  • Effectively communicates and demonstrates subject matter expertise in risk categorization, how risks can occur in a new environment, and the measures required to safeguard the enterprise.
  • Advises Accountable Executives of tech and cyber-related risk on a consistent basis via relevant risk forums and through existing processes such as exception and issue management.
  • Exhibits strong critical thinking and communication skills,with proven ability to navigate the unknown to devise and socialize innovative risk management solutions.
  • Leverages reporting & tools to perform analysis on different types of data points to inform policies and drive change. Understands associated reporting metrics and is able to inform on tech and cyber risks.
  • Quickly and accurately analyzes data, assesses risk, & prioritizes potential risks to differentiate critical, high-risk, and low-risk issues, and remediate and escalate as appropriate.
  • Makes recommendations regarding changes to first line policy, procedures, and control programs to mitigate evolving risks.
  • Effectively self-challenges tech and cyber control and risk management programs as part of first line duties and escalates risks where appropriate.
  • Demonstrates sound lifecycle program management to include socializing action plans, impediments and risks, and stakeholder training / engagement.


Basic Qualifications:

  • Bachelor's Degree or military experience
  • At least 5 years of experience with Technology Risk Management or Cyber Security Risk Management
  • At least 5 years of experience building risk control environments or risk frameworks
  • At least 5 years of experience in People Management


Preferred Qualifications:

  • Master's Degree
  • Process or Project Management certification (i.e. Lean, Six Sigma, PMP), Business Management certification
  • 10+ years of experience with Technology or Cyber Security Risk Management
  • 9+ years of experience in People Management


At this time, Capital One will not sponsor a new applicant for employment authorization for this position.
The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked.
McLean, VA: $226,000 - $257,900 for Director, Cyber Risk & Analysis
New York, NY: $246,500 - $281,300 for Director, Cyber Risk & Analysis
Plano, TX: $205,400 - $234,400 for Director, Cyber Risk & Analysis
Richmond, VA: $205,400 - $234,400 for Director, Cyber Risk & Analysis
Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter.
This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan.
Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level.
This role is expected to accept applications for a minimum of 5 business days.
No agencies please. Capital One is an equal opportunity employer committed to diversity and inclusion in the workplace. All qualified applicants will receive consideration for employment without regard to sex (including pregnancy, childbirth or related medical conditions), race, color, age, national origin, religion, disability, genetic information, marital status, sexual orientation, gender identity, gender reassignment, citizenship, immigration status, protected veteran status, or any other basis prohibited under applicable federal, state or local law. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections 4901-4920; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries.
If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1-800-304-9102 or via email at RecruitingAccommodation@capitalone.com . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.
For technical support or questions about Capital One's recruiting process, please send an email to Careers@capitalone.com
Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site.
Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).

Top Skills

Cyber Security Risk Management
Risk Frameworks
Technology Risk Management

Similar Jobs at Capital One

16 Days Ago
Hybrid
3 Locations
205K-258K Annually
Senior level
205K-258K Annually
Senior level
Fintech • Machine Learning • Payments • Software • Financial Services
Lead Capital One's PCI team, developing and implementing data security strategies, managing PCI compliance initiatives, and mentoring a team of PCI advisors. Drive process improvements and collaborate across teams to mitigate risks and enhance compliance.
Top Skills: Cloud-Based EnvironmentsGrc SolutionsPci DssTechnical It Controls
4 Days Ago
Hybrid
4 Locations
133K-152K Annually
Mid level
133K-152K Annually
Mid level
Fintech • Machine Learning • Payments • Software • Financial Services
The Manager, Project Management will lead Treasury Management products, consult with clients, support sales, implement product knowledge, and engage in process design.
Top Skills: Ap SystemsAPIsDeltechErp SystemsExcelGoogle SheetsInforJd EdwardsMicrosoft DynamicsMriNetSuiteOracleProcoreQuickbooksSageSAPSftpTreasury ManagementViewpointYardi
5 Days Ago
Hybrid
Plano, TX, USA
65K-83K Annually
Junior
65K-83K Annually
Junior
Fintech • Machine Learning • Payments • Software • Financial Services
The Flex Relationship Manager role involves building relationships with auto dealerships, providing customer service, and supporting sales strategies. Responsibilities include monitoring underwriting processes and facilitating communication between sales managers and dealerships.

What you need to know about the Seattle Tech Scene

Home to tech titans like Microsoft and Amazon, Seattle punches far above its weight in innovation. But its surrounding mountains, sprinkled with world-famous hiking trails and climbing routes, make the city a destination for outdoorsy types as well. Established as a logging town before shifting to shipbuilding and logistics, the Emerald City is now known for its contributions to aerospace, software, biotech and cloud computing. And its status as a thriving tech ecosystem is attracting out-of-town companies looking to establish new tech and engineering hubs.

Key Facts About Seattle Tech

  • Number of Tech Workers: 287,000; 13% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Amazon, Microsoft, Meta, Google
  • Key Industries: Artificial intelligence, cloud computing, software, biotechnology, game development
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Madrona, Fuse, Tola, Maveron
  • Research Centers and Universities: University of Washington, Seattle University, Seattle Pacific University, Allen Institute for Brain Science, Bill & Melinda Gates Foundation, Seattle Children’s Research Institute
By clicking Apply you agree to share your profile information with the hiring company.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account