Senior Manager overseeing Information Security consulting at Capital One. Collaborating on initiatives and managing complex security risks in a fast-paced environment.
Responsibilities
Act as an Information Security point of contact for a business function within the Card line of business
Coordinate and execute proactive Information Security consulting to the business and technology teams covering Infrastructure Security, Resiliency, Data Security, Network Architecture and Design, and User Access Management
Serve as an expert in Capital One’s Information Security capabilities, solutions, policies, procedures and standards
Leverage strong technical acumen and be security SME reviewing architecture, providing risk mitigation solutions and driving overall risk management.
Partner closely with engineers, product managers, and other cross-functional partners to help break down complexity and organizational silos to problem solve.
Influence customers to leverage security capabilities and solutions to shift and integrate security to the left in the development processes
Escalate and manage cyber security risk
Provide ad hoc support on special Information Security hot topics for the business
Provide regular updates to executive leadership with your line of business on the overall Information Security health and risk environment
Requirements
High School Diploma, GED or equivalent certification
At least 6 years of experience working in cybersecurity or information technology
At least 5 years of experience providing guidance and oversight of Security concepts
At least 5 years of experience performing security risk assessments and security architecture reviews
At least 5 years of experience with architecture, software design, networking, and cloud infrastructure
At least 4 years of experience with cloud security engineering
Bachelor’s Degree (Preferred Qualification)
6+ years of experience Application Security, Threat Modeling, Penetration Testing, Vulnerability Management (Preferred Qualification)
4+ years of experience in securing a public cloud environment (e.g. AWS, GCP, Azure) (Preferred Qualification)
2+ years experience in e-commerce industry (Preferred Qualification)
2+ years of experience building software utilizing public cloud (e.g. AWS, GCP, Azure) (Preferred Qualification)
1+ years of experience in security integration for Mergers and Acquisitions (Preferred Qualification)
1+ years of experience with Cloud patch management practices such as system rehydration and image management (Preferred Qualification)
1+ years of experience utilizing Agile methodologies (Preferred Qualification)
1+ years of experience with Software Security Architecture (Preferred Qualification)
1+ years of experience with Application Security (Preferred Qualification)
1+ years of experience with Threat Modeling (Preferred Qualification)
1+ years of experience with Penetration Testing and/or Vulnerability Management (Preferred Qualification)
1+ years of experience with integrating SaaS products into an Enterprise Environment (Preferred Qualification)
1+ years of experience with securing Container services (Preferred Qualification)
1+ years of experience with Splunk-Fu and Enterprise Monitoring experience (Preferred Qualification)
1+ years of experience in a Financial services industry experience (Preferred Qualification)
1+ years of experience with Offensive or Defensive Security techniques (Preferred Qualification)
AWS Certified Solutions Architect or Certified Information Systems Security Professional (CISSP) certification (Preferred Qualification)
Benefits
Comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being
Performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI)
Job title
Senior Manager, Information Security Office Consultant
Principal Security Engineer working on network security lifecycle and threat management for Verizon’s 4G/5G Cloud Networks. Collaborating with multiple teams to enhance cybersecurity posture.
Cybersecurity Engineer at Verizon responsible for security lifecycle and effectiveness across networks. Leading incident response and vulnerability management in a hybrid work role.
Director of Security and Compliance safeguarding digital assets and data with a focus on cybersecurity and compliance. Leading risk management, stakeholder engagement, and team leadership initiatives.
Information Security Risk & Compliance Analyst at AAB focusing on ISO 27001 compliance and information security management. Collaborating across teams to ensure robust risk and compliance frameworks.
Information Security Risk & Compliance Analyst at AAB managing compliance with ISO 27001, supporting enterprise risk assessments and enhancing information security systems.
Information Security Risk & Compliance Analyst supporting the maintenance of ISO 27001 standards. Contributing to risk assessments and compliance across AAB’s Business Protection Team.
Security Principal at Optiv designing AI security solutions for clients, leveraging advanced security services and technologies. Driving pipeline generation and maintaining strong client relationships as a trusted advisor.
Cloud Security Architect supporting federal customer projects focused on architecture and security solutions. Conducting risk assessments and defining security requirements within a cloud environment.
Information Security Specialist responsible for enhancing cybersecurity posture through incident management and compliance. Collaborating with cross - functional teams to monitor threats and implement security measures.
Senior Lead Info Security Architect leading and collaborating on cybersecurity solutions at TIAA. Responsible for secure design and implementation of cloud security strategies and practices.